General

  • Target

    1a8938ccb022561f26e2c3fba9e64824_JaffaCakes118

  • Size

    724KB

  • Sample

    240701-jy5krstfkm

  • MD5

    1a8938ccb022561f26e2c3fba9e64824

  • SHA1

    427d0f4d67b71ff5bddd7ab9812693744eeead6b

  • SHA256

    3ea09605da7dd2f573b7879ca6105134128018529bb721afe4a003b2b97bb5e4

  • SHA512

    6427d1beb5a57a4f7a3e77adcce71cb73113d3ad16aa677fe6f116a5a6ffcd6705ce0f13b7fd1a8201d5f5cbeca766ed34625471653845251ffd7dce1f211d30

  • SSDEEP

    12288:7NLMlgQLewMI9BHdQ+rmNMo23S+qGxJHYWLzKNf4Jh0g+vmL3qPYmJpdzNZv:SHXXHe+rCMNXHYq2kh1byYmF

Score
7/10

Malware Config

Targets

    • Target

      1a8938ccb022561f26e2c3fba9e64824_JaffaCakes118

    • Size

      724KB

    • MD5

      1a8938ccb022561f26e2c3fba9e64824

    • SHA1

      427d0f4d67b71ff5bddd7ab9812693744eeead6b

    • SHA256

      3ea09605da7dd2f573b7879ca6105134128018529bb721afe4a003b2b97bb5e4

    • SHA512

      6427d1beb5a57a4f7a3e77adcce71cb73113d3ad16aa677fe6f116a5a6ffcd6705ce0f13b7fd1a8201d5f5cbeca766ed34625471653845251ffd7dce1f211d30

    • SSDEEP

      12288:7NLMlgQLewMI9BHdQ+rmNMo23S+qGxJHYWLzKNf4Jh0g+vmL3qPYmJpdzNZv:SHXXHe+rCMNXHYq2kh1byYmF

    Score
    7/10
    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix

Tasks