General

  • Target

    1b7020c483f019bbfed2c260fd53e063_JaffaCakes118

  • Size

    1.9MB

  • Sample

    240701-qg979axaqr

  • MD5

    1b7020c483f019bbfed2c260fd53e063

  • SHA1

    1c6289825e0456634a87aa6995842bfad2626548

  • SHA256

    75194480ecc601e56e33c583ec1501d4e263769c708d9b7b32ae5ffcb8d27825

  • SHA512

    f263985133711e451710536667bde71ad2eff201bcdab628c78b099ccc7a16290c2f52eb1ea8939275d52283d162cf1b14dc6f1e4fafca6b87ee4ee60efdf1c8

  • SSDEEP

    49152:pbWin7InAF4yxrzSKonLIR1WovwsSb8Yu:pzn7IAF7xLR1WLsUzu

Malware Config

Targets

    • Target

      1b7020c483f019bbfed2c260fd53e063_JaffaCakes118

    • Size

      1.9MB

    • MD5

      1b7020c483f019bbfed2c260fd53e063

    • SHA1

      1c6289825e0456634a87aa6995842bfad2626548

    • SHA256

      75194480ecc601e56e33c583ec1501d4e263769c708d9b7b32ae5ffcb8d27825

    • SHA512

      f263985133711e451710536667bde71ad2eff201bcdab628c78b099ccc7a16290c2f52eb1ea8939275d52283d162cf1b14dc6f1e4fafca6b87ee4ee60efdf1c8

    • SSDEEP

      49152:pbWin7InAF4yxrzSKonLIR1WovwsSb8Yu:pzn7IAF7xLR1WLsUzu

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Privilege Escalation

Abuse Elevation Control Mechanism

1
T1548

Bypass User Account Control

1
T1548.002

Boot or Logon Autostart Execution

1
T1547

Registry Run Keys / Startup Folder

1
T1547.001

Defense Evasion

Abuse Elevation Control Mechanism

1
T1548

Bypass User Account Control

1
T1548.002

Impair Defenses

1
T1562

Disable or Modify Tools

1
T1562.001

Modify Registry

3
T1112

Discovery

System Information Discovery

1
T1082

Tasks