General

  • Target

    1e5cd86251c2c61ee1cf479963b8acb8_JaffaCakes118

  • Size

    247KB

  • Sample

    240702-hk9rws1crb

  • MD5

    1e5cd86251c2c61ee1cf479963b8acb8

  • SHA1

    8962fa64240eaf4705766a55dd2a775993daf268

  • SHA256

    5ec9b31b14d03a3997e1533ccaf5d0be69155d7fa7d3035ffe7aeae3553e93f0

  • SHA512

    60e96b374238a81c9dac7c06850fb176faf58963825079b01a235880e7132a3b8499232cce77efe9ac2ff6208a05d63e449a0912c2f7a1bdbd11619020ca6953

  • SSDEEP

    6144:CvCpkQAN1ZZd8SnRK5OK42YXBiiRX7MSkECHMjC3llvc:rpwNPZd8SnMwvJRrqECHt3c

Malware Config

Targets

    • Target

      1e5cd86251c2c61ee1cf479963b8acb8_JaffaCakes118

    • Size

      247KB

    • MD5

      1e5cd86251c2c61ee1cf479963b8acb8

    • SHA1

      8962fa64240eaf4705766a55dd2a775993daf268

    • SHA256

      5ec9b31b14d03a3997e1533ccaf5d0be69155d7fa7d3035ffe7aeae3553e93f0

    • SHA512

      60e96b374238a81c9dac7c06850fb176faf58963825079b01a235880e7132a3b8499232cce77efe9ac2ff6208a05d63e449a0912c2f7a1bdbd11619020ca6953

    • SSDEEP

      6144:CvCpkQAN1ZZd8SnRK5OK42YXBiiRX7MSkECHMjC3llvc:rpwNPZd8SnMwvJRrqECHt3c

    • Ramnit

      Ramnit is a versatile family that holds viruses, worms, and Trojans.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix

Tasks