General

  • Target

    25db4efd434c60de4d4dd090ff6eac05_JaffaCakes118

  • Size

    956KB

  • Sample

    240704-xfhvyavgre

  • MD5

    25db4efd434c60de4d4dd090ff6eac05

  • SHA1

    40e1009c5a3764adb01fa3f3801e6e7fcd99230c

  • SHA256

    ca44b8cb763eff8133603eddeb3e0bac5470a1bd8b439b0c71ce535f55aad8a0

  • SHA512

    6512e503a461dbb7e5585a1940885df57cf36e9f28564d6278d26efa4f348af7cddd0055dca07d697e2cba7c06aa0f82207ef22d8d6ceeb4b02a11b7abe310b7

  • SSDEEP

    12288:7305c/5ENkzWdvop/64QOo67CzgGjxkr+oDBK1RgVTNB7F4gmRFSzkj+8OTp+MZL:7OO5+aqgpXCHkr+i6Ro5akzo4wXM

Score
7/10

Malware Config

Targets

    • Target

      25db4efd434c60de4d4dd090ff6eac05_JaffaCakes118

    • Size

      956KB

    • MD5

      25db4efd434c60de4d4dd090ff6eac05

    • SHA1

      40e1009c5a3764adb01fa3f3801e6e7fcd99230c

    • SHA256

      ca44b8cb763eff8133603eddeb3e0bac5470a1bd8b439b0c71ce535f55aad8a0

    • SHA512

      6512e503a461dbb7e5585a1940885df57cf36e9f28564d6278d26efa4f348af7cddd0055dca07d697e2cba7c06aa0f82207ef22d8d6ceeb4b02a11b7abe310b7

    • SSDEEP

      12288:7305c/5ENkzWdvop/64QOo67CzgGjxkr+oDBK1RgVTNB7F4gmRFSzkj+8OTp+MZL:7OO5+aqgpXCHkr+i6Ro5akzo4wXM

    Score
    7/10
    • ASPack v2.12-2.42

      Detects executables packed with ASPack v2.12-2.42

    • Checks computer location settings

      Looks up country code configured in the registry, likely geofence.

    • Executes dropped EXE

    • Loads dropped DLL

MITRE ATT&CK Matrix ATT&CK v13

Discovery

Query Registry

1
T1012

System Information Discovery

2
T1082

Tasks