General
-
Target
1e36421a8c4e11ebd1cbd216fe526b9d_JaffaCakes118
-
Size
1.9MB
-
Sample
240702-gjc6vsyfmf
-
MD5
1e36421a8c4e11ebd1cbd216fe526b9d
-
SHA1
9a68f1f5b2f8863e99862087d40218ddef3b2f9c
-
SHA256
7e631de7af6f33a13be9f418dccde2d3edacf1511817d4b6db123fb82e200578
-
SHA512
e7487c2edba7c29c176860576c1580a4d39eaed6cec36b6ad793063e98ef3e2f27e99a283cbbf70bb8e489e41e2ced7c51af86d8aba7dc3d7c450b95db955c05
-
SSDEEP
49152:nZFes4Jklhy8oZHh5barWjg7Vh/vv5TGmFrgKYAbTvM:nZFh4ClUZLa0uXh5FUnU
Behavioral task
behavioral1
Sample
1e36421a8c4e11ebd1cbd216fe526b9d_JaffaCakes118.exe
Resource
win7-20240221-en
Malware Config
Targets
-
-
Target
1e36421a8c4e11ebd1cbd216fe526b9d_JaffaCakes118
-
Size
1.9MB
-
MD5
1e36421a8c4e11ebd1cbd216fe526b9d
-
SHA1
9a68f1f5b2f8863e99862087d40218ddef3b2f9c
-
SHA256
7e631de7af6f33a13be9f418dccde2d3edacf1511817d4b6db123fb82e200578
-
SHA512
e7487c2edba7c29c176860576c1580a4d39eaed6cec36b6ad793063e98ef3e2f27e99a283cbbf70bb8e489e41e2ced7c51af86d8aba7dc3d7c450b95db955c05
-
SSDEEP
49152:nZFes4Jklhy8oZHh5barWjg7Vh/vv5TGmFrgKYAbTvM:nZFh4ClUZLa0uXh5FUnU
-
Identifies Wine through registry keys
Wine is a compatibility layer capable of running Windows applications, which can be used as sandboxing environment.
-
Drops file in System32 directory
-