NP_GetEntryPoints
NP_GetMIMEDescription
NP_Initialize
NP_Shutdown
Static task
static1
Behavioral task
behavioral1
Sample
1b20af19468f2385be2da8436febb0ac_JaffaCakes118.dll
Resource
win7-20240221-en
Target
1b20af19468f2385be2da8436febb0ac_JaffaCakes118
Size
156KB
MD5
1b20af19468f2385be2da8436febb0ac
SHA1
496ea51803ff20573208403f8cedaa28831d1fc1
SHA256
5724dff81bdade2b6fe5e858b73421f8f1b1d9aca48dfffce8f5cc18cfcfb8b5
SHA512
2c612cb9ebfdc59c76c228f29d2af703a4edb0e5e5337cec23ce19b21af117d449f18f172da02b0a3b68a905086f7c7b7bfeee1f811484b19af575f1d17736e1
SSDEEP
3072:lGttwyTViRa7B7xtAYC5jwZgFRnnMbabYwN4jYvhY6:lGXwyRN71xmnhwybnMs
Checks for missing Authenticode signature.
Processes:
resource |
---|
1b20af19468f2385be2da8436febb0ac_JaffaCakes118 |
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_DLL
GetStringTypeA
GetLocaleInfoA
RtlUnwind
InitializeCriticalSectionAndSpinCount
LoadLibraryA
MultiByteToWideChar
GetOEMCP
GetACP
GetCPInfo
WriteFile
HeapReAlloc
VirtualAlloc
EnterCriticalSection
LeaveCriticalSection
HeapSize
GetSystemTimeAsFileTime
GetCurrentProcessId
GetTickCount
QueryPerformanceCounter
GetStringTypeW
LCMapStringA
LCMapStringW
lstrcmpiA
lstrcatA
lstrcmpA
lstrlenA
IsValidCodePage
lstrcpyA
GetCurrentThreadId
GetCommandLineA
HeapAlloc
RaiseException
TerminateProcess
GetCurrentProcess
UnhandledExceptionFilter
SetUnhandledExceptionFilter
IsDebuggerPresent
GetLastError
HeapFree
GetModuleHandleW
GetProcAddress
TlsGetValue
TlsAlloc
TlsSetValue
TlsFree
InterlockedIncrement
SetLastError
InterlockedDecrement
Sleep
ExitProcess
SetHandleCount
GetStdHandle
GetFileType
GetStartupInfoA
DeleteCriticalSection
GetModuleFileNameA
FreeEnvironmentStringsA
GetEnvironmentStrings
FreeEnvironmentStringsW
WideCharToMultiByte
GetEnvironmentStringsW
HeapCreate
HeapDestroy
VirtualFree
GetDC
SendMessageA
ReleaseDC
MessageBoxA
SetWindowTextA
SetDlgItemTextA
GetDlgItem
EnableWindow
GetWindowRect
SetWindowPos
ScreenToClient
SetForegroundWindow
IsWindow
CreateWindowExA
ShowWindow
RegisterClassA
GetWindowLongA
DefWindowProcA
SetWindowLongA
CreateDialogParamA
BeginPaint
GetClientRect
DrawIcon
GetSysColor
DrawIconEx
EndPaint
DrawTextA
InvalidateRect
UpdateWindow
wsprintfA
DestroyWindow
DestroyIcon
LoadIconA
LoadStringA
UnregisterClassA
Polyline
DeleteObject
GetStockObject
SelectObject
GetTextExtentPoint32A
LPtoDP
SetBkMode
SetTextColor
CreatePen
RegSetValueExA
RegCreateKeyA
RegQueryValueExA
NP_GetEntryPoints
NP_GetMIMEDescription
NP_Initialize
NP_Shutdown
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ