General

  • Target

    1b2c1352e87114103ec76996738e3c49_JaffaCakes118

  • Size

    1.5MB

  • Sample

    240701-nxfx8sshqm

  • MD5

    1b2c1352e87114103ec76996738e3c49

  • SHA1

    398f60ce9087b7cbecd6108eba70c867a8205428

  • SHA256

    1cd18f06f69e00f212bceba4b149eee6ff820e27c3c929f4c315061696069f22

  • SHA512

    7c7f4eacef92f998d75cc31fb05c4d8f1a0fe808862975671c5709f300dfb48ffe649f3406075f2f2c23d8e350d921ecf92da33affd5c132106eb162edff7732

  • SSDEEP

    24576:7qRoXbnVg74xPkmh6EcW2bVMeMGVSu/mWGK1djzXv:tLniMCmh6EcfVMOSkm1K1djLv

Score
7/10

Malware Config

Targets

    • Target

      1b2c1352e87114103ec76996738e3c49_JaffaCakes118

    • Size

      1.5MB

    • MD5

      1b2c1352e87114103ec76996738e3c49

    • SHA1

      398f60ce9087b7cbecd6108eba70c867a8205428

    • SHA256

      1cd18f06f69e00f212bceba4b149eee6ff820e27c3c929f4c315061696069f22

    • SHA512

      7c7f4eacef92f998d75cc31fb05c4d8f1a0fe808862975671c5709f300dfb48ffe649f3406075f2f2c23d8e350d921ecf92da33affd5c132106eb162edff7732

    • SSDEEP

      24576:7qRoXbnVg74xPkmh6EcW2bVMeMGVSu/mWGK1djzXv:tLniMCmh6EcfVMOSkm1K1djLv

    Score
    7/10
    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix

Tasks