General

  • Target

    4c987322555e43b3c136d65562a9a6f68b191e036beffbb0c49f8ee81f7d3386.exe

  • Size

    89KB

  • Sample

    240704-q4xknszcqg

  • MD5

    7353868334fe9cc5851f857eae514460

  • SHA1

    c1af743e27e73a7dc1eb601248d02a605d47af05

  • SHA256

    4c987322555e43b3c136d65562a9a6f68b191e036beffbb0c49f8ee81f7d3386

  • SHA512

    704bff58875b40c10028603db7ad9d5b4a61b4e641ee40725c7df65c1a0e2a8ba36d8c31e9d4db53e40d35e086dd9498f4c20fea383c05f37f4622a1b9b37ab7

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxND+3T4+C2iJvRirE0DmoLZsO4YU:ymb3NkkiQ3mdBjF+3TU2iBRioSnZsTYU

Malware Config

Targets

    • Target

      4c987322555e43b3c136d65562a9a6f68b191e036beffbb0c49f8ee81f7d3386.exe

    • Size

      89KB

    • MD5

      7353868334fe9cc5851f857eae514460

    • SHA1

      c1af743e27e73a7dc1eb601248d02a605d47af05

    • SHA256

      4c987322555e43b3c136d65562a9a6f68b191e036beffbb0c49f8ee81f7d3386

    • SHA512

      704bff58875b40c10028603db7ad9d5b4a61b4e641ee40725c7df65c1a0e2a8ba36d8c31e9d4db53e40d35e086dd9498f4c20fea383c05f37f4622a1b9b37ab7

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxND+3T4+C2iJvRirE0DmoLZsO4YU:ymb3NkkiQ3mdBjF+3TU2iBRioSnZsTYU

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks