General

  • Target

    1b96a24191f30139a9df192c8be29e1f_JaffaCakes118

  • Size

    290KB

  • Sample

    240701-rf6zwawara

  • MD5

    1b96a24191f30139a9df192c8be29e1f

  • SHA1

    0bd53253f6f149cec57045a5f39c0fe7ec600cfb

  • SHA256

    dfe77d354c1829f6fffd8f59dd57cafca86e377050de75084f8c54f8ec460cfb

  • SHA512

    4e28c40ed8c4423fa606cf7d216b52facae9b80a7bbfb2c9b53b74954e322035da67e96372db4b3408161d87d6b1473b11740fc995fc8ed5cb681d78ad2726e0

  • SSDEEP

    6144:Ez72R6v3EgaKoWVmxNZNRDhGcF051OjyphTF/U6BC1yGkZJBav0v:Ez72BgGW0NZNFhGcF05kjWF/myPJs8

Score
10/10

Malware Config

Targets

    • Target

      1b96a24191f30139a9df192c8be29e1f_JaffaCakes118

    • Size

      290KB

    • MD5

      1b96a24191f30139a9df192c8be29e1f

    • SHA1

      0bd53253f6f149cec57045a5f39c0fe7ec600cfb

    • SHA256

      dfe77d354c1829f6fffd8f59dd57cafca86e377050de75084f8c54f8ec460cfb

    • SHA512

      4e28c40ed8c4423fa606cf7d216b52facae9b80a7bbfb2c9b53b74954e322035da67e96372db4b3408161d87d6b1473b11740fc995fc8ed5cb681d78ad2726e0

    • SSDEEP

      6144:Ez72R6v3EgaKoWVmxNZNRDhGcF051OjyphTF/U6BC1yGkZJBav0v:Ez72BgGW0NZNFhGcF05kjWF/myPJs8

    Score
    10/10
    • ModiLoader, DBatLoader

      ModiLoader is a Delphi loader that misuses cloud services to download other malicious families.

    • ModiLoader Second Stage

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks