General

  • Target

    1680759f930f5649c2f05608bf04cb6c_JaffaCakes118

  • Size

    823KB

  • Sample

    240627-srqygazcql

  • MD5

    1680759f930f5649c2f05608bf04cb6c

  • SHA1

    ab985ab5b5ae183659f6c6240f6ed62df3cb9325

  • SHA256

    0d9793cac8c3d554fed790b99d2498892b4d8d4e71633690cbf2324b97b98edd

  • SHA512

    7938540c7f6591a5c601ea53f1b052bda69b14c68be1846d64838e51f9f5fe32f541c068e50569d2c118d22abec18b1bc24b1f97ec260ae2a6b749d87ffd0561

  • SSDEEP

    24576:AL5/rmRsmDWDPNuFhPvYrpLYHSfcoopooLY9Nu0:qK5hPILYHSfeY9n

Malware Config

Targets

    • Target

      1680759f930f5649c2f05608bf04cb6c_JaffaCakes118

    • Size

      823KB

    • MD5

      1680759f930f5649c2f05608bf04cb6c

    • SHA1

      ab985ab5b5ae183659f6c6240f6ed62df3cb9325

    • SHA256

      0d9793cac8c3d554fed790b99d2498892b4d8d4e71633690cbf2324b97b98edd

    • SHA512

      7938540c7f6591a5c601ea53f1b052bda69b14c68be1846d64838e51f9f5fe32f541c068e50569d2c118d22abec18b1bc24b1f97ec260ae2a6b749d87ffd0561

    • SSDEEP

      24576:AL5/rmRsmDWDPNuFhPvYrpLYHSfcoopooLY9Nu0:qK5hPILYHSfeY9n

    • Ramnit

      Ramnit is a versatile family that holds viruses, worms, and Trojans.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Tasks