General

  • Target

    0429795a90aa4a325ee875dccbcc1535_JaffaCakes118

  • Size

    545KB

  • Sample

    240622-2fynls1gkl

  • MD5

    0429795a90aa4a325ee875dccbcc1535

  • SHA1

    af2b5ccd4f508e8dab2d41242b52849f9dd127f8

  • SHA256

    a75911d7e23552cee42fa20516ff2ac2951a45dd7e8ce1782f8007f5d3dcb93c

  • SHA512

    6dfc41c15f7e5ea46d92a8882a694d037c897f188da773d81e4adb6af730ff32eb7d07a5cef85f1a18b60749c31fcce0a7dc05027cce204105e18143221d67a5

  • SSDEEP

    12288:5YHGjD2CU7QnpIyoImgvdo95FwV41DdjsehlXczxp6L:5hX2CU7kIV7ud+WGpdp3g36L

Malware Config

Extracted

Family

raccoon

Version

1.8.2

Botnet

e672747afc67feb221ca60f8fc9e03adcf10f038

Attributes
  • url4cnc

    http://teletop.top/youyouhell0world

    http://teleta.top/youyouhell0world

    https://t.me/youyouhell0world

rc4.plain
rc4.plain

Targets

    • Target

      0429795a90aa4a325ee875dccbcc1535_JaffaCakes118

    • Size

      545KB

    • MD5

      0429795a90aa4a325ee875dccbcc1535

    • SHA1

      af2b5ccd4f508e8dab2d41242b52849f9dd127f8

    • SHA256

      a75911d7e23552cee42fa20516ff2ac2951a45dd7e8ce1782f8007f5d3dcb93c

    • SHA512

      6dfc41c15f7e5ea46d92a8882a694d037c897f188da773d81e4adb6af730ff32eb7d07a5cef85f1a18b60749c31fcce0a7dc05027cce204105e18143221d67a5

    • SSDEEP

      12288:5YHGjD2CU7QnpIyoImgvdo95FwV41DdjsehlXczxp6L:5hX2CU7kIV7ud+WGpdp3g36L

    • Raccoon

      Raccoon is an infostealer written in C++ and first seen in 2019.

    • Raccoon Stealer V1 payload

MITRE ATT&CK Matrix

Tasks