General

  • Target

    b8539865cf1d29ea82b007c70942cd46_JaffaCakes118

  • Size

    69KB

  • Sample

    240617-nd9q7sscrn

  • MD5

    b8539865cf1d29ea82b007c70942cd46

  • SHA1

    ac6770d5828f060557f5cfcc1241a87e93ef0686

  • SHA256

    906210fcd207bfc56d7529dd72fe88c191988075dba614e89ed7b4ad259e74dc

  • SHA512

    24d7c2bc85dbb73f6d663cb73d79825758cbc5117e9a55142bbd7cfd9c317042c0ab8dc4d23fedb76a15a94ec4c3705772110bc84f547f361f7ecf67421e1e01

  • SSDEEP

    1536:/ZZZZZZZZZZZZpXzzzzzzzzzzzzV9rXounV98hbHnAwfMqqU+2bbbAV2/S2Lkvd9:XBounVyFHpfMqqDL2/Lkvd

Score
10/10

Malware Config

Targets

    • Target

      b8539865cf1d29ea82b007c70942cd46_JaffaCakes118

    • Size

      69KB

    • MD5

      b8539865cf1d29ea82b007c70942cd46

    • SHA1

      ac6770d5828f060557f5cfcc1241a87e93ef0686

    • SHA256

      906210fcd207bfc56d7529dd72fe88c191988075dba614e89ed7b4ad259e74dc

    • SHA512

      24d7c2bc85dbb73f6d663cb73d79825758cbc5117e9a55142bbd7cfd9c317042c0ab8dc4d23fedb76a15a94ec4c3705772110bc84f547f361f7ecf67421e1e01

    • SSDEEP

      1536:/ZZZZZZZZZZZZpXzzzzzzzzzzzzV9rXounV98hbHnAwfMqqU+2bbbAV2/S2Lkvd9:XBounVyFHpfMqqDL2/Lkvd

    Score
    6/10
    • Adds Run key to start application

    • Enumerates connected drives

      Attempts to read the root path of hard drives other than the default C: drive.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

2
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

2
T1082

Tasks