General

  • Target

    60be38e452d06d7ed7ef572b66352577_JaffaCakes118

  • Size

    437KB

  • Sample

    240331-254k6aeg9v

  • MD5

    60be38e452d06d7ed7ef572b66352577

  • SHA1

    40ad170e828ef11a591581809b78449de4f657d0

  • SHA256

    43393c4b4dc45b4a736e2553cadcfae7e929b13e32b487e6e2bb316e614a647f

  • SHA512

    8fc17caee2c7a6dd46ea7beb5108f4fda5eb04c45d21206ee252cc7d33f41cc8d0270926b6f84492adfd91e859fb58792786f47691292d25e825ed38f5d4b89c

  • SSDEEP

    6144:7LK5+tOyf0hVLdr3EyuOLvRWWt9iMU/1EoQPFWRkgj2Gr3sv7kMDQ:3KEUyf01FpNWFV/cg+gv3sIC

Malware Config

Extracted

Family

bazarloader

C2

reddew28c.bazar

Targets

    • Target

      60be38e452d06d7ed7ef572b66352577_JaffaCakes118

    • Size

      437KB

    • MD5

      60be38e452d06d7ed7ef572b66352577

    • SHA1

      40ad170e828ef11a591581809b78449de4f657d0

    • SHA256

      43393c4b4dc45b4a736e2553cadcfae7e929b13e32b487e6e2bb316e614a647f

    • SHA512

      8fc17caee2c7a6dd46ea7beb5108f4fda5eb04c45d21206ee252cc7d33f41cc8d0270926b6f84492adfd91e859fb58792786f47691292d25e825ed38f5d4b89c

    • SSDEEP

      6144:7LK5+tOyf0hVLdr3EyuOLvRWWt9iMU/1EoQPFWRkgj2Gr3sv7kMDQ:3KEUyf01FpNWFV/cg+gv3sIC

    • Bazar Loader

      Detected loader normally used to deploy BazarBackdoor malware.

    • Bazar/Team9 Loader payload

MITRE ATT&CK Matrix

Tasks