General

  • Target

    1d50ebcd4240f12442e398878d5e1bff_JaffaCakes118

  • Size

    288KB

  • Sample

    240702-y6bd8a1gqn

  • MD5

    1d50ebcd4240f12442e398878d5e1bff

  • SHA1

    bd9a002c91d717ba492c3af3151b0df5eac9ee7c

  • SHA256

    641046333e660cff0ba2f5a7a31b67936861bfb83f5db0f874517d1995c25a7b

  • SHA512

    2169c7d03a8ac70a1c2958e17ca8c9380c18180b99a49c3512c4cf92566395fa9abb51e5f435ccc86e29771deb92688ce2357b5f7169aaf235650711beb95d08

  • SSDEEP

    6144:z2ZWjzePWkGrXwID03nZb86ZuojaDEd5Gm:sWj6PorXA3nZbL3aDEGm

Malware Config

Targets

    • Target

      1d50ebcd4240f12442e398878d5e1bff_JaffaCakes118

    • Size

      288KB

    • MD5

      1d50ebcd4240f12442e398878d5e1bff

    • SHA1

      bd9a002c91d717ba492c3af3151b0df5eac9ee7c

    • SHA256

      641046333e660cff0ba2f5a7a31b67936861bfb83f5db0f874517d1995c25a7b

    • SHA512

      2169c7d03a8ac70a1c2958e17ca8c9380c18180b99a49c3512c4cf92566395fa9abb51e5f435ccc86e29771deb92688ce2357b5f7169aaf235650711beb95d08

    • SSDEEP

      6144:z2ZWjzePWkGrXwID03nZb86ZuojaDEd5Gm:sWj6PorXA3nZbL3aDEGm

    • Ramnit

      Ramnit is a versatile family that holds viruses, worms, and Trojans.

    • Executes dropped EXE

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

    • Drops file in System32 directory

MITRE ATT&CK Matrix

Tasks