General

  • Target

    57ef7036e08d6184e49ce3ee3f53d2b4c0275195b58353e4d1902914b15966cc

  • Size

    61KB

  • Sample

    240704-1rnr4s1dkl

  • MD5

    ed10eaaa8cc438bc70d3a0b43e0220e7

  • SHA1

    85f65b2d1ebdee40b9d089d2cfcc0da56bdbd060

  • SHA256

    57ef7036e08d6184e49ce3ee3f53d2b4c0275195b58353e4d1902914b15966cc

  • SHA512

    2a595aa156c92a712afcbf3edf23f1bcd426b48dc1a3862676e9051d3bcd74e800cd8a97b79a10e98d03e40b6ac642c5912850a1dfcacfd8582d3e8c20368858

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIsIms94:ymb3NkkiQ3mdBjFIsIF+

Malware Config

Targets

    • Target

      57ef7036e08d6184e49ce3ee3f53d2b4c0275195b58353e4d1902914b15966cc

    • Size

      61KB

    • MD5

      ed10eaaa8cc438bc70d3a0b43e0220e7

    • SHA1

      85f65b2d1ebdee40b9d089d2cfcc0da56bdbd060

    • SHA256

      57ef7036e08d6184e49ce3ee3f53d2b4c0275195b58353e4d1902914b15966cc

    • SHA512

      2a595aa156c92a712afcbf3edf23f1bcd426b48dc1a3862676e9051d3bcd74e800cd8a97b79a10e98d03e40b6ac642c5912850a1dfcacfd8582d3e8c20368858

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIsIms94:ymb3NkkiQ3mdBjFIsIF+

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks