General
-
Target
1d25d117cf5f33109b65808ae65161ac_JaffaCakes118
-
Size
588KB
-
Sample
240702-a326rszeld
-
MD5
1d25d117cf5f33109b65808ae65161ac
-
SHA1
352bc7ae4cda30456c0bd5a6a76469097cbc09d9
-
SHA256
87d3e1886b99f9a9e8d80e6271a8aa924d14f3fddee5272309b47dde37fba0c7
-
SHA512
b40309385b20c701c14f86387777a4e7fb5ae38ebf863431de4a56440c42d684a0c7e161519e60c6cfac97b9b8c8d7dc02fdd38f4842ebc25d3931fa272abd42
-
SSDEEP
12288:9ljBBx1Q0qfKWMxl562fUnQqGT3+tF3Z4mxxgDqVTVOCC:9lVDC3KW0lw2sRGT+tQmX3VTzC
Static task
static1
Behavioral task
behavioral1
Sample
1d25d117cf5f33109b65808ae65161ac_JaffaCakes118.exe
Resource
win7-20240419-en
Behavioral task
behavioral2
Sample
1d25d117cf5f33109b65808ae65161ac_JaffaCakes118.exe
Resource
win10v2004-20240508-en
Malware Config
Targets
-
-
Target
1d25d117cf5f33109b65808ae65161ac_JaffaCakes118
-
Size
588KB
-
MD5
1d25d117cf5f33109b65808ae65161ac
-
SHA1
352bc7ae4cda30456c0bd5a6a76469097cbc09d9
-
SHA256
87d3e1886b99f9a9e8d80e6271a8aa924d14f3fddee5272309b47dde37fba0c7
-
SHA512
b40309385b20c701c14f86387777a4e7fb5ae38ebf863431de4a56440c42d684a0c7e161519e60c6cfac97b9b8c8d7dc02fdd38f4842ebc25d3931fa272abd42
-
SSDEEP
12288:9ljBBx1Q0qfKWMxl562fUnQqGT3+tF3Z4mxxgDqVTVOCC:9lVDC3KW0lw2sRGT+tQmX3VTzC
Score10/10-
ModiLoader, DBatLoader
ModiLoader is a Delphi loader that misuses cloud services to download other malicious families.
-
ModiLoader Second Stage
-
Drops file in System32 directory
-