General

  • Target

    039c00b13b680f46c4d23fc922f07b38b08c86359d67ffc2328813ce6d303310.exe

  • Size

    129KB

  • Sample

    240704-xlr1sstcrl

  • MD5

    cb20d880f00f5e94838ed0ae07545150

  • SHA1

    557dee537413c11bbf9c2076d9f7de578653ce62

  • SHA256

    039c00b13b680f46c4d23fc922f07b38b08c86359d67ffc2328813ce6d303310

  • SHA512

    3014c8851eb052c00cbd1df9f81d581233e19013c9ab1b1e8b0fafecba0051d6b003bdbadfa2053696c4539c641b92f4f3703494a7c53685d19e4e97cbe55115

  • SSDEEP

    3072:ymb3NkkiQ3mdBjFWXkj7afodnmm9Ao98h3dktX4/Jj7:n3C9BRW0j/tmm9nwytIJ

Malware Config

Targets

    • Target

      039c00b13b680f46c4d23fc922f07b38b08c86359d67ffc2328813ce6d303310.exe

    • Size

      129KB

    • MD5

      cb20d880f00f5e94838ed0ae07545150

    • SHA1

      557dee537413c11bbf9c2076d9f7de578653ce62

    • SHA256

      039c00b13b680f46c4d23fc922f07b38b08c86359d67ffc2328813ce6d303310

    • SHA512

      3014c8851eb052c00cbd1df9f81d581233e19013c9ab1b1e8b0fafecba0051d6b003bdbadfa2053696c4539c641b92f4f3703494a7c53685d19e4e97cbe55115

    • SSDEEP

      3072:ymb3NkkiQ3mdBjFWXkj7afodnmm9Ao98h3dktX4/Jj7:n3C9BRW0j/tmm9nwytIJ

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks