Static task
static1
Behavioral task
behavioral1
Sample
1acc69fe88446aa3c68603197b8e8ccd_JaffaCakes118.exe
Resource
win7-20240611-en
General
-
Target
1acc69fe88446aa3c68603197b8e8ccd_JaffaCakes118
-
Size
100KB
-
MD5
1acc69fe88446aa3c68603197b8e8ccd
-
SHA1
85168c53569961e96b0c45fa87fc2861b090720a
-
SHA256
f6a20dd9717ceef703c0661281bb723e89a59ef6dc0b5af8142ebeefe38295cd
-
SHA512
e92492cdf0929d6475ab611854f8bbd0778a18c856f332ff367e0340702d3062d96a01d47da2664f24c0a84e94e0cb875483fc93a613a65d961eb1375a1fec2e
-
SSDEEP
1536:q6vCZGoWHlS7BZMoeG/HcR70wTzxvJ7oehmXoUhj8zArrnWpAw:q6qZGVlGYoeE8FPBPmXoUB88nnk
Malware Config
Signatures
-
Unsigned PE 1 IoCs
Checks for missing Authenticode signature.
Processes:
resource 1acc69fe88446aa3c68603197b8e8ccd_JaffaCakes118
Files
-
1acc69fe88446aa3c68603197b8e8ccd_JaffaCakes118.exe windows:4 windows x86 arch:x86
14610dd0ebbc796a9a3a2ba2cdd24e79
Headers
File Characteristics
IMAGE_FILE_RELOCS_STRIPPED
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_LINE_NUMS_STRIPPED
IMAGE_FILE_LOCAL_SYMS_STRIPPED
IMAGE_FILE_32BIT_MACHINE
Imports
kernel32
ExitProcess
user32
MessageBoxW
Sections
.text Size: 72KB - Virtual size: 76KB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE