Static task
static1
Behavioral task
behavioral1
Sample
1834f6834978a185df442ff1c6efec71_JaffaCakes118.exe
Resource
win7-20240611-en
General
-
Target
1834f6834978a185df442ff1c6efec71_JaffaCakes118
-
Size
1011KB
-
MD5
1834f6834978a185df442ff1c6efec71
-
SHA1
3b55fae8eee6dfb172f1d8658e33a860ea1fd1c2
-
SHA256
2969034b1ff9c108275be7ea6ac98161574f4c5af2ff44056792ab394a5771c1
-
SHA512
c5abdcd310e92c6b4687ffb556fba68a34d25eb0f044790b30183376f7fecaa64968a38c12e69a9e893c70c45d82aec73f72dcdb84b08e41e052a2f9864f635f
-
SSDEEP
24576:jvOTggIRfmQX3zRYC6FVZPv+FWe4Ys/E:zjYlDZ3+UT/E
Malware Config
Signatures
-
Unsigned PE 1 IoCs
Checks for missing Authenticode signature.
Processes:
resource 1834f6834978a185df442ff1c6efec71_JaffaCakes118
Files
-
1834f6834978a185df442ff1c6efec71_JaffaCakes118.exe windows:4 windows x86 arch:x86
f34d5f2d4577ed6d9ceec516c1f5a744
Headers
DLL Characteristics
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
File Characteristics
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_32BIT_MACHINE
Imports
mscoree
_CorExeMain
Sections
.text Size: 1009KB - Virtual size: 1009KB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
.rsrc Size: 1024B - Virtual size: 688B
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
.reloc Size: 512B - Virtual size: 12B
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ