General

  • Target

    16d21f6bd48d0425a8d1e4fd0059b45c_JaffaCakes118

  • Size

    38KB

  • Sample

    240627-vra85a1elh

  • MD5

    16d21f6bd48d0425a8d1e4fd0059b45c

  • SHA1

    7cd44841eddb746946ba301613025dc092b2159d

  • SHA256

    545c25bdd6d1a9cb3974974104bde506601c1e5738983869411897b91e6c0a24

  • SHA512

    e48e126cde844e017d4e461b916207ba0fcb29c8d38b2cc2ae14349e741ee328f6c3c957abfac0369ff675a44a8f80e6778f627711079f79610535ce9b7a5ab9

  • SSDEEP

    768:IkFZ0VdXeMaWDoOEN58MVkSJS0S0JEzuXCZWM+N1:IkUDXeM3pMTdS0GzuXAWM+N1

Score
10/10

Malware Config

Targets

    • Target

      16d21f6bd48d0425a8d1e4fd0059b45c_JaffaCakes118

    • Size

      38KB

    • MD5

      16d21f6bd48d0425a8d1e4fd0059b45c

    • SHA1

      7cd44841eddb746946ba301613025dc092b2159d

    • SHA256

      545c25bdd6d1a9cb3974974104bde506601c1e5738983869411897b91e6c0a24

    • SHA512

      e48e126cde844e017d4e461b916207ba0fcb29c8d38b2cc2ae14349e741ee328f6c3c957abfac0369ff675a44a8f80e6778f627711079f79610535ce9b7a5ab9

    • SSDEEP

      768:IkFZ0VdXeMaWDoOEN58MVkSJS0S0JEzuXCZWM+N1:IkUDXeM3pMTdS0GzuXAWM+N1

    Score
    10/10
    • ModiLoader, DBatLoader

      ModiLoader is a Delphi loader that misuses cloud services to download other malicious families.

    • ModiLoader Second Stage

    • Executes dropped EXE

    • Drops file in System32 directory

MITRE ATT&CK Matrix

Tasks