General

  • Target

    126819c703655f541c66a3eb37f2bde866e060e50a4edd340883b5d231e7f123.exe

  • Size

    66KB

  • Sample

    240704-11pe1a1hpj

  • MD5

    ee75bd19eca6fb38b9cb4553476c1a90

  • SHA1

    52c37bd71b45cfa973efe4d6db3f23b95459fea1

  • SHA256

    126819c703655f541c66a3eb37f2bde866e060e50a4edd340883b5d231e7f123

  • SHA512

    54f7c1d1a16a4d3a844e83d65fbeed8af3f686734c96d4ee5ea1e21a1364cdb88a01615155a7b7f761ad1c0a57b269234b78afb91a17f639dbed673b885965ff

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIb0z6Mu/ePS3AK:ymb3NkkiQ3mdBjFI46TQK

Malware Config

Targets

    • Target

      126819c703655f541c66a3eb37f2bde866e060e50a4edd340883b5d231e7f123.exe

    • Size

      66KB

    • MD5

      ee75bd19eca6fb38b9cb4553476c1a90

    • SHA1

      52c37bd71b45cfa973efe4d6db3f23b95459fea1

    • SHA256

      126819c703655f541c66a3eb37f2bde866e060e50a4edd340883b5d231e7f123

    • SHA512

      54f7c1d1a16a4d3a844e83d65fbeed8af3f686734c96d4ee5ea1e21a1364cdb88a01615155a7b7f761ad1c0a57b269234b78afb91a17f639dbed673b885965ff

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIb0z6Mu/ePS3AK:ymb3NkkiQ3mdBjFI46TQK

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks