General

  • Target

    1a5423f97d9703ef73a6cd9ca1c5ec82_JaffaCakes118

  • Size

    724KB

  • Sample

    240628-qxmrwsvfjq

  • MD5

    1a5423f97d9703ef73a6cd9ca1c5ec82

  • SHA1

    65dbecbbb108830aadea91f36a7e2ad17eda3367

  • SHA256

    839bd96a46f9c730c734880354de7b7419e231dc932fa10d616f7397da9e08a5

  • SHA512

    e757e655d81f3e94008f88720c373273e8e25e2532c8ef405570237745a56032cfc4e9bbb393742d454d7f0e6c7b2cfd1ab9805d938881c34c6722d3ae0f401c

  • SSDEEP

    12288:7NLMlgQLewMI9BHdQ+rmNMo23S+qGxJHYWLzKNf4Jh0g+vmL3qPYmJpdzNZx:SHXXHe+rCMNXHYq2kh1byYmL

Score
7/10

Malware Config

Targets

    • Target

      1a5423f97d9703ef73a6cd9ca1c5ec82_JaffaCakes118

    • Size

      724KB

    • MD5

      1a5423f97d9703ef73a6cd9ca1c5ec82

    • SHA1

      65dbecbbb108830aadea91f36a7e2ad17eda3367

    • SHA256

      839bd96a46f9c730c734880354de7b7419e231dc932fa10d616f7397da9e08a5

    • SHA512

      e757e655d81f3e94008f88720c373273e8e25e2532c8ef405570237745a56032cfc4e9bbb393742d454d7f0e6c7b2cfd1ab9805d938881c34c6722d3ae0f401c

    • SSDEEP

      12288:7NLMlgQLewMI9BHdQ+rmNMo23S+qGxJHYWLzKNf4Jh0g+vmL3qPYmJpdzNZx:SHXXHe+rCMNXHYq2kh1byYmL

    Score
    7/10
    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix

Tasks