General

  • Target

    19aa8c4e704d4bd330f877a31bbecbe9_JaffaCakes118

  • Size

    722KB

  • Sample

    240628-lprzessgjb

  • MD5

    19aa8c4e704d4bd330f877a31bbecbe9

  • SHA1

    a4e225c8bc068ed985b22aefc708fa452285c12b

  • SHA256

    c2b9911e02442409e5d19dfcb829bb0194cca0c49c41405abce31e85053662e2

  • SHA512

    caeb2238fc6fbc4018cc030974784a878bc83637ec1ecadcdb278453a3d1ff303e73deba905df53426dc8c9c1b0b245181390526d78a96567aada7f0ff3162bb

  • SSDEEP

    12288:gFLlJnnbWOtz6sVJhvaz1Qc/WdI//vfM4qwrbkniafLo6vUTyl0w/q9jJm:Q3nbWmJVJFwSddIXvfhqbiaxvRxq9I

Score
10/10

Malware Config

Targets

    • Target

      19aa8c4e704d4bd330f877a31bbecbe9_JaffaCakes118

    • Size

      722KB

    • MD5

      19aa8c4e704d4bd330f877a31bbecbe9

    • SHA1

      a4e225c8bc068ed985b22aefc708fa452285c12b

    • SHA256

      c2b9911e02442409e5d19dfcb829bb0194cca0c49c41405abce31e85053662e2

    • SHA512

      caeb2238fc6fbc4018cc030974784a878bc83637ec1ecadcdb278453a3d1ff303e73deba905df53426dc8c9c1b0b245181390526d78a96567aada7f0ff3162bb

    • SSDEEP

      12288:gFLlJnnbWOtz6sVJhvaz1Qc/WdI//vfM4qwrbkniafLo6vUTyl0w/q9jJm:Q3nbWmJVJFwSddIXvfhqbiaxvRxq9I

    Score
    10/10
    • Darkcomet

      DarkComet is a remote access trojan (RAT) developed by Jean-Pierre Lesueur.

    • Suspicious use of SetThreadContext

MITRE ATT&CK Matrix

Tasks