Static task
static1
Behavioral task
behavioral1
Sample
2104156fa2b52173301e4443d2ab9a16_JaffaCakes118.exe
Resource
win7-20240419-en
General
-
Target
2104156fa2b52173301e4443d2ab9a16_JaffaCakes118
-
Size
979KB
-
MD5
2104156fa2b52173301e4443d2ab9a16
-
SHA1
0f814ab77d1a2b99a2a7a2366da683979b465247
-
SHA256
981c66a03c592a8c3df153f87adcabf16ce4c32586af29b8905ece4ccdd1b324
-
SHA512
4691b5e875a756552a232353817987bf23dd46d460f605e177ba5f5b6d3895deea0af247133f05b610543253edd8c90dde76f5fff65e5e4b8e52414dff698c21
-
SSDEEP
12288:bJ5EIVmfpCOyFYMhLrSyuDas+GNcyseQTUWMZV8l5drVYC5nRe8wSdUecZmfXorf:wTIFwQJXJtZX46tE
Malware Config
Signatures
-
Unsigned PE 1 IoCs
Checks for missing Authenticode signature.
Processes:
resource 2104156fa2b52173301e4443d2ab9a16_JaffaCakes118
Files
-
2104156fa2b52173301e4443d2ab9a16_JaffaCakes118.exe windows:4 windows x86 arch:x86
f34d5f2d4577ed6d9ceec516c1f5a744
Headers
DLL Characteristics
IMAGE_DLLCHARACTERISTICS_DYNAMIC_BASE
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_NO_SEH
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
File Characteristics
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_32BIT_MACHINE
Imports
mscoree
_CorExeMain
Sections
.text Size: 977KB - Virtual size: 977KB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
.rsrc Size: 1024B - Virtual size: 696B
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
.reloc Size: 512B - Virtual size: 12B
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ