General

  • Target

    1ba7c4bc38319c558457213140a34ac4_JaffaCakes118

  • Size

    1.1MB

  • Sample

    240701-rvgcrszgml

  • MD5

    1ba7c4bc38319c558457213140a34ac4

  • SHA1

    2e325b52b9e04b7c40548f3fa0c4d3ea304c13f8

  • SHA256

    914ea214e7d6770e61e0b80288a0b02c073d15c342e8320591b092967d163e8f

  • SHA512

    07576df676eb9516a6a1492d86a8485b9f42b353e9bf250bd9fa5eda2ac3268f75badea1a02b5a64ac27fa3f241a601fc0501a7da042ec5c7cf6dd123bb5acce

  • SSDEEP

    24576:Vs0eHP+7c5o8moNMUvN04SVZgMMnEg3rK93vYw2LYrxv2ZrfY3z/:VdEGk/m+SnVuMMnEg3rLLYNerQ3z/

Score
7/10

Malware Config

Targets

    • Target

      AssCreed II Crack/ubiorbitapi_r2.dll

    • Size

      749KB

    • MD5

      86ba92c8c93593d0dac364c8cad2346d

    • SHA1

      9ad987aed677a595cb6cb507a12a014989d4e597

    • SHA256

      79e6323661385f527d3774ec3abc002e402c4e2870ae0d6412c825c7d4556675

    • SHA512

      543b5281bb0e2ffb0b9ad0d105ab00e2b9e1e4531edc658561bc5e9913cf1210ff6a4ae32da9468bfb2c7151b967a386062f9f96296f5afee818a33de5cf3c07

    • SSDEEP

      12288:vNH+1gxr2WF9Bqx8lP2J01htFH/nydD0M9gRcCDtrZnw0Xu5ZGFaw:1H+16r2+9BNt2u1htFH/ny+fdxreku5M

    Score
    7/10
    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix

Tasks