General

  • Target

    b9a4fc13a3d68b1c0998f5276089c655bcbc0834728e00c556f07cbfd739a75b

  • Size

    13.7MB

  • Sample

    240630-pkdg1s1cpq

  • MD5

    69358c0b39fe119636bea3147ab95ca7

  • SHA1

    adafc4e49642c92d0d47d2be459afcccdb2e633d

  • SHA256

    b9a4fc13a3d68b1c0998f5276089c655bcbc0834728e00c556f07cbfd739a75b

  • SHA512

    bea41512d8573bd11dcd475baeaabef6cdaec51961c54a6ea02fa4ee17bbae4d120f1d4607c1aa214be66b02418b6e052546861d4ab82bb4e5768ddbb596193e

  • SSDEEP

    393216:dsmczgrLci1bkZSezWZoG0Y8cTkuW7yigQptsqHeBgxa:m38ci1bkZSe3G0YJoz9gAggQ

Malware Config

Targets

    • Target

      b9a4fc13a3d68b1c0998f5276089c655bcbc0834728e00c556f07cbfd739a75b

    • Size

      13.7MB

    • MD5

      69358c0b39fe119636bea3147ab95ca7

    • SHA1

      adafc4e49642c92d0d47d2be459afcccdb2e633d

    • SHA256

      b9a4fc13a3d68b1c0998f5276089c655bcbc0834728e00c556f07cbfd739a75b

    • SHA512

      bea41512d8573bd11dcd475baeaabef6cdaec51961c54a6ea02fa4ee17bbae4d120f1d4607c1aa214be66b02418b6e052546861d4ab82bb4e5768ddbb596193e

    • SSDEEP

      393216:dsmczgrLci1bkZSezWZoG0Y8cTkuW7yigQptsqHeBgxa:m38ci1bkZSe3G0YJoz9gAggQ

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • ACProtect 1.3x - 1.4x DLL software

      Detects file using ACProtect software.

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks