General

  • Target

    1f21f94ba45380359311002a4e1d3da5_JaffaCakes118

  • Size

    24KB

  • Sample

    240702-nebksszcpc

  • MD5

    1f21f94ba45380359311002a4e1d3da5

  • SHA1

    465670e0b865c35a92b04057c453c14141f7634f

  • SHA256

    7aaffd165e5afc593a062d7390ebb9236271d09f8b51efa96b35c5f285bf5fb9

  • SHA512

    9d4fe824a01c111f61a20561890babbdb2c08ae98348f5e659e0186141e75ab67ff8eaae043f5b83ec8a063b608e4593f28900810767c6bd390cd4c3f276d3a7

  • SSDEEP

    384:E0dJn1nUzy5q/AsprougOc4QUrFheclmfSp6A/fG3+RoRR5N0zw:vyzyU/DroV0eclmfCVe3+K9m

Score
8/10

Malware Config

Targets

    • Target

      1f21f94ba45380359311002a4e1d3da5_JaffaCakes118

    • Size

      24KB

    • MD5

      1f21f94ba45380359311002a4e1d3da5

    • SHA1

      465670e0b865c35a92b04057c453c14141f7634f

    • SHA256

      7aaffd165e5afc593a062d7390ebb9236271d09f8b51efa96b35c5f285bf5fb9

    • SHA512

      9d4fe824a01c111f61a20561890babbdb2c08ae98348f5e659e0186141e75ab67ff8eaae043f5b83ec8a063b608e4593f28900810767c6bd390cd4c3f276d3a7

    • SSDEEP

      384:E0dJn1nUzy5q/AsprougOc4QUrFheclmfSp6A/fG3+RoRR5N0zw:vyzyU/DroV0eclmfCVe3+K9m

    Score
    8/10
    • Possible privilege escalation attempt

    • Deletes itself

    • Loads dropped DLL

    • Modifies file permissions

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix ATT&CK v13

Tasks