General
-
Target
0afb3ab61b555c124b6daecebcd77401_JaffaCakes118
-
Size
204KB
-
Sample
240624-2falsaycpm
-
MD5
0afb3ab61b555c124b6daecebcd77401
-
SHA1
3987cf580e9cb12db8026b30f84deb156125c829
-
SHA256
9936d47b871ef345ceca55fd54205ca0d420c581fecbd96c1d6cf98a25d62005
-
SHA512
ea7bf59830f0f79e1a1fe421af915dd3f6ace8767bc4c53744cfee7df7081ad818d0a0bb555b27a701d8632d887d83362f9579181586cb915351b17f4cd4a3b6
-
SSDEEP
3072:1x7A0b/kzWBojBGYZdlM1RobOdMDdLXsIhQcDOd:1tAQCbHlgWqdMuIhQcDO
Static task
static1
Behavioral task
behavioral1
Sample
0afb3ab61b555c124b6daecebcd77401_JaffaCakes118.exe
Resource
win7-20231129-en
Malware Config
Extracted
emotet
Epoch3
116.203.117.76:80
108.166.188.146:7080
216.154.222.52:7080
83.169.33.157:8080
5.189.148.98:8080
178.249.187.150:7080
41.60.202.26:22
181.231.62.54:80
201.196.15.79:990
181.55.171.237:8080
201.244.125.210:995
181.230.126.152:8090
80.227.67.18:20
51.38.134.203:8080
143.95.101.72:8080
94.177.253.126:80
181.97.70.132:8080
203.99.182.135:443
190.13.146.47:443
113.52.135.33:7080
45.33.1.161:8080
93.78.205.196:443
181.53.252.85:990
216.70.88.55:8080
186.10.16.244:53
70.45.30.28:80
125.99.61.162:7080
78.109.34.178:443
95.216.207.86:7080
139.59.242.76:8080
190.55.86.138:8443
186.139.205.130:21
200.114.134.8:20
108.179.216.46:8080
181.57.102.203:8080
181.113.229.139:990
138.197.140.163:8080
176.58.93.123:80
46.32.229.152:8080
110.36.234.146:80
212.112.113.235:80
Targets
-
-
Target
0afb3ab61b555c124b6daecebcd77401_JaffaCakes118
-
Size
204KB
-
MD5
0afb3ab61b555c124b6daecebcd77401
-
SHA1
3987cf580e9cb12db8026b30f84deb156125c829
-
SHA256
9936d47b871ef345ceca55fd54205ca0d420c581fecbd96c1d6cf98a25d62005
-
SHA512
ea7bf59830f0f79e1a1fe421af915dd3f6ace8767bc4c53744cfee7df7081ad818d0a0bb555b27a701d8632d887d83362f9579181586cb915351b17f4cd4a3b6
-
SSDEEP
3072:1x7A0b/kzWBojBGYZdlM1RobOdMDdLXsIhQcDOd:1tAQCbHlgWqdMuIhQcDO
-
Drops file in System32 directory
-