General

  • Target

    7f505ab648158c3d1bb27903bb22f87ef16004a1420a0065ffac2f0c07c2dabb

  • Size

    274KB

  • Sample

    240704-3lk55sybla

  • MD5

    d9b0704a3e140a33b14ffc7ae7d89e9b

  • SHA1

    5b363e0e308cf7009f2ceb3e288bba97a2fea4c9

  • SHA256

    7f505ab648158c3d1bb27903bb22f87ef16004a1420a0065ffac2f0c07c2dabb

  • SHA512

    9376be606a56af36da37038ac8d0e20879283cb736b0c2db155717404e1b18dd047b7abb61b6a8ac4e63f626ef51dcb1e8c4a412c24dd49b4221428e8e4ba213

  • SSDEEP

    3072:8hOm2sI93UufdC67cimD5t251UrRE9TTFBs:8cm7ImGddXmNt251UriZFm

Malware Config

Targets

    • Target

      7f505ab648158c3d1bb27903bb22f87ef16004a1420a0065ffac2f0c07c2dabb

    • Size

      274KB

    • MD5

      d9b0704a3e140a33b14ffc7ae7d89e9b

    • SHA1

      5b363e0e308cf7009f2ceb3e288bba97a2fea4c9

    • SHA256

      7f505ab648158c3d1bb27903bb22f87ef16004a1420a0065ffac2f0c07c2dabb

    • SHA512

      9376be606a56af36da37038ac8d0e20879283cb736b0c2db155717404e1b18dd047b7abb61b6a8ac4e63f626ef51dcb1e8c4a412c24dd49b4221428e8e4ba213

    • SSDEEP

      3072:8hOm2sI93UufdC67cimD5t251UrRE9TTFBs:8cm7ImGddXmNt251UriZFm

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks