General

  • Target

    b36906c04c67f122c6746729bcd84a69_JaffaCakes118

  • Size

    97KB

  • MD5

    b36906c04c67f122c6746729bcd84a69

  • SHA1

    c09285185814c6a6d33f73bb893f7691a925a243

  • SHA256

    4ef15589130a6d856c523a4772df22df7aab66d64fa4ce1e625f9a166a5a95c3

  • SHA512

    74920654c8a2bc98d7633531c9ac8865604df4569ee11b6894e9e9ab1d306e5f0d69a361508a6ee97a73604f6f31791fbbad0774895652fe5d8f0fa5745a2748

  • SSDEEP

    1536:aZZZZZZZZZZZZpXzzzzzzzzzzzzV9rXounV98hbHnAEMqqU+2bbbAV2/S2LNmHkD:MBounVyFHFMqqDL2/LgHkc2

Score
10/10

Malware Config

Signatures

  • GandCrab payload 1 IoCs
  • Gandcrab family
  • UPX packed file 1 IoCs

    Detects executables packed with UPX/modified UPX open source packer.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • b36906c04c67f122c6746729bcd84a69_JaffaCakes118
    .exe windows:5 windows x86 arch:x86


    Headers

    Exports

    Sections