General

  • Target

    ad6a963bc9736f73a9039a891e64ad95_JaffaCakes118

  • Size

    69KB

  • Sample

    240615-jshttawgqp

  • MD5

    ad6a963bc9736f73a9039a891e64ad95

  • SHA1

    bda490c808f6f6a9bca5d0dbf328a73e2a3af120

  • SHA256

    b59b45da52ec981d29491ac0f3282a5c877dcc43f5dcbef7e5a86cc40b935f63

  • SHA512

    7e146901de1b1c7ab9f5cbf9a963c2fef6007842990d6d625b7effbf848849a4f4531adb07545eef769d4f84f366e58dcdf0a4ecd40bac39e3fa57f6e502597b

  • SSDEEP

    1536:SZZZZZZZZZZZZpXzzzzzzzzzzzzV9rXounV98hbHnAwfMqqU+2bbbAV2/S2Lkvd9:0BounVyFHpfMqqDL2/Lkvd

Score
10/10

Malware Config

Targets

    • Target

      ad6a963bc9736f73a9039a891e64ad95_JaffaCakes118

    • Size

      69KB

    • MD5

      ad6a963bc9736f73a9039a891e64ad95

    • SHA1

      bda490c808f6f6a9bca5d0dbf328a73e2a3af120

    • SHA256

      b59b45da52ec981d29491ac0f3282a5c877dcc43f5dcbef7e5a86cc40b935f63

    • SHA512

      7e146901de1b1c7ab9f5cbf9a963c2fef6007842990d6d625b7effbf848849a4f4531adb07545eef769d4f84f366e58dcdf0a4ecd40bac39e3fa57f6e502597b

    • SSDEEP

      1536:SZZZZZZZZZZZZpXzzzzzzzzzzzzV9rXounV98hbHnAwfMqqU+2bbbAV2/S2Lkvd9:0BounVyFHpfMqqDL2/Lkvd

    Score
    6/10
    • Adds Run key to start application

    • Enumerates connected drives

      Attempts to read the root path of hard drives other than the default C: drive.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

2
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

2
T1082

Tasks