Pcap Of Wannacry Spreading Using EthernalBlue
Saw that a lot of people were looking for a pcap with WannaCry spreading Using EthernalBlue.
I have put together a little "petri dish" test environment and started looking for a sample that has the exploit. Some samples out there simply do not have the exploit code, and even tough they will encrypt the files locally, sometimes the mounted shares too, they would not spread.
Luckily, I have found this nice blog post from McAfee Labs: https://securingtomorrow.mcafee.com/mcafee-labs/analysis-wannacry-ransomware/ with the reference to the sample SHA256: 24d004a104d4d54034dbcffc2a4b19a11f39008a575aa614ea04703480b1022c (they keep referring to samples with MD5, which is still a very-very bad practice, but the hash is MD5: DB349B97C37D22F5EA1D1841E3C89EB4)
Once I got the sample from the VxStream Sandbox site, dropped it in the test environment, and monitored it with Security Onion. I was super happy to see it spreading, despite the fact that for the first run my Windows 7 x64 VM went to BSOD as the EthernalBlue exploit failed.
But the second run was a full success, all my Windows 7 VMs got infected. Brad was so kind and made a guest blog post at one of my favorite sites, www.malware-traffic-analysis.net so you can find the pcap, description of the test environment and some screenshots here: http://malware-traffic-analysis.net/2017/05/18/index2.html
More information
- Physical Pentest Tools
- Hack Rom Tools
- Pentest Tools Kali Linux
- Hacking Tools Kit
- Pentest Recon Tools
- Pentest Tools Port Scanner
- Hacking Tools And Software
- Hacking Tools Free Download
- Hacker Tools 2020
- Hacking Tools 2019
- What Is Hacking Tools
- Hack Tools Github
- Hacking Tools For Windows Free Download
- Hacker Tools Windows
- Hack Tools Download
- Hacker Tools Apk Download
- Hacker Tools For Windows
- Pentest Tools List
- Pentest Tools Port Scanner
- Hack Tools Pc
- Best Pentesting Tools 2018
- World No 1 Hacker Software
- Pentest Tools
- What Is Hacking Tools
- Hacker Tools Linux
- Top Pentest Tools
- Pentest Tools Url Fuzzer
- Hacker Security Tools
- Hacking Tools Hardware
- Top Pentest Tools
- Hacker Techniques Tools And Incident Handling
- Hack Tools
- Hacking Tools For Mac
- Hack Tools For Windows
- Hack Tools
- Physical Pentest Tools
- Hacking Tools Kit
- Hacker Tools Linux
- Pentest Tools For Mac
- Pentest Tools Tcp Port Scanner
- New Hack Tools
- Hacking Tools Software
- Tools 4 Hack
- Hacker Security Tools
- Hack Tools For Pc
- Hacking Tools For Games
- Kik Hack Tools
- Hacks And Tools
- Hacker Tools Mac
- Hacking Tools 2020
- Hack Tools For Pc
- Hack App
- Pentest Tools Download
- Hack Tool Apk No Root
- Best Hacking Tools 2020
- Pentest Tools Tcp Port Scanner
- Pentest Tools Free
- Hacking Tools For Windows 7
- Pentest Tools Apk
- Hack Rom Tools
- Hacking Tools 2020
- Hacker Tools For Mac
- Hacking Tools Usb
- How To Hack
- Ethical Hacker Tools
- Usb Pentest Tools
- Hacker Hardware Tools
- Hacking Tools Free Download
- Hack Tools Github
- Pentest Tools Download
- Hacker Tools For Windows
- Hacking Tools For Windows Free Download
- Hacking Tools Windows 10
- Hacker Tools Hardware
- Hacker Tools Windows
- Hacking Tools Online
- Pentest Tools Website
- Pentest Tools Review
- Pentest Tools Github
- Pentest Tools Port Scanner
- Pentest Tools Nmap
- Pentest Tools
- Black Hat Hacker Tools
- Hacker Tools Linux
- Hacking Tools Mac
- Hacking Tools For Beginners
- Pentest Tools For Mac
- Hacking Tools
- Bluetooth Hacking Tools Kali
0 Comments:
Post a Comment
Subscribe to Post Comments [Atom]
<< Home