General

  • Target

    269ce16934958eea602b31a379ac29e6_JaffaCakes118

  • Size

    286KB

  • Sample

    240704-3c8j3svgnp

  • MD5

    269ce16934958eea602b31a379ac29e6

  • SHA1

    a2a5a72bc8b57c189ae4f6340c7a299ef362a63b

  • SHA256

    7495125a6a464a21d654ea0efb2d63af9250911c485153ee8ec7285f36be0ba7

  • SHA512

    92bd217aa7e61baef352af00b5844ffe5fe1189cb36c220780bff357fe7e681f6d732b51c79967575835d9499d69e565df3d4c7c922982726dbfe5df80ea53fc

  • SSDEEP

    6144:IxqWDFLlXqQnEDkzzkKhmn93L6MCOhxxFeTr/ekI:8qqRXqQnEDkiVL6+zxF6L

Malware Config

Extracted

Family

smokeloader

Botnet

pub3

Extracted

Family

smokeloader

Version

2020

C2

http://gmpeople.com/upload/

http://mile48.com/upload/

http://lecanardstsornin.com/upload/

http://m3600.com/upload/

http://camasirx.com/upload/

rc4.i32
rc4.i32

Targets

    • Target

      269ce16934958eea602b31a379ac29e6_JaffaCakes118

    • Size

      286KB

    • MD5

      269ce16934958eea602b31a379ac29e6

    • SHA1

      a2a5a72bc8b57c189ae4f6340c7a299ef362a63b

    • SHA256

      7495125a6a464a21d654ea0efb2d63af9250911c485153ee8ec7285f36be0ba7

    • SHA512

      92bd217aa7e61baef352af00b5844ffe5fe1189cb36c220780bff357fe7e681f6d732b51c79967575835d9499d69e565df3d4c7c922982726dbfe5df80ea53fc

    • SSDEEP

      6144:IxqWDFLlXqQnEDkzzkKhmn93L6MCOhxxFeTr/ekI:8qqRXqQnEDkiVL6+zxF6L

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

Peripheral Device Discovery

1
T1120

System Information Discovery

1
T1082

Tasks