I have put together a little "petri dish" test environment and started looking for a sample that has the exploit. Some samples out there simply do not have the exploit code, and even tough they will encrypt the files locally, sometimes the mounted shares too, they would not spread.
Luckily, I have found this nice blog post from McAfee Labs: https://securingtomorrow.mcafee.com/mcafee-labs/analysis-wannacry-ransomware/ with the reference to the sample SHA256: 24d004a104d4d54034dbcffc2a4b19a11f39008a575aa614ea04703480b1022c (they keep referring to samples with MD5, which is still a very-very bad practice, but the hash is MD5: DB349B97C37D22F5EA1D1841E3C89EB4)
Once I got the sample from the VxStream Sandbox site, dropped it in the test environment, and monitored it with Security Onion. I was super happy to see it spreading, despite the fact that for the first run my Windows 7 x64 VM went to BSOD as the EthernalBlue exploit failed.
But the second run was a full success, all my Windows 7 VMs got infected. Brad was so kind and made a guest blog post at one of my favorite sites, www.malware-traffic-analysis.net so you can find the pcap, description of the test environment and some screenshots here: http://malware-traffic-analysis.net/2017/05/18/index2.html
Read more
- How To Make Hacking Tools
- Pentest Tools Website Vulnerability
- Pentest Reporting Tools
- Hacker Tools Hardware
- Hacking Tools Windows
- Hacking Tools
- Hacker Tools Windows
- Hacker Tools List
- Pentest Tools Website
- Hacker Tools For Mac
- Pentest Tools Tcp Port Scanner
- Pentest Automation Tools
- Hack Tools Github
- Pentest Tools Find Subdomains
- Hack Tools 2019
- Hacker Tools Linux
- Best Pentesting Tools 2018
- Hacker Tools Mac
- Hack Apps
- Growth Hacker Tools
- Top Pentest Tools
- Underground Hacker Sites
- Hacks And Tools
- Hacking Tools Name
- Hacker Tools Apk Download
- Pentest Tools Alternative
- Hacks And Tools
- Hackrf Tools
- Pentest Tools Online
- Hackrf Tools
- Nsa Hack Tools
- Pentest Recon Tools
- Hacker Tools Apk
- Best Pentesting Tools 2018
- Hacking Tools 2019
- Hacking Tools For Windows Free Download
- Pentest Tools Alternative
- World No 1 Hacker Software
- Best Hacking Tools 2020
- Hacking Tools For Windows 7
- Hack Tools Online
- Android Hack Tools Github
- Hacking Tools Kit
- Hacking Tools
- Hacking Tools Pc
- Tools 4 Hack
- Hacker Tools For Pc
- Hack And Tools
- Hacking Tools For Windows Free Download
- Pentest Tools Free
- Pentest Tools Kali Linux
- Pentest Tools Android
- Black Hat Hacker Tools
- Pentest Tools List
- Hacker Tools Windows
- Hacking Tools Kit
- Hack Tools Online
- Usb Pentest Tools
No comments:
Post a Comment