General

  • Target

    1b2b2cbf8229dd847f02d06c7176e9b3_JaffaCakes118

  • Size

    5.3MB

  • Sample

    240701-nwnxfsshmk

  • MD5

    1b2b2cbf8229dd847f02d06c7176e9b3

  • SHA1

    fb6cfbc3bea7c58dac5c60a357dbb14f837b744c

  • SHA256

    2efe52df7c398d92dabc42b1eca8bf96576a3f19763cc15d692bda52132123d8

  • SHA512

    e8f3c575be63798dfa0021872212d4816db635e3737b8f9f98e0966ae7b277e42e6af1a9d441842fd3a57e9ff6d57d56c7b8e3bcc18d920df424da847b564ca1

  • SSDEEP

    98304:dK5V69rPjYbyF7/YrLaG7oRrJowe7q8wUcRFIyf8BPzQtouyboe/rFBwA:dK+9rwIcfaCoVJozq9RFIyESou0Bw

Score
7/10

Malware Config

Targets

    • Target

      1b2b2cbf8229dd847f02d06c7176e9b3_JaffaCakes118

    • Size

      5.3MB

    • MD5

      1b2b2cbf8229dd847f02d06c7176e9b3

    • SHA1

      fb6cfbc3bea7c58dac5c60a357dbb14f837b744c

    • SHA256

      2efe52df7c398d92dabc42b1eca8bf96576a3f19763cc15d692bda52132123d8

    • SHA512

      e8f3c575be63798dfa0021872212d4816db635e3737b8f9f98e0966ae7b277e42e6af1a9d441842fd3a57e9ff6d57d56c7b8e3bcc18d920df424da847b564ca1

    • SSDEEP

      98304:dK5V69rPjYbyF7/YrLaG7oRrJowe7q8wUcRFIyf8BPzQtouyboe/rFBwA:dK+9rwIcfaCoVJozq9RFIyESou0Bw

    Score
    7/10
    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix

Tasks