General
-
Target
11ecdcc5f431479d1012ee3a28463714_JaffaCakes118
-
Size
936KB
-
Sample
240626-n9ntlswhjr
-
MD5
11ecdcc5f431479d1012ee3a28463714
-
SHA1
5cd3a74b95d202277f5140b7f538c076886edc9a
-
SHA256
ce23f995ea111d536a38754e8ae79e691388b578cc63a435613c887e47ef5638
-
SHA512
09d76aeff0a2d55a3b198e27407b20cf44b1a5f0dc362bf90adff039ad78aea0bd7c7bcfd2eb39107ad126c90e2b44e506ff7cf5e37b85049161ef34e97feb4e
-
SSDEEP
24576:SWcGwIy+gxVAoI1VDTeTGgjucmB84fVV:SWcLCgxmoI1VDKTBjucI84f/
Static task
static1
Behavioral task
behavioral1
Sample
11ecdcc5f431479d1012ee3a28463714_JaffaCakes118.exe
Resource
win7-20240611-en
Behavioral task
behavioral2
Sample
11ecdcc5f431479d1012ee3a28463714_JaffaCakes118.exe
Resource
win10v2004-20240611-en
Malware Config
Targets
-
-
Target
11ecdcc5f431479d1012ee3a28463714_JaffaCakes118
-
Size
936KB
-
MD5
11ecdcc5f431479d1012ee3a28463714
-
SHA1
5cd3a74b95d202277f5140b7f538c076886edc9a
-
SHA256
ce23f995ea111d536a38754e8ae79e691388b578cc63a435613c887e47ef5638
-
SHA512
09d76aeff0a2d55a3b198e27407b20cf44b1a5f0dc362bf90adff039ad78aea0bd7c7bcfd2eb39107ad126c90e2b44e506ff7cf5e37b85049161ef34e97feb4e
-
SSDEEP
24576:SWcGwIy+gxVAoI1VDTeTGgjucmB84fVV:SWcLCgxmoI1VDKTBjucI84f/
Score10/10-
Uses the VBS compiler for execution
-
Adds Run key to start application
-
Suspicious use of SetThreadContext
-