General

  • Target

    b2af72c33610fc3a2447070b6360072f_JaffaCakes118

  • Size

    88KB

  • Sample

    240616-kytzpsxejc

  • MD5

    b2af72c33610fc3a2447070b6360072f

  • SHA1

    782e06af80b80d3d87752666c11405bc1cfb80b5

  • SHA256

    ee1fa3bacb25f889dd2cbebc24209faaf5ea2c9737683d63eb7e5e73375f67c5

  • SHA512

    b2e98e4f20c59a461bb0e3b4a86efa71cd88375f4f905e4f044f79f9a10545af0f326cb8be194c467df45230a7bb7c63ce7d590ad4804079addbd484ec827648

  • SSDEEP

    1536:0555555555555pDf3X3pDz3txh3KciU9MqqU+2bbbAV2/S2xr3IdE8mne0Avu5rL:A/Vr9akMqqDL2/xr3IdE8we0Avu5r++r

Score
10/10

Malware Config

Targets

    • Target

      b2af72c33610fc3a2447070b6360072f_JaffaCakes118

    • Size

      88KB

    • MD5

      b2af72c33610fc3a2447070b6360072f

    • SHA1

      782e06af80b80d3d87752666c11405bc1cfb80b5

    • SHA256

      ee1fa3bacb25f889dd2cbebc24209faaf5ea2c9737683d63eb7e5e73375f67c5

    • SHA512

      b2e98e4f20c59a461bb0e3b4a86efa71cd88375f4f905e4f044f79f9a10545af0f326cb8be194c467df45230a7bb7c63ce7d590ad4804079addbd484ec827648

    • SSDEEP

      1536:0555555555555pDf3X3pDz3txh3KciU9MqqU+2bbbAV2/S2xr3IdE8mne0Avu5rL:A/Vr9akMqqDL2/xr3IdE8we0Avu5r++r

    Score
    7/10
    • Unexpected DNS network traffic destination

      Network traffic to other servers than the configured DNS servers was detected on the DNS port.

    • Enumerates connected drives

      Attempts to read the root path of hard drives other than the default C: drive.

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

2
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

2
T1082

Tasks