General

  • Target

    00496f52320714064d5f28deb6d27a6a_JaffaCakes118

  • Size

    4.2MB

  • MD5

    00496f52320714064d5f28deb6d27a6a

  • SHA1

    a850a5f21b92406828fb20467684deee0636dfff

  • SHA256

    d2d42d0f4d3c48c6eb2caf6a64fcc1aefd8e45be05e41153f52282d06628636d

  • SHA512

    972f08ca808bef4a2f67f20905ebe429e9347d1d22994060e115e1e6a361c4fae0a8fdb20b214d192c74f02e0b30317484790e94568dc518ccad1d670f9bebb4

  • SSDEEP

    98304:OML/AYnVjQboteqWhLWqPFC2O+sQwLAEiYEclcWHPO+k:BL/nVj8oteq7qPU2eQw0EyciwPW

Score
3/10

Malware Config

Signatures

  • Unsigned PE 8 IoCs

    Checks for missing Authenticode signature.

Files

  • 00496f52320714064d5f28deb6d27a6a_JaffaCakes118
    .exe windows:5 windows x86 arch:x86

    be41bf7b8cc010b614bd36bbca606973


    Headers

    Imports

    Sections

  • $PLUGINSDIR/System.dll
    .dll windows:5 windows x86 arch:x86

    039bcbc605477e8e87ec550c2e60e748


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/UAC.dll
    .dll windows:4 windows x86 arch:x86

    0ef725341a4aecf8398c0e2132f38049


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/UserInfo.dll
    .dll windows:5 windows x86 arch:x86

    45d25ca52c312b2254c60dbcb30342d1


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/modern-wizard.bmp
  • $PLUGINSDIR/nsDialogs.dll
    .dll windows:5 windows x86 arch:x86

    9ea5bdc8c90dfcffe309465c26c89758


    Headers

    Imports

    Exports

    Sections

  • $PLUGINSDIR/nsExec.dll
    .dll windows:5 windows x86 arch:x86

    8700d0ebbb41c81ea52718af1ab70a93


    Headers

    Imports

    Exports

    Sections

  • Two.vbs
    .vbs
  • looo.exe
    .exe windows:5 windows x86 arch:x86

    baa93d47220682c04d92f7797d9224ce


    Headers

    Imports

    Sections

  • setup.exe
    .exe windows:6 windows x86 arch:x86

    baa93d47220682c04d92f7797d9224ce


    Headers

    Imports

    Sections