General

  • Target

    a9f96a18004e5636c86b6492347ab57ea82f02ffbb31b4053fc49136a3026ce5

  • Size

    45KB

  • MD5

    c35792106822d983ab503ee6a8d91212

  • SHA1

    c475d71abc7c230da165aadeabdb45c86aa6e8a4

  • SHA256

    a9f96a18004e5636c86b6492347ab57ea82f02ffbb31b4053fc49136a3026ce5

  • SHA512

    61e228c8d3d6dc7373724a0e4a754f9cd0f3d2a1293375a18b2f4fe053b80ebe3f9422fc1f4ba4fe8cde13b7d51918e85c565fc3012c3b77b7521a8d9e0fa405

  • SSDEEP

    768:5hth5sciN38qgkSdHeWlzo3jUu9IafyGy6SVVxvOJlTmhtkWzvdwPmR4jkCBX:5hth5hiN38mC+aEVisXTWzlfRY

Score
10/10

Malware Config

Signatures

  • Blackmoon family
  • Detect Blackmoon payload 1 IoCs
  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • a9f96a18004e5636c86b6492347ab57ea82f02ffbb31b4053fc49136a3026ce5
    .zip

    Password: infected

  • 5fb00fcc717dee09a19cf0ad86fa0bc2c8c0cdb4a33643bba4856f2e5d3fbd18.dll
    .dll windows:4 windows x86 arch:x86

    5777c26250acbdcabdaf952b8e7bb328


    Headers

    Imports

    Exports

    Sections