Analysis

  • max time kernel
    118s
  • max time network
    118s
  • platform
    windows7_x64
  • resource
    win7-20240508-en
  • resource tags

    arch:x64arch:x86image:win7-20240508-enlocale:en-usos:windows7-x64system
  • submitted
    28-06-2024 09:40

General

  • Target

    19a8e52dd496f23e0233fc4beb5fd8f6_JaffaCakes118.exe

  • Size

    515KB

  • MD5

    19a8e52dd496f23e0233fc4beb5fd8f6

  • SHA1

    e524eea6112a01d318abd5f03b36794ef1c14db7

  • SHA256

    5e6acefa95e1dc9d3b4c8ca844e13af36c808ff1694b023ffa960c31cfc15dad

  • SHA512

    e2a30b19113e53cd92cc52dd29e4ca589455e3c4f898ebe628a45184566ae069200a4d0fa05d9c737d95725d4548e11fb3b92b530500d892672a1ce1c27e762a

  • SSDEEP

    12288:9m+S/Jvc6oEYUAvNukPh5A+h9MNIg6bTNXjtU9:9B4fXdAvNukJy+se5bT09

Score
7/10

Malware Config

Signatures

  • VMProtect packed file 1 IoCs

    Detects executables packed with VMProtect commercial packer.

Processes

  • C:\Users\Admin\AppData\Local\Temp\19a8e52dd496f23e0233fc4beb5fd8f6_JaffaCakes118.exe
    "C:\Users\Admin\AppData\Local\Temp\19a8e52dd496f23e0233fc4beb5fd8f6_JaffaCakes118.exe"
    1⤵
      PID:3012

    Network

    MITRE ATT&CK Matrix

    Replay Monitor

    Loading Replay Monitor...

    Downloads

    • memory/3012-0-0x0000000000400000-0x0000000000482000-memory.dmp
      Filesize

      520KB