General

  • Target

    1e020aa479e5555ae9ec6a4e6808767f_JaffaCakes118

  • Size

    7.3MB

  • Sample

    240702-e5jjnawbrc

  • MD5

    1e020aa479e5555ae9ec6a4e6808767f

  • SHA1

    230cc0673f169394508a99a0ab95f26b127418b5

  • SHA256

    fafc2a356dabba1740ec7c3afa82ad25d810cd261aedf08a7a7feb55fcb6b7f8

  • SHA512

    1c8a14e12fa92fc6461a764c41de279b7631fa49b75411896a5f683570552b7d74da0129741c290f945f0e7771cb4f04667d5f045b8143723f15b71969e4f04d

  • SSDEEP

    196608:zrWpYDZY0w+lMFm5GkBzMogCtv/e4O8M+RQ:zrWpcY0wyWm5G8Mh2/e4rtRQ

Score
7/10

Malware Config

Targets

    • Target

      1e020aa479e5555ae9ec6a4e6808767f_JaffaCakes118

    • Size

      7.3MB

    • MD5

      1e020aa479e5555ae9ec6a4e6808767f

    • SHA1

      230cc0673f169394508a99a0ab95f26b127418b5

    • SHA256

      fafc2a356dabba1740ec7c3afa82ad25d810cd261aedf08a7a7feb55fcb6b7f8

    • SHA512

      1c8a14e12fa92fc6461a764c41de279b7631fa49b75411896a5f683570552b7d74da0129741c290f945f0e7771cb4f04667d5f045b8143723f15b71969e4f04d

    • SSDEEP

      196608:zrWpYDZY0w+lMFm5GkBzMogCtv/e4O8M+RQ:zrWpcY0wyWm5G8Mh2/e4rtRQ

    Score
    7/10
    • VMProtect packed file

      Detects executables packed with VMProtect commercial packer.

    • Suspicious use of NtSetInformationThreadHideFromDebugger

MITRE ATT&CK Matrix ATT&CK v13

Tasks