Static task
static1
Behavioral task
behavioral1
Sample
19f7022e9c755d17d1e43145c231d378_JaffaCakes118.exe
Resource
win7-20240508-en
General
-
Target
19f7022e9c755d17d1e43145c231d378_JaffaCakes118
-
Size
416KB
-
MD5
19f7022e9c755d17d1e43145c231d378
-
SHA1
ac01fdc011f10a6caa0c2d48c7764c50e1e5227d
-
SHA256
36f0b02c67f08ffc6e33ea53680ad6c2de2ef7307675c298121bcb71ac283573
-
SHA512
2839c3c3724c8aa7ff7b2436c3f0c5e8cae35422598d5abd1992daf0c3b081b305bc9e44e9cbed2d51336f278a09598738999f3165b2c6649824584d05ad34fa
-
SSDEEP
6144:pDvjouWGWTzg1fDANHs2XYgvVYVH7GgkirdcgKHZ5BllEYzFOvhWg7lOFOMn0x3:wk1U1sqW5G3iugKnBnzYj7QUMn83
Malware Config
Signatures
-
Unsigned PE 1 IoCs
Checks for missing Authenticode signature.
Processes:
resource 19f7022e9c755d17d1e43145c231d378_JaffaCakes118
Files
-
19f7022e9c755d17d1e43145c231d378_JaffaCakes118.exe windows:4 windows x86 arch:x86
f34d5f2d4577ed6d9ceec516c1f5a744
Headers
DLL Characteristics
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
File Characteristics
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_32BIT_MACHINE
Imports
mscoree
_CorExeMain
Sections
.text Size: 404KB - Virtual size: 400KB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
.rsrc Size: 4KB - Virtual size: 672B
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
.reloc Size: 4KB - Virtual size: 12B
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ