General
-
Target
1b6e9e2de82c71238f716597889355df_JaffaCakes118
-
Size
1.3MB
-
Sample
240701-qfr1aatckd
-
MD5
1b6e9e2de82c71238f716597889355df
-
SHA1
e083847506b506112f571e033fa721ddf1193b64
-
SHA256
9ba626718ff2be381d64c81ced50599061dc8957cc02537ff59f2b3f898a05fe
-
SHA512
212d2613d0b9826d97ae511743f2d0288ea1141194e2d955eb955968a2102c04c9b529b32ab41092b27e1e6cbf275631e39bdccbae955f25a42a4ee761025b88
-
SSDEEP
24576:ycPFgKBNcLzQ8+HoSTPCvFFpPK0jUAifu0glqWRve7q3pnpA8zLg7iZfB7p:ywBqwH5UXbvZ3ppA+ki/F
Behavioral task
behavioral1
Sample
1b6e9e2de82c71238f716597889355df_JaffaCakes118.exe
Resource
win7-20240508-en
Malware Config
Targets
-
-
Target
1b6e9e2de82c71238f716597889355df_JaffaCakes118
-
Size
1.3MB
-
MD5
1b6e9e2de82c71238f716597889355df
-
SHA1
e083847506b506112f571e033fa721ddf1193b64
-
SHA256
9ba626718ff2be381d64c81ced50599061dc8957cc02537ff59f2b3f898a05fe
-
SHA512
212d2613d0b9826d97ae511743f2d0288ea1141194e2d955eb955968a2102c04c9b529b32ab41092b27e1e6cbf275631e39bdccbae955f25a42a4ee761025b88
-
SSDEEP
24576:ycPFgKBNcLzQ8+HoSTPCvFFpPK0jUAifu0glqWRve7q3pnpA8zLg7iZfB7p:ywBqwH5UXbvZ3ppA+ki/F
-
Identifies Wine through registry keys
Wine is a compatibility layer capable of running Windows applications, which can be used as sandboxing environment.
-
Suspicious use of NtSetInformationThreadHideFromDebugger
-