General

  • Target

    192fb6e2bdcde0bda543280379c34c65_JaffaCakes118

  • Size

    152KB

  • Sample

    240628-hnnzlawfla

  • MD5

    192fb6e2bdcde0bda543280379c34c65

  • SHA1

    610bbb99cfb943596282f8d036474697249a8fcb

  • SHA256

    d7b13f9abe0996005793e4d3dde1a0405f0b751bb308a1a0d4cb6f93e530d8b7

  • SHA512

    8e382eb7b836c61778417ca81bea5fc4ccd67f788e2e1927e46c6a6f70fdfc66babf3b037e1612586bfcb72643761695f33546f7ef8267bbfb8979d3530cbffc

  • SSDEEP

    3072:lgQ0gIxmmDDpx1QPUhUapVsJfNsyU39nWshV:CgIYnUhbpGTsz35VD

Malware Config

Targets

    • Target

      192fb6e2bdcde0bda543280379c34c65_JaffaCakes118

    • Size

      152KB

    • MD5

      192fb6e2bdcde0bda543280379c34c65

    • SHA1

      610bbb99cfb943596282f8d036474697249a8fcb

    • SHA256

      d7b13f9abe0996005793e4d3dde1a0405f0b751bb308a1a0d4cb6f93e530d8b7

    • SHA512

      8e382eb7b836c61778417ca81bea5fc4ccd67f788e2e1927e46c6a6f70fdfc66babf3b037e1612586bfcb72643761695f33546f7ef8267bbfb8979d3530cbffc

    • SSDEEP

      3072:lgQ0gIxmmDDpx1QPUhUapVsJfNsyU39nWshV:CgIYnUhbpGTsz35VD

    • Ramnit

      Ramnit is a versatile family that holds viruses, worms, and Trojans.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Tasks