General
-
Target
185e0165efd08ed6272f1d39a599e76c_JaffaCakes118
-
Size
670KB
-
Sample
240628-cbpsgavdpa
-
MD5
185e0165efd08ed6272f1d39a599e76c
-
SHA1
b285e37ca121f76e1f1bb00f5e291571ab8c755e
-
SHA256
a1b70467f4d7e2117e23f241e7ab1ce1f6242ecad34a633b4f06a3aafacf150b
-
SHA512
186f54863a57b78c794304442f5eb0be7c7feabeb8b0c75aa1eef37d39083081cec21909cfa1529e68e0b217094b7257d732050bd9e2c10ace564c82890048f1
-
SSDEEP
12288:QZ7L5N6PVZZ8Xf58jfkE4CVF3Z4mxxAhsV4AOwf7DGj7XC2:0GtZ88jfzVQmX6Ytfujp
Static task
static1
Behavioral task
behavioral1
Sample
185e0165efd08ed6272f1d39a599e76c_JaffaCakes118.exe
Resource
win7-20240611-en
Behavioral task
behavioral2
Sample
185e0165efd08ed6272f1d39a599e76c_JaffaCakes118.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
185e0165efd08ed6272f1d39a599e76c_JaffaCakes118
-
Size
670KB
-
MD5
185e0165efd08ed6272f1d39a599e76c
-
SHA1
b285e37ca121f76e1f1bb00f5e291571ab8c755e
-
SHA256
a1b70467f4d7e2117e23f241e7ab1ce1f6242ecad34a633b4f06a3aafacf150b
-
SHA512
186f54863a57b78c794304442f5eb0be7c7feabeb8b0c75aa1eef37d39083081cec21909cfa1529e68e0b217094b7257d732050bd9e2c10ace564c82890048f1
-
SSDEEP
12288:QZ7L5N6PVZZ8Xf58jfkE4CVF3Z4mxxAhsV4AOwf7DGj7XC2:0GtZ88jfzVQmX6Ytfujp
Score10/10-
ModiLoader, DBatLoader
ModiLoader is a Delphi loader that misuses cloud services to download other malicious families.
-
ModiLoader Second Stage
-
Executes dropped EXE
-
Loads dropped DLL
-
Adds Run key to start application
-