General

  • Target

    343ce5c2a0dacae7611e0fd893656dfd9098d3370a2ab3830bdcafe3413597f6

  • Size

    260KB

  • Sample

    240704-y9fs4sxelk

  • MD5

    fc3cc1233d5e9f96f5bda05dfe409a95

  • SHA1

    41fee01b5122cfe012059766246eae6565b4810e

  • SHA256

    343ce5c2a0dacae7611e0fd893656dfd9098d3370a2ab3830bdcafe3413597f6

  • SHA512

    79d6e7379aa0ae3678c4ec080568580448e51fe7f259ad4774731830858297da6031c6a6808c67cf5957d6e0c80d0e483d5917fb03d366b19632ad16f668a5f4

  • SSDEEP

    6144:n3C9BRo7tvnJ9Fywhk/T4i37K3BoKg0qJ:n3C9ytvn8whkb4i3e3GF/J

Malware Config

Targets

    • Target

      343ce5c2a0dacae7611e0fd893656dfd9098d3370a2ab3830bdcafe3413597f6

    • Size

      260KB

    • MD5

      fc3cc1233d5e9f96f5bda05dfe409a95

    • SHA1

      41fee01b5122cfe012059766246eae6565b4810e

    • SHA256

      343ce5c2a0dacae7611e0fd893656dfd9098d3370a2ab3830bdcafe3413597f6

    • SHA512

      79d6e7379aa0ae3678c4ec080568580448e51fe7f259ad4774731830858297da6031c6a6808c67cf5957d6e0c80d0e483d5917fb03d366b19632ad16f668a5f4

    • SSDEEP

      6144:n3C9BRo7tvnJ9Fywhk/T4i37K3BoKg0qJ:n3C9ytvn8whkb4i3e3GF/J

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks