General

  • Target

    1b5ca0a2cfed0da837df1277a63d758f_JaffaCakes118

  • Size

    1.4MB

  • Sample

    240701-p2jqcswckj

  • MD5

    1b5ca0a2cfed0da837df1277a63d758f

  • SHA1

    981db769c134265112dda0cf442d00abf2269f8b

  • SHA256

    dc8638e20db945a7b88d9c618ee2a7053ba95f2c5f40259cb2c299c4564529e7

  • SHA512

    b501983f7574ef85ee3be8b16fb60b1ded40267bbb511e7cd2c557057f7789ce46a460462149949f907239d97c033073354f063e67b4d54cb9a5dfadbb45484b

  • SSDEEP

    24576:BD44VC2/ajaqI7Y/icfB+dfw4oSAmEi9lgOpoqNK4pe60xlMKx1rrmsnS0uLxSU0:Z44/kax0BfOllXLlgoK4ped3dx1vmsn9

Score
7/10

Malware Config

Targets

    • Target

      1b5ca0a2cfed0da837df1277a63d758f_JaffaCakes118

    • Size

      1.4MB

    • MD5

      1b5ca0a2cfed0da837df1277a63d758f

    • SHA1

      981db769c134265112dda0cf442d00abf2269f8b

    • SHA256

      dc8638e20db945a7b88d9c618ee2a7053ba95f2c5f40259cb2c299c4564529e7

    • SHA512

      b501983f7574ef85ee3be8b16fb60b1ded40267bbb511e7cd2c557057f7789ce46a460462149949f907239d97c033073354f063e67b4d54cb9a5dfadbb45484b

    • SSDEEP

      24576:BD44VC2/ajaqI7Y/icfB+dfw4oSAmEi9lgOpoqNK4pe60xlMKx1rrmsnS0uLxSU0:Z44/kax0BfOllXLlgoK4ped3dx1vmsn9

    Score
    7/10
    • Identifies Wine through registry keys

      Wine is a compatibility layer capable of running Windows applications, which can be used as sandboxing environment.

    • Themida packer

      Detects Themida, an advanced Windows software protection system.

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Virtualization/Sandbox Evasion

1
T1497

Discovery

Query Registry

1
T1012

Virtualization/Sandbox Evasion

1
T1497

Tasks