General

  • Target

    1ab84267bcad706d392e9fd1802d28c6_JaffaCakes118

  • Size

    989KB

  • Sample

    240701-k5vjtawfpn

  • MD5

    1ab84267bcad706d392e9fd1802d28c6

  • SHA1

    ec76d77d18a641602da0f5b99527d7d4bfe4ae33

  • SHA256

    6fe560e73f3edfd32397a9fc5c290c8c402a7fa0b4a0678ecf0511bcf8356a9a

  • SHA512

    4ef0d5c122eee64e52debcea7289645b7f77b8c23f24cd5d69f104745d468bff1b5f8c0eb9bc0ae9b0e7f0722a314c89cd433ec1ff5b9ffd95fd930233c90432

  • SSDEEP

    24576:GJKHP49948yo2hM5ls1iYgBrSGIQm+aOQ+8ampnNZgIe0GO637EBRxdd:GUwnyoVlZU1

Score
7/10

Malware Config

Targets

    • Target

      1ab84267bcad706d392e9fd1802d28c6_JaffaCakes118

    • Size

      989KB

    • MD5

      1ab84267bcad706d392e9fd1802d28c6

    • SHA1

      ec76d77d18a641602da0f5b99527d7d4bfe4ae33

    • SHA256

      6fe560e73f3edfd32397a9fc5c290c8c402a7fa0b4a0678ecf0511bcf8356a9a

    • SHA512

      4ef0d5c122eee64e52debcea7289645b7f77b8c23f24cd5d69f104745d468bff1b5f8c0eb9bc0ae9b0e7f0722a314c89cd433ec1ff5b9ffd95fd930233c90432

    • SSDEEP

      24576:GJKHP49948yo2hM5ls1iYgBrSGIQm+aOQ+8ampnNZgIe0GO637EBRxdd:GUwnyoVlZU1

    Score
    7/10
    • Deletes itself

    • Loads dropped DLL

    • Installs/modifies Browser Helper Object

      BHOs are DLL modules which act as plugins for Internet Explorer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Browser Extensions

1
T1176

Defense Evasion

Modify Registry

1
T1112

Discovery

System Information Discovery

1
T1082

Tasks