Overview
overview
8Static
static
31aa6ab5705...18.exe
windows7-x64
71aa6ab5705...18.exe
windows10-2004-x64
7$PLUGINSDI...NS.dll
windows7-x64
3$PLUGINSDI...NS.dll
windows10-2004-x64
3$PLUGINSDI...NU.dll
windows7-x64
3$PLUGINSDI...NU.dll
windows10-2004-x64
3$PLUGINSDI...EM.dll
windows7-x64
3$PLUGINSDI...EM.dll
windows10-2004-x64
3$TEMP/Fox-...ER.exe
windows7-x64
8$TEMP/Fox-...ER.exe
windows10-2004-x64
8SWF2MP3.chm
windows7-x64
1SWF2MP3.chm
windows10-2004-x64
1SWF2MP3.exe
windows7-x64
1SWF2MP3.exe
windows10-2004-x64
1SWF2MP3.url
windows7-x64
6SWF2MP3.url
windows10-2004-x64
3ºº»¯Ï...¡.url
windows7-x64
5ºº»¯Ï...¡.url
windows10-2004-x64
1ºüÀêÉ...í.url
windows7-x64
6ºüÀêÉ...í.url
windows10-2004-x64
3жÔØÈí¼þ.exe
windows7-x64
7жÔØÈí¼þ.exe
windows10-2004-x64
7Analysis
-
max time kernel
149s -
max time network
153s -
platform
windows10-2004_x64 -
resource
win10v2004-20240611-en -
resource tags
arch:x64arch:x86image:win10v2004-20240611-enlocale:en-usos:windows10-2004-x64system -
submitted
01-07-2024 08:45
Static task
static1
Behavioral task
behavioral1
Sample
1aa6ab57058b1fa13bf2ce33358d43f3_JaffaCakes118.exe
Resource
win7-20240611-en
Behavioral task
behavioral2
Sample
1aa6ab57058b1fa13bf2ce33358d43f3_JaffaCakes118.exe
Resource
win10v2004-20240611-en
Behavioral task
behavioral3
Sample
$PLUGINSDIR/INSTALLOPTIONS.dll
Resource
win7-20240611-en
Behavioral task
behavioral4
Sample
$PLUGINSDIR/INSTALLOPTIONS.dll
Resource
win10v2004-20240226-en
Behavioral task
behavioral5
Sample
$PLUGINSDIR/STARTMENU.dll
Resource
win7-20240611-en
Behavioral task
behavioral6
Sample
$PLUGINSDIR/STARTMENU.dll
Resource
win10v2004-20240611-en
Behavioral task
behavioral7
Sample
$PLUGINSDIR/SYSTEM.dll
Resource
win7-20240419-en
Behavioral task
behavioral8
Sample
$PLUGINSDIR/SYSTEM.dll
Resource
win10v2004-20240611-en
Behavioral task
behavioral9
Sample
$TEMP/Fox-Temp/IEHELPER.exe
Resource
win7-20240508-en
Behavioral task
behavioral10
Sample
$TEMP/Fox-Temp/IEHELPER.exe
Resource
win10v2004-20240226-en
Behavioral task
behavioral11
Sample
SWF2MP3.chm
Resource
win7-20240611-en
Behavioral task
behavioral12
Sample
SWF2MP3.chm
Resource
win10v2004-20240611-en
Behavioral task
behavioral13
Sample
SWF2MP3.exe
Resource
win7-20240220-en
Behavioral task
behavioral14
Sample
SWF2MP3.exe
Resource
win10v2004-20240508-en
Behavioral task
behavioral15
Sample
SWF2MP3.url
Resource
win7-20240611-en
Behavioral task
behavioral16
Sample
SWF2MP3.url
Resource
win10v2004-20240611-en
Behavioral task
behavioral17
Sample
ºº»¯Ïà¹ØÎÊÌâ·´À¡.url
Resource
win7-20240611-en
Behavioral task
behavioral18
Sample
ºº»¯Ïà¹ØÎÊÌâ·´À¡.url
Resource
win10v2004-20240611-en
Behavioral task
behavioral19
Sample
ºüÀêÉÙÒ¯ºº»¯×÷Æ·Áбí.url
Resource
win7-20240508-en
Behavioral task
behavioral20
Sample
ºüÀêÉÙÒ¯ºº»¯×÷Æ·Áбí.url
Resource
win10v2004-20240508-en
Behavioral task
behavioral21
Sample
жÔØÈí¼þ.exe
Resource
win7-20240419-en
Behavioral task
behavioral22
Sample
жÔØÈí¼þ.exe
Resource
win10v2004-20240508-en
General
-
Target
SWF2MP3.chm
-
Size
250KB
-
MD5
ef6cf00574bf5ecd2fbbd574f205e650
-
SHA1
0c66655f3d4d2f974561a168c63e169f518945a3
-
SHA256
9a6b284b7084f544e82865b711a27d092ed5ab3453892a341a50d05de2c6fe9c
-
SHA512
6007034cfe17dfdc112f53f98ef3731b1738ad56ffa7996db85dc4904fde5cebe711e0db641ed42094902aa5a32fdebc80f8f0af1b17e8fc45eb4aacb76aac02
-
SSDEEP
6144:5AgxJthku1GbWNn4FAKpRaPt7t3cQ87wGljLj2Aj:PDhdMW6A44vcQAwW/Pj
Malware Config
Signatures
-
Suspicious use of SetWindowsHookEx 2 IoCs
Processes:
hh.exepid process 1732 hh.exe 1732 hh.exe