General

  • Target

    263ebc6d3f47e06cf82e229724bdda77_JaffaCakes118

  • Size

    175KB

  • Sample

    240704-z5gqaazapj

  • MD5

    263ebc6d3f47e06cf82e229724bdda77

  • SHA1

    5d1301ea667e8e7d190daf063625cf1e2427cfbe

  • SHA256

    790cb7e274bf34353716907d9b4ffba838b321433f634a8e5883294fb149f318

  • SHA512

    cd1e2fd0967759fb382a575ed590d8a039560da1f8d02e18d5c383023cc7e0e77464165d93714f3296d7a3462a56191253c5fc7b1f094e7a236bf2049919122f

  • SSDEEP

    3072:Mjko+Df7dSsvLaJq+nj9vQVoMsxSbbrMbvT0q8O1cZPzQ7IXMBc+AMP+QfQEhxFu:MjkoczaJXCVo+wvP6bQ7yMP+DE8274L

Malware Config

Targets

    • Target

      263ebc6d3f47e06cf82e229724bdda77_JaffaCakes118

    • Size

      175KB

    • MD5

      263ebc6d3f47e06cf82e229724bdda77

    • SHA1

      5d1301ea667e8e7d190daf063625cf1e2427cfbe

    • SHA256

      790cb7e274bf34353716907d9b4ffba838b321433f634a8e5883294fb149f318

    • SHA512

      cd1e2fd0967759fb382a575ed590d8a039560da1f8d02e18d5c383023cc7e0e77464165d93714f3296d7a3462a56191253c5fc7b1f094e7a236bf2049919122f

    • SSDEEP

      3072:Mjko+Df7dSsvLaJq+nj9vQVoMsxSbbrMbvT0q8O1cZPzQ7IXMBc+AMP+QfQEhxFu:MjkoczaJXCVo+wvP6bQ7yMP+DE8274L

    • Installs/modifies Browser Helper Object

      BHOs are DLL modules which act as plugins for Internet Explorer.

    • Writes to the Master Boot Record (MBR)

      Bootkits write to the MBR to gain persistence at a level below the operating system.

MITRE ATT&CK Matrix ATT&CK v13

Persistence

Browser Extensions

1
T1176

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Defense Evasion

Modify Registry

1
T1112

Pre-OS Boot

1
T1542

Bootkit

1
T1542.003

Tasks