General
-
Target
1bb53a0474ca84455096ced24df6e27e_JaffaCakes118
-
Size
395KB
-
Sample
240701-r58j1axcle
-
MD5
1bb53a0474ca84455096ced24df6e27e
-
SHA1
39d6ba87aa3ddda458422054d0ada4a0b05c7156
-
SHA256
75faf0f399d54ca80a73cdf19668db270044b2f0397e8236de3064bc7d81c5aa
-
SHA512
092ae628a13925220c85e395a0d9dc56197478e156fb52a80babeccc3e369d18cb6377bf49fced35d6a4d8daef16748077bc852e7ae241a99826f3ba7116a722
-
SSDEEP
6144:TCBljPlNn6RVwHsA6nIRmxy9XZj6Lv0BUwuLNYafwsU3yylogJCcmFsluASMw2K1:GB5Pr6MFBXsQBUws+WU3dlo4CcmGXKe
Behavioral task
behavioral1
Sample
1bb53a0474ca84455096ced24df6e27e_JaffaCakes118.exe
Resource
win7-20240221-en
Behavioral task
behavioral2
Sample
1bb53a0474ca84455096ced24df6e27e_JaffaCakes118.exe
Resource
win10v2004-20240611-en
Malware Config
Targets
-
-
Target
1bb53a0474ca84455096ced24df6e27e_JaffaCakes118
-
Size
395KB
-
MD5
1bb53a0474ca84455096ced24df6e27e
-
SHA1
39d6ba87aa3ddda458422054d0ada4a0b05c7156
-
SHA256
75faf0f399d54ca80a73cdf19668db270044b2f0397e8236de3064bc7d81c5aa
-
SHA512
092ae628a13925220c85e395a0d9dc56197478e156fb52a80babeccc3e369d18cb6377bf49fced35d6a4d8daef16748077bc852e7ae241a99826f3ba7116a722
-
SSDEEP
6144:TCBljPlNn6RVwHsA6nIRmxy9XZj6Lv0BUwuLNYafwsU3yylogJCcmFsluASMw2K1:GB5Pr6MFBXsQBUws+WU3dlo4CcmGXKe
Score10/10-
ModiLoader, DBatLoader
ModiLoader is a Delphi loader that misuses cloud services to download other malicious families.
-
ModiLoader Second Stage
-
Executes dropped EXE
-
Loads dropped DLL
-
Adds Run key to start application
-