General

  • Target

    07f1ec9fad9dbd71b3d0f224826046dec56d23e49b2a76863922237d62e2393e.exe

  • Size

    62KB

  • Sample

    240704-y9kgaszdla

  • MD5

    ff63d0936a1d1a046cdf723579e03e90

  • SHA1

    c15f19ecc019d5263fd22afbc837c642e87f9a41

  • SHA256

    07f1ec9fad9dbd71b3d0f224826046dec56d23e49b2a76863922237d62e2393e

  • SHA512

    af02ce910c1b332fc83730849a67445428ff7652418f2654652fdd5b72447799b8998fc6ee674fb3d3d796de8a640e79e8d4a5046fa4f97db8af8ae40332e94f

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIvuzkzNFz:ymb3NkkiQ3mdBjFIvlpFz

Malware Config

Targets

    • Target

      07f1ec9fad9dbd71b3d0f224826046dec56d23e49b2a76863922237d62e2393e.exe

    • Size

      62KB

    • MD5

      ff63d0936a1d1a046cdf723579e03e90

    • SHA1

      c15f19ecc019d5263fd22afbc837c642e87f9a41

    • SHA256

      07f1ec9fad9dbd71b3d0f224826046dec56d23e49b2a76863922237d62e2393e

    • SHA512

      af02ce910c1b332fc83730849a67445428ff7652418f2654652fdd5b72447799b8998fc6ee674fb3d3d796de8a640e79e8d4a5046fa4f97db8af8ae40332e94f

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIvuzkzNFz:ymb3NkkiQ3mdBjFIvlpFz

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks