General

  • Target

    18a44bddf2fd6581885bce72767fb92668dc069949fe084f5af178eb9028a998.exe

  • Size

    66KB

  • Sample

    240704-23av3axanf

  • MD5

    be9f8955c426118be3bb5ea58782f570

  • SHA1

    3663de2ab0d3a0294965576faca0031d5fc1ea15

  • SHA256

    18a44bddf2fd6581885bce72767fb92668dc069949fe084f5af178eb9028a998

  • SHA512

    80a34d254b7a3213b3ee7136c254a345050976593bd2775498cb451b8261e1d4160093bfd6b9cd798ce8be675b11a8929b240b5c3926a8828ad95fb634ba945c

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIb0z6Mu/ePS3An:ymb3NkkiQ3mdBjFI46TQn

Malware Config

Targets

    • Target

      18a44bddf2fd6581885bce72767fb92668dc069949fe084f5af178eb9028a998.exe

    • Size

      66KB

    • MD5

      be9f8955c426118be3bb5ea58782f570

    • SHA1

      3663de2ab0d3a0294965576faca0031d5fc1ea15

    • SHA256

      18a44bddf2fd6581885bce72767fb92668dc069949fe084f5af178eb9028a998

    • SHA512

      80a34d254b7a3213b3ee7136c254a345050976593bd2775498cb451b8261e1d4160093bfd6b9cd798ce8be675b11a8929b240b5c3926a8828ad95fb634ba945c

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIb0z6Mu/ePS3An:ymb3NkkiQ3mdBjFI46TQn

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks