General

  • Target

    17688fdb249061c751f4b796350897f5_JaffaCakes118

  • Size

    530KB

  • Sample

    240627-y78q4s1fnq

  • MD5

    17688fdb249061c751f4b796350897f5

  • SHA1

    0614e1b4ebe92509e107e963f289fc160b486c91

  • SHA256

    60b036a6dda850579f329a4f11f8dab93f460b953a7a5087d3e7a344df8c4d74

  • SHA512

    034c3fc5f1cba667eb28b19080f33eebce4b51296ee173a7e64ea33296f11dd2e69bec6c5851ef4c4b8eb7e071d311bdc8026fa81b26074bf760cbe662f42340

  • SSDEEP

    6144:S5sMYod+X3oI+Y7meFekbXsMYod+X3oI+Y7meFeklsMYod+X3oI+Y7meFekw:g5d+X30eD5d+X30el5d+X30eE

Malware Config

Targets

    • Target

      17688fdb249061c751f4b796350897f5_JaffaCakes118

    • Size

      530KB

    • MD5

      17688fdb249061c751f4b796350897f5

    • SHA1

      0614e1b4ebe92509e107e963f289fc160b486c91

    • SHA256

      60b036a6dda850579f329a4f11f8dab93f460b953a7a5087d3e7a344df8c4d74

    • SHA512

      034c3fc5f1cba667eb28b19080f33eebce4b51296ee173a7e64ea33296f11dd2e69bec6c5851ef4c4b8eb7e071d311bdc8026fa81b26074bf760cbe662f42340

    • SSDEEP

      6144:S5sMYod+X3oI+Y7meFekbXsMYod+X3oI+Y7meFeklsMYod+X3oI+Y7meFekw:g5d+X30eD5d+X30el5d+X30eE

    • Ramnit

      Ramnit is a versatile family that holds viruses, worms, and Trojans.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

1
T1012

System Information Discovery

1
T1082

Tasks