General

  • Target

    b135d9c73a8fe0998fb70cdc5f342afa70b6fc2c4da50f07f15d59e6b49d5692

  • Size

    12.0MB

  • Sample

    240704-n9jjwswgnk

  • MD5

    436bf06f1eb172800bda95918e4f48c3

  • SHA1

    a5c6be8147f1a657eda46c95096108976af0706f

  • SHA256

    b135d9c73a8fe0998fb70cdc5f342afa70b6fc2c4da50f07f15d59e6b49d5692

  • SHA512

    9c59bcb5044c7f731bd679577cdfad81aa56203ee29661cb1bbf7b64cc2ac6ceb1106d32a9952a4312d240d0ea412abbc9eafb050de7617e135df0fafb88158f

  • SSDEEP

    393216:FemADiB/or9ogyaDtSISiIJ5kHAW8Z4fLSKbkT:FevDiBQrCgiZiIAH18ZYLSKb

Malware Config

Targets

    • Target

      b135d9c73a8fe0998fb70cdc5f342afa70b6fc2c4da50f07f15d59e6b49d5692

    • Size

      12.0MB

    • MD5

      436bf06f1eb172800bda95918e4f48c3

    • SHA1

      a5c6be8147f1a657eda46c95096108976af0706f

    • SHA256

      b135d9c73a8fe0998fb70cdc5f342afa70b6fc2c4da50f07f15d59e6b49d5692

    • SHA512

      9c59bcb5044c7f731bd679577cdfad81aa56203ee29661cb1bbf7b64cc2ac6ceb1106d32a9952a4312d240d0ea412abbc9eafb050de7617e135df0fafb88158f

    • SSDEEP

      393216:FemADiB/or9ogyaDtSISiIJ5kHAW8Z4fLSKbkT:FevDiBQrCgiZiIAH18ZYLSKb

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • ACProtect 1.3x - 1.4x DLL software

      Detects file using ACProtect software.

    • Loads dropped DLL

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks