General

  • Target

    1b8f3685fe8e5151d81e8fe2479ff1a6_JaffaCakes118

  • Size

    461KB

  • Sample

    240701-q8ssaavfpd

  • MD5

    1b8f3685fe8e5151d81e8fe2479ff1a6

  • SHA1

    16a591846689814691d7e4f95319233cb6c19b6b

  • SHA256

    b4cc5c0a0c436c6e0b7fb65e557f4d88f9a4f5780c0dc9fe02bde95ec69d6b28

  • SHA512

    0b87af993286a78d460794f1fd84cddf1a7be14f124a03978992726bec0e4afbe4f6491d445640f491731996bec23f55d85f825dd3ebecfcabad71e2342bc53d

  • SSDEEP

    12288:p03cXKUoSaFcRRd09NcwKQdyEvZGgbFzb6:p03c6hcRboK4vcgbFzb

Score
7/10

Malware Config

Targets

    • Target

      1b8f3685fe8e5151d81e8fe2479ff1a6_JaffaCakes118

    • Size

      461KB

    • MD5

      1b8f3685fe8e5151d81e8fe2479ff1a6

    • SHA1

      16a591846689814691d7e4f95319233cb6c19b6b

    • SHA256

      b4cc5c0a0c436c6e0b7fb65e557f4d88f9a4f5780c0dc9fe02bde95ec69d6b28

    • SHA512

      0b87af993286a78d460794f1fd84cddf1a7be14f124a03978992726bec0e4afbe4f6491d445640f491731996bec23f55d85f825dd3ebecfcabad71e2342bc53d

    • SSDEEP

      12288:p03cXKUoSaFcRRd09NcwKQdyEvZGgbFzb6:p03c6hcRboK4vcgbFzb

    Score
    7/10
    • Deletes itself

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix

Tasks