General

  • Target

    a90bb9b930bae3a5c45933c92e500e0c_JaffaCakes118

  • Size

    546KB

  • MD5

    a90bb9b930bae3a5c45933c92e500e0c

  • SHA1

    30731b3f1000328428ecb6270d0905d37d951abe

  • SHA256

    e51de8c43034fafaa49f81e9cc955c0cf60dc9684f28d8c355baf0724710de1f

  • SHA512

    ef536944e9d46df6c3ca41d13d010d5d2bf784558afdaeb16e22bb23b34af71acb8ff91866dc78fd8c550caf4c1e0c697cad36f670d73c8bb1a9f9416b4f516e

  • SSDEEP

    12288:aWWzIRlRn2/rw7INjVGCXZq0iiIxTB5TQdIJWjI0g0A8Jqqr4d:aWUWrnIrw7I1VGCXZbii8QdAWngR8U

Malware Config

Signatures

  • Detect PhoenixStealer 1 IoCs

    Detect Phoenix Stealer.

  • Panda Stealer payload 1 IoCs
  • Pandastealer family
  • Phoenixstealer family
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • a90bb9b930bae3a5c45933c92e500e0c_JaffaCakes118
    .exe windows:6 windows x86 arch:x86

    06c6e92acd3ff57b00b3132976b3f6d6


    Headers

    Imports

    Sections