General

  • Target

    19367eed2b9fa4f92d399dc65f53d722_JaffaCakes118

  • Size

    203KB

  • Sample

    240628-ht6ftszblj

  • MD5

    19367eed2b9fa4f92d399dc65f53d722

  • SHA1

    144572e71d3145c88eed80843dd26eca471a1d09

  • SHA256

    6833b923b4936c625222e68a923fa89afc17b4ae96821254dc7cdee9e1621a75

  • SHA512

    48dc4b677c68077599827e02b00d87a74f5d83a9a4f16ead082cceaadd4ffd1e437d93984b0d9fb221ed63d4c824d7d520c92e40f5fcbfc382444cc01fbc21cd

  • SSDEEP

    6144:BdTpountf75Iwj/CAVCf+8rOa/z0251PACi:7louhF/C+Cm8rOQ551/i

Malware Config

Targets

    • Target

      19367eed2b9fa4f92d399dc65f53d722_JaffaCakes118

    • Size

      203KB

    • MD5

      19367eed2b9fa4f92d399dc65f53d722

    • SHA1

      144572e71d3145c88eed80843dd26eca471a1d09

    • SHA256

      6833b923b4936c625222e68a923fa89afc17b4ae96821254dc7cdee9e1621a75

    • SHA512

      48dc4b677c68077599827e02b00d87a74f5d83a9a4f16ead082cceaadd4ffd1e437d93984b0d9fb221ed63d4c824d7d520c92e40f5fcbfc382444cc01fbc21cd

    • SSDEEP

      6144:BdTpountf75Iwj/CAVCf+8rOa/z0251PACi:7louhF/C+Cm8rOQ551/i

    • Ramnit

      Ramnit is a versatile family that holds viruses, worms, and Trojans.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix

Tasks