General

  • Target

    1ec6a4c30a135fe8f2187f532f5cada0_JaffaCakes118

  • Size

    697KB

  • Sample

    240702-k9mprszbnn

  • MD5

    1ec6a4c30a135fe8f2187f532f5cada0

  • SHA1

    ff21964d7beda6929fdb59b3590297e883968b27

  • SHA256

    7a51622ad8bf54be2dee12de89217733c07112c515dd8ba33438661bd32957d9

  • SHA512

    a343c16a62f8eac416daeab9752ec57436b46acf19805c37073da0906b06b99e77b3008d93cdef78a8e31bdc62154a6603c15e88f2688baa6d6e8c00ab589620

  • SSDEEP

    1536:SgUlmyLi+rffMxqNisaQx4V5roEIfGJZN8qbV76EX1UP09weXA3oJrusBTOy9dGL:SgbyfkMY+BES09JXAnyrZalI+YQ

Malware Config

Targets

    • Target

      1ec6a4c30a135fe8f2187f532f5cada0_JaffaCakes118

    • Size

      697KB

    • MD5

      1ec6a4c30a135fe8f2187f532f5cada0

    • SHA1

      ff21964d7beda6929fdb59b3590297e883968b27

    • SHA256

      7a51622ad8bf54be2dee12de89217733c07112c515dd8ba33438661bd32957d9

    • SHA512

      a343c16a62f8eac416daeab9752ec57436b46acf19805c37073da0906b06b99e77b3008d93cdef78a8e31bdc62154a6603c15e88f2688baa6d6e8c00ab589620

    • SSDEEP

      1536:SgUlmyLi+rffMxqNisaQx4V5roEIfGJZN8qbV76EX1UP09weXA3oJrusBTOy9dGL:SgbyfkMY+BES09JXAnyrZalI+YQ

    • Ramnit

      Ramnit is a versatile family that holds viruses, worms, and Trojans.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix ATT&CK v13

Defense Evasion

Modify Registry

1
T1112

Discovery

Query Registry

1
T1012

System Information Discovery

1
T1082

Tasks