General

  • Target

    19945d8c52c703e13db774faefdee82f_JaffaCakes118

  • Size

    104KB

  • Sample

    240628-k6ymvsvapl

  • MD5

    19945d8c52c703e13db774faefdee82f

  • SHA1

    2de24c07b8630175a8e5e6ceb35ac5963b09aa64

  • SHA256

    61ecfddd6d604ffe0e9446a18092e2917242b07b79e78da1ff382a3e71d70d63

  • SHA512

    b083dd7cfaed2fb7d66014bab2651d4d687891eaf19f8f46a881d112c9debf8e67e42adbd9e92b376372bde90c9548d6a95b77af6e0d2edd8fe059f87b13bbee

  • SSDEEP

    3072:yOjX2J3K4a5ULY6ZayZC3EV/n0F0SQAdebjkBEQ7:yfJlEALRs3k60Bg6kqm

Score
7/10

Malware Config

Targets

    • Target

      19945d8c52c703e13db774faefdee82f_JaffaCakes118

    • Size

      104KB

    • MD5

      19945d8c52c703e13db774faefdee82f

    • SHA1

      2de24c07b8630175a8e5e6ceb35ac5963b09aa64

    • SHA256

      61ecfddd6d604ffe0e9446a18092e2917242b07b79e78da1ff382a3e71d70d63

    • SHA512

      b083dd7cfaed2fb7d66014bab2651d4d687891eaf19f8f46a881d112c9debf8e67e42adbd9e92b376372bde90c9548d6a95b77af6e0d2edd8fe059f87b13bbee

    • SSDEEP

      3072:yOjX2J3K4a5ULY6ZayZC3EV/n0F0SQAdebjkBEQ7:yfJlEALRs3k60Bg6kqm

    Score
    7/10
    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix

Tasks