General

  • Target

    18b8180b554a0ce58fec184b94445eef_JaffaCakes118

  • Size

    69KB

  • Sample

    240628-enzjjsshqp

  • MD5

    18b8180b554a0ce58fec184b94445eef

  • SHA1

    6fa27f2778dfefd5897e8bdfd58e8b206ecda99f

  • SHA256

    889b7f224acdc414ed35626c360b3120ad0acda018e313c5159d7b3de5badc82

  • SHA512

    7f9e525c225e7f5b271799a80b96a5b1b3edb165beff5dd5e31375bd5a51a312e701fc7f9f0e7fcf3dffb997db78eba21e38be980fad082db403ad6ee1c8e69a

  • SSDEEP

    1536:nMC3G8e8e+UAAnKnXpCmLbL9VLoWir6DE49G/1k61liFyr:nMC258gPnKnXpCm/LbLBDfgNn18F

Score
7/10

Malware Config

Targets

    • Target

      18b8180b554a0ce58fec184b94445eef_JaffaCakes118

    • Size

      69KB

    • MD5

      18b8180b554a0ce58fec184b94445eef

    • SHA1

      6fa27f2778dfefd5897e8bdfd58e8b206ecda99f

    • SHA256

      889b7f224acdc414ed35626c360b3120ad0acda018e313c5159d7b3de5badc82

    • SHA512

      7f9e525c225e7f5b271799a80b96a5b1b3edb165beff5dd5e31375bd5a51a312e701fc7f9f0e7fcf3dffb997db78eba21e38be980fad082db403ad6ee1c8e69a

    • SSDEEP

      1536:nMC3G8e8e+UAAnKnXpCmLbL9VLoWir6DE49G/1k61liFyr:nMC258gPnKnXpCm/LbLBDfgNn18F

    Score
    7/10
    • Deletes itself

    • Executes dropped EXE

    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

1
T1082

Tasks