I have put together a little "petri dish" test environment and started looking for a sample that has the exploit. Some samples out there simply do not have the exploit code, and even tough they will encrypt the files locally, sometimes the mounted shares too, they would not spread.
Luckily, I have found this nice blog post from McAfee Labs: https://securingtomorrow.mcafee.com/mcafee-labs/analysis-wannacry-ransomware/ with the reference to the sample SHA256: 24d004a104d4d54034dbcffc2a4b19a11f39008a575aa614ea04703480b1022c (they keep referring to samples with MD5, which is still a very-very bad practice, but the hash is MD5: DB349B97C37D22F5EA1D1841E3C89EB4)
Once I got the sample from the VxStream Sandbox site, dropped it in the test environment, and monitored it with Security Onion. I was super happy to see it spreading, despite the fact that for the first run my Windows 7 x64 VM went to BSOD as the EthernalBlue exploit failed.
But the second run was a full success, all my Windows 7 VMs got infected. Brad was so kind and made a guest blog post at one of my favorite sites, www.malware-traffic-analysis.net so you can find the pcap, description of the test environment and some screenshots here: http://malware-traffic-analysis.net/2017/05/18/index2.html
Related posts
- Pentest Tools For Ubuntu
- Easy Hack Tools
- Hacking Apps
- Pentest Tools Windows
- Hacking Tools Software
- New Hacker Tools
- Hacker Tools Hardware
- Hacker Tools Software
- Hacking Tools Github
- Hack Tools
- Hacker Tools 2019
- Hacker Tools Hardware
- Pentest Tools Download
- Pentest Tools Nmap
- Hack Tools Mac
- What Are Hacking Tools
- Pentest Tools Windows
- Hack Tools For Pc
- Best Hacking Tools 2020
- Hack Tool Apk No Root
- Hacker Tools Windows
- New Hack Tools
- Pentest Tools
- Hacking Tools 2019
- Nsa Hack Tools Download
- Pentest Tools Android
- Hacking Tools Pc
- Pentest Automation Tools
- Hacker Tools Apk
- Hacker Tools 2019
- Pentest Tools Download
- Hacker Tools List
- Hack Tools For Games
- Nsa Hacker Tools
- Pentest Tools Download
- Hacker Tools Apk
- Hacks And Tools
- How To Make Hacking Tools
- New Hack Tools
- Hacking Tools Online
- Pentest Tools For Ubuntu
- New Hack Tools
- Pentest Tools Github
- Hacker Tools 2020
- Pentest Recon Tools
- Underground Hacker Sites
- Hack Tool Apk
- Termux Hacking Tools 2019
- Pentest Automation Tools
- Hacking Tools Usb
- Blackhat Hacker Tools
- Hack Tools Download
- Tools Used For Hacking
- Hacker Hardware Tools
- Hacking Tools 2019
- Hackrf Tools
- Hack Tools Mac
- Hacking Tools For Kali Linux
- Pentest Tools Framework
- Hak5 Tools
- Pentest Recon Tools
- Pentest Tools Alternative
- Hacking Tools Github
- Hack Tool Apk
- Pentest Tools Apk
- Tools 4 Hack
- Hacking Tools For Kali Linux
- Pentest Tools Framework
- Ethical Hacker Tools
- Pentest Tools For Ubuntu
- Hack Tools For Pc
- Pentest Tools Windows
- Hacking App
- Nsa Hack Tools Download
- How To Make Hacking Tools
- Hacker Tools Free Download
- World No 1 Hacker Software
- Best Hacking Tools 2020
- Hacker Tools 2020
- Pentest Tools For Windows
- Pentest Tools Linux
- Black Hat Hacker Tools
- Pentest Tools Android
- Hacker Tools Software
- Hacking Tools For Windows
- Hackers Toolbox
- Pentest Tools Linux
- Hacking Apps
- Hacking Tools Software
- Hacker Tools Free
- Hack Tools Github
- Hacking Tools For Windows
- Tools Used For Hacking
- Best Hacking Tools 2019
- Hacking Tools Pc
- Hacking Tools Windows
- Easy Hack Tools
- Hacking Tools Usb
- Hack Apps
- Beginner Hacker Tools
- Hacking Tools For Windows
- Hacking Tools
- Ethical Hacker Tools
- Hacker Tools Software
- Hack And Tools
- Hacking App
- Hacker Tools Software
- How To Make Hacking Tools
- Tools 4 Hack
- Hacker Tools
- Hacker Tools 2020
- Black Hat Hacker Tools
- Hack App
- Hacker Tools Mac
- Hack Tools Online
- Github Hacking Tools
- Pentest Tools
- Hacker Tools Hardware
- Top Pentest Tools
- Pentest Tools For Ubuntu
- Pentest Tools Free
- Pentest Tools Website
- Hacker Tools Online
- Easy Hack Tools
- Hack Tools
0 comments:
Post a Comment