General

  • Target

    1abbb6cb6985c8dce875dc21b7d40c5e_JaffaCakes118

  • Size

    411KB

  • MD5

    1abbb6cb6985c8dce875dc21b7d40c5e

  • SHA1

    abeb048fe91c6e032a88b87aa82da2bbb1955237

  • SHA256

    26baa4252ae3a62bb4eb2fa35c777637bdc15cc660b40ddc99eac73edc811956

  • SHA512

    f8ec276beb3af41255fb73e803db70af69cf466ad2963a15dad59eefa930694f941afdca7ef03c40c62e7d8110a3e46df640d771431c64e435edb30f4f60bede

  • SSDEEP

    6144:uZ5Thwqalk7grZqE9WRY/HXiKMm5Z96z/Tfs7A9lcFuos8NnhJWmseb612cl9a:yJ7alkMrZqEJi9oQ8icFt7hJWRDQ

Score
7/10
upx

Malware Config

Signatures

  • UPX packed file 1 IoCs

    Detects executables packed with UPX/modified UPX open source packer.

  • Unsigned PE 2 IoCs

    Checks for missing Authenticode signature.

Files

  • 1abbb6cb6985c8dce875dc21b7d40c5e_JaffaCakes118
    .rar
  • 403518179/TEXT2HTML13/Default.cfg
  • 403518179/TEXT2HTML13/HTMLgenUnit.dfm
  • 403518179/TEXT2HTML13/HTMLgenUnit.pas
  • 403518179/TEXT2HTML13/TEXT2HTML.ini
  • 403518179/TEXT2HTML13/Text2HTML.dpr
  • 403518179/TEXT2HTML13/Text2HTML.res
  • 403518179/TEXT2HTML13/UAbout.dfm
  • 403518179/TEXT2HTML13/UAbout.pas
  • 403518179/TEXT2HTML13/UAppOptions.pas
  • 403518179/TEXT2HTML13/UConvertClass.pas
    .js
  • 403518179/TEXT2HTML13/UConvertThread.pas
  • 403518179/TEXT2HTML13/UCustomIni.pas
  • 403518179/TEXT2HTML13/UGenDeclarations.pas
  • 403518179/TEXT2HTML13/UHTMLOptions.pas
  • 403518179/TEXT2HTML13/UHighLighter.pas
  • 403518179/TEXT2HTML13/UIOOptions.pas
  • 403518179/TEXT2HTML13/quakelogo.jpg
    .jpg
  • 403518179/TEXT2HTML13/text2HTML.GID
  • 403518179/TEXT2HTML13/text2HTML.cnt
  • 403518179/TEXT2HTML13/text2HTML.hlp
  • 403518179/TEXT2HTML13/text2html.exe
    .exe windows:1 windows x86 arch:x86


    Headers

    Sections

  • 403518179/TEXT2HTML13/text2html.upl
  • 403518179/flashget1.exe
    .exe windows:4 windows x86 arch:x86

    3c0e70bfa5f73f1f1cef484e2bcb5bf8


    Headers

    Imports

    Sections

  • 403518179/下载说明.htm
    .html .js polyglot