General

  • Target

    12524ea5a0939ea1ea973bac8dc28f9e40760b02634a07d1e7000889b9ba2887.exe

  • Size

    91KB

  • Sample

    240704-1zzjks1hkq

  • MD5

    1b98cae2d0fac5cad9516d75484ca650

  • SHA1

    04b039a08a337542db541d5a04c74fe32e99707d

  • SHA256

    12524ea5a0939ea1ea973bac8dc28f9e40760b02634a07d1e7000889b9ba2887

  • SHA512

    e48ef1584d9fd2a9ec71692e445308caabd280abd0c062868a8595f41ae2aef0805b7e5c4bbfdadc4a52b18a8f4a4fde73bdcd9dcee6a5b2597c817747db9865

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIQIDyviFxx2hCtgIMLP9rBZaRBD:ymb3NkkiQ3mdBjFIVLd2hWZGreRCYB40

Malware Config

Targets

    • Target

      12524ea5a0939ea1ea973bac8dc28f9e40760b02634a07d1e7000889b9ba2887.exe

    • Size

      91KB

    • MD5

      1b98cae2d0fac5cad9516d75484ca650

    • SHA1

      04b039a08a337542db541d5a04c74fe32e99707d

    • SHA256

      12524ea5a0939ea1ea973bac8dc28f9e40760b02634a07d1e7000889b9ba2887

    • SHA512

      e48ef1584d9fd2a9ec71692e445308caabd280abd0c062868a8595f41ae2aef0805b7e5c4bbfdadc4a52b18a8f4a4fde73bdcd9dcee6a5b2597c817747db9865

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIQIDyviFxx2hCtgIMLP9rBZaRBD:ymb3NkkiQ3mdBjFIVLd2hWZGreRCYB40

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks