General

  • Target

    1d2734c96b4950f477c9d2b280a9820a_JaffaCakes118

  • Size

    581KB

  • Sample

    240702-a4nprstdmj

  • MD5

    1d2734c96b4950f477c9d2b280a9820a

  • SHA1

    a5115bca563f5e0117b7e8330b985473bf4e40ca

  • SHA256

    1c2d40dc726ea9ad5535989e8cb4a754a183de0ab8a9ba0db334461933aa01b0

  • SHA512

    1d8a820df0fbf60fdfa9dd75e3da895c1c4ca202a0dcc9321686f8c880c81b2361a4cbfaa750e61e0a1c709bc30e6a331f99cab304816753a2e602a23e523e61

  • SSDEEP

    12288:buxEgquIWmaG5Bw0E2R0o+HPX5FZmjlyKIPO9y:buI5aG5Bw0XR0xHPMRyKIPn

Score
7/10

Malware Config

Targets

    • Target

      1d2734c96b4950f477c9d2b280a9820a_JaffaCakes118

    • Size

      581KB

    • MD5

      1d2734c96b4950f477c9d2b280a9820a

    • SHA1

      a5115bca563f5e0117b7e8330b985473bf4e40ca

    • SHA256

      1c2d40dc726ea9ad5535989e8cb4a754a183de0ab8a9ba0db334461933aa01b0

    • SHA512

      1d8a820df0fbf60fdfa9dd75e3da895c1c4ca202a0dcc9321686f8c880c81b2361a4cbfaa750e61e0a1c709bc30e6a331f99cab304816753a2e602a23e523e61

    • SSDEEP

      12288:buxEgquIWmaG5Bw0E2R0o+HPX5FZmjlyKIPO9y:buI5aG5Bw0XR0xHPMRyKIPn

    Score
    7/10
    • Identifies Wine through registry keys

      Wine is a compatibility layer capable of running Windows applications, which can be used as sandboxing environment.

    • Themida packer

      Detects Themida, an advanced Windows software protection system.

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Virtualization/Sandbox Evasion

1
T1497

Discovery

Query Registry

1
T1012

Virtualization/Sandbox Evasion

1
T1497

Tasks