General

  • Target

    JaffaCakes118_06ef052ec4199cb0b1de06a95cb79c80

  • Size

    456KB

  • Sample

    250519-jfge8avlw9

  • MD5

    06ef052ec4199cb0b1de06a95cb79c80

  • SHA1

    cefc7ad94b168c7a6d86bc4469b7438f34c48e3d

  • SHA256

    2461e0983d3a0fd4661ce38cf6f630c459c576d10e4c854bb70f4a4c1383b3ec

  • SHA512

    e21703447effca232845ee9fc5344f0e9d1b8ed4bc24c9b98c2935befddf927d4cf6893f6418a3ecef48cbd5014c1d631a2f9e5e81dc7366ee49a4168cde3e83

  • SSDEEP

    12288:VlVvN1QWguohInJDrn8zwNF7eCrOI82iWFjV:f2Sxrn80NF77WcFjV

Malware Config

Targets

    • Target

      JaffaCakes118_06ef052ec4199cb0b1de06a95cb79c80

    • Size

      456KB

    • MD5

      06ef052ec4199cb0b1de06a95cb79c80

    • SHA1

      cefc7ad94b168c7a6d86bc4469b7438f34c48e3d

    • SHA256

      2461e0983d3a0fd4661ce38cf6f630c459c576d10e4c854bb70f4a4c1383b3ec

    • SHA512

      e21703447effca232845ee9fc5344f0e9d1b8ed4bc24c9b98c2935befddf927d4cf6893f6418a3ecef48cbd5014c1d631a2f9e5e81dc7366ee49a4168cde3e83

    • SSDEEP

      12288:VlVvN1QWguohInJDrn8zwNF7eCrOI82iWFjV:f2Sxrn80NF77WcFjV

    • Ramnit

      Ramnit is a versatile family that holds viruses, worms, and Trojans.

    • Ramnit family

    • Executes dropped EXE

    • Drops file in System32 directory

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Enterprise v16

Tasks

OSZAR »