General

  • Target

    80d97e6956cac5c3e1932d6400da559c_JaffaCakes118

  • Size

    394KB

  • Sample

    240529-qe4yfsgc56

  • MD5

    80d97e6956cac5c3e1932d6400da559c

  • SHA1

    e7f9775ba192271d11d77b9da1821ffdba8367d4

  • SHA256

    0c9c2d9f3fae53310238d294bc9f9b020c4bb513a1946abbe5762458623899f1

  • SHA512

    571d557b21d9add9e5bb311b7b6209afd6efa7ce986771b8c27419d89cd5eb9f4c919d4346392776c54fba061f12a009265ca3f68cffc2fc12f7896af9011bb0

  • SSDEEP

    6144:5UHSIWbCGWh4XA8FP2+zd0vUMnPbRn3jy6GhOeT5oaxxMcof9JCH3nFRT7sIzFhg:5UHSbwermT3MT5o3/inHEsFFV

Score
10/10

Malware Config

Targets

    • Target

      80d97e6956cac5c3e1932d6400da559c_JaffaCakes118

    • Size

      394KB

    • MD5

      80d97e6956cac5c3e1932d6400da559c

    • SHA1

      e7f9775ba192271d11d77b9da1821ffdba8367d4

    • SHA256

      0c9c2d9f3fae53310238d294bc9f9b020c4bb513a1946abbe5762458623899f1

    • SHA512

      571d557b21d9add9e5bb311b7b6209afd6efa7ce986771b8c27419d89cd5eb9f4c919d4346392776c54fba061f12a009265ca3f68cffc2fc12f7896af9011bb0

    • SSDEEP

      6144:5UHSIWbCGWh4XA8FP2+zd0vUMnPbRn3jy6GhOeT5oaxxMcof9JCH3nFRT7sIzFhg:5UHSbwermT3MT5o3/inHEsFFV

    Score
    10/10
    • Imminent RAT

      Remote-access trojan based on Imminent Monitor remote admin software.

    • Drops startup file

    • Drops desktop.ini file(s)

    • Suspicious use of SetThreadContext

MITRE ATT&CK Matrix

Tasks