I have put together a little "petri dish" test environment and started looking for a sample that has the exploit. Some samples out there simply do not have the exploit code, and even tough they will encrypt the files locally, sometimes the mounted shares too, they would not spread.
Luckily, I have found this nice blog post from McAfee Labs: https://securingtomorrow.mcafee.com/mcafee-labs/analysis-wannacry-ransomware/ with the reference to the sample SHA256: 24d004a104d4d54034dbcffc2a4b19a11f39008a575aa614ea04703480b1022c (they keep referring to samples with MD5, which is still a very-very bad practice, but the hash is MD5: DB349B97C37D22F5EA1D1841E3C89EB4)
Once I got the sample from the VxStream Sandbox site, dropped it in the test environment, and monitored it with Security Onion. I was super happy to see it spreading, despite the fact that for the first run my Windows 7 x64 VM went to BSOD as the EthernalBlue exploit failed.
But the second run was a full success, all my Windows 7 VMs got infected. Brad was so kind and made a guest blog post at one of my favorite sites, www.malware-traffic-analysis.net so you can find the pcap, description of the test environment and some screenshots here: http://malware-traffic-analysis.net/2017/05/18/index2.htmlRelated word
- Hack Website Online Tool
- Hack Tools Online
- Pentest Tools Android
- Hacking Tools Download
- Hacking Tools For Windows Free Download
- Hacker Tools For Pc
- Hacker Tools For Ios
- Hack Rom Tools
- Hacking Tools For Beginners
- Hacker Tools Hardware
- Pentest Tools Subdomain
- Tools For Hacker
- Hack Tools For Windows
- Pentest Tools Framework
- Hacking Tools For Pc
- Hacking Tools Software
- Hack Tool Apk
- Hacking Tools 2019
- Hacking Tools Free Download
- Hacker Search Tools
- Hack Tools
- World No 1 Hacker Software
- Hacking Tools Online
- Hacking Tools Usb
- Hack Tools Pc
- Hacker Tools For Mac
- Pentest Tools Website
- Bluetooth Hacking Tools Kali
- Hacker Tools Apk Download
- Hacking Tools Name
- Hacker Tools Free
- How To Make Hacking Tools
- Hacking Tools Download
- Hacking Tools For Kali Linux
- Hacker Tools Software
- Pentest Tools
- Pentest Tools Website
- Blackhat Hacker Tools
- Tools 4 Hack
- Pentest Automation Tools
- Wifi Hacker Tools For Windows
- Hack Tools For Games
- Hacking Tools
- Hacker Tools Apk Download
- Hacking Tools Software
- Hacking Tools Software
- Pentest Tools Bluekeep
- Tools 4 Hack
- Hacking Tools Github
- Pentest Tools Open Source
- Pentest Tools Website Vulnerability
- Hacking Tools Online
- Hacker Tools 2019
- Black Hat Hacker Tools
- Hacking Tools Windows
- Physical Pentest Tools
- Hack Tools Online
- How To Install Pentest Tools In Ubuntu
- Hacking Tools For Beginners
- Nsa Hack Tools Download
No comments:
Post a Comment