General

  • Target

    243924921e852abc07e34c7cfee3d57520c484892b4cada3cab21e854c860ddb

  • Size

    343KB

  • Sample

    240630-ydc3catcmg

  • MD5

    7f69eb61681263f8b4e57cbbad8481f1

  • SHA1

    779f19e0d88f6404fc665e6d826871bd5da77211

  • SHA256

    243924921e852abc07e34c7cfee3d57520c484892b4cada3cab21e854c860ddb

  • SHA512

    fdfe7ec2c915b5d861a7f510fb16522638a7a66def644e6e10f72c8b3c9c45f250dfb570122900b3e072f1b03f751056e6b7344ea8574253ab1e6abc35b4ee37

  • SSDEEP

    6144:Xcm7ImGddXgYW5fNZWB5hFfci3Add4kGYAE:l7TcbWXZshJX2VGdE

Malware Config

Targets

    • Target

      243924921e852abc07e34c7cfee3d57520c484892b4cada3cab21e854c860ddb

    • Size

      343KB

    • MD5

      7f69eb61681263f8b4e57cbbad8481f1

    • SHA1

      779f19e0d88f6404fc665e6d826871bd5da77211

    • SHA256

      243924921e852abc07e34c7cfee3d57520c484892b4cada3cab21e854c860ddb

    • SHA512

      fdfe7ec2c915b5d861a7f510fb16522638a7a66def644e6e10f72c8b3c9c45f250dfb570122900b3e072f1b03f751056e6b7344ea8574253ab1e6abc35b4ee37

    • SSDEEP

      6144:Xcm7ImGddXgYW5fNZWB5hFfci3Add4kGYAE:l7TcbWXZshJX2VGdE

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • UPX dump on OEP (original entry point)

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks