General

  • Target

    b6883c46390ac08ca02f587f88b8c1f7_JaffaCakes118

  • Size

    70KB

  • Sample

    240617-dw2s7swdpl

  • MD5

    b6883c46390ac08ca02f587f88b8c1f7

  • SHA1

    ad68ac31d91e103985bc6dd283b5315db37d6ad9

  • SHA256

    d102993e0665c3b5b75d943a7525558407f2e54d514789bb07e358640b28287b

  • SHA512

    761228d8c4a407b67335cc49dbd0857cca56e600c68d977ece609933583af06a53b946f9d8c20bca41450d46ee172c33808d902cc36863859259d65acb49dd84

  • SSDEEP

    1536:cZZZZZZZZZZZZpXzzzzzzzzzzzzADypczUk+lkZJngWMqqU+2bbbAV2/S2OvvdZl:jd5BJHMqqDL2/Ovvdr

Score
10/10

Malware Config

Targets

    • Target

      b6883c46390ac08ca02f587f88b8c1f7_JaffaCakes118

    • Size

      70KB

    • MD5

      b6883c46390ac08ca02f587f88b8c1f7

    • SHA1

      ad68ac31d91e103985bc6dd283b5315db37d6ad9

    • SHA256

      d102993e0665c3b5b75d943a7525558407f2e54d514789bb07e358640b28287b

    • SHA512

      761228d8c4a407b67335cc49dbd0857cca56e600c68d977ece609933583af06a53b946f9d8c20bca41450d46ee172c33808d902cc36863859259d65acb49dd84

    • SSDEEP

      1536:cZZZZZZZZZZZZpXzzzzzzzzzzzzADypczUk+lkZJngWMqqU+2bbbAV2/S2OvvdZl:jd5BJHMqqDL2/Ovvdr

    Score
    6/10
    • Adds Run key to start application

    • Enumerates connected drives

      Attempts to read the root path of hard drives other than the default C: drive.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

2
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

2
T1082

Tasks