General

  • Target

    f00b93f6c3861a8afc5643f29c04057bf586963d092dc79f2233dfe1e7469124

  • Size

    201KB

  • Sample

    240701-e3n2cswemh

  • MD5

    22695f650c8e52d4396324a5e36b4858

  • SHA1

    7170424b27fc2fe7c364b4418b9e9b89d4a58c1d

  • SHA256

    f00b93f6c3861a8afc5643f29c04057bf586963d092dc79f2233dfe1e7469124

  • SHA512

    0aeb5fe284d6d437e67e11769e24cb953585c03c24363f81687efaa71aa4e2394bc3dd393aaaec2f7d7b244de09b7f3ea30e137e31ce5aeece6f30b96a57f46f

  • SSDEEP

    3072:ymb3NkkiQ3mdBjFIi/0RU6QeYQsm71vPmc51+GqekBJCvr6zJBUVv1T5m:n3C9BRIG0asYFm71m8+GdkB9Cv1I

Malware Config

Targets

    • Target

      f00b93f6c3861a8afc5643f29c04057bf586963d092dc79f2233dfe1e7469124

    • Size

      201KB

    • MD5

      22695f650c8e52d4396324a5e36b4858

    • SHA1

      7170424b27fc2fe7c364b4418b9e9b89d4a58c1d

    • SHA256

      f00b93f6c3861a8afc5643f29c04057bf586963d092dc79f2233dfe1e7469124

    • SHA512

      0aeb5fe284d6d437e67e11769e24cb953585c03c24363f81687efaa71aa4e2394bc3dd393aaaec2f7d7b244de09b7f3ea30e137e31ce5aeece6f30b96a57f46f

    • SSDEEP

      3072:ymb3NkkiQ3mdBjFIi/0RU6QeYQsm71vPmc51+GqekBJCvr6zJBUVv1T5m:n3C9BRIG0asYFm71m8+GdkB9Cv1I

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks