General

  • Target

    26324fd8aed4872a88d3be24b3fe5702_JaffaCakes118

  • Size

    865KB

  • Sample

    240704-ztzfys1cra

  • MD5

    26324fd8aed4872a88d3be24b3fe5702

  • SHA1

    c129e93414d29964c4e9ec57050813de837472ba

  • SHA256

    7e57bb000b7dc5565bfdff687b80d507521e04d20a7c2a358a77ea29f3794242

  • SHA512

    2a1047f517963c56eec40729ed3da66e644b32010021702cac7ed5730482d8c3ecc1aba349a60865126708ba1109f278a423bce2171ff12a309acf1844be45fd

  • SSDEEP

    24576:+nKfP3BW7/y99cVEs5t8t7oMBCU/8BnUD3TwsubF+:+kJUy/cOmyZCk8BUD30vbI

Malware Config

Targets

    • Target

      26324fd8aed4872a88d3be24b3fe5702_JaffaCakes118

    • Size

      865KB

    • MD5

      26324fd8aed4872a88d3be24b3fe5702

    • SHA1

      c129e93414d29964c4e9ec57050813de837472ba

    • SHA256

      7e57bb000b7dc5565bfdff687b80d507521e04d20a7c2a358a77ea29f3794242

    • SHA512

      2a1047f517963c56eec40729ed3da66e644b32010021702cac7ed5730482d8c3ecc1aba349a60865126708ba1109f278a423bce2171ff12a309acf1844be45fd

    • SSDEEP

      24576:+nKfP3BW7/y99cVEs5t8t7oMBCU/8BnUD3TwsubF+:+kJUy/cOmyZCk8BUD30vbI

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix ATT&CK v13

Tasks