General

  • Target

    2bb221a79096b4add5b4fc61e68acd2457fdc24611153f905bfab25ce4e20ddb.exe

  • Size

    71KB

  • Sample

    240705-cnzs7sseja

  • MD5

    2cd5da05314eacdcf8ef3dc677252e20

  • SHA1

    b3be6cb3803df16d950c33ce0332e008024ac037

  • SHA256

    2bb221a79096b4add5b4fc61e68acd2457fdc24611153f905bfab25ce4e20ddb

  • SHA512

    a8a68724c1d0182b9b51e583cab65c4ac82e2b706700612b3896bf96e9c2f922a93936b201a28ae178808f843b87990562a04668dc92fdd0dcc504c03a855874

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxND0yUwcsbYsRgVq:ymb3NkkiQ3mdBjF0yjcsMsRb

Malware Config

Targets

    • Target

      2bb221a79096b4add5b4fc61e68acd2457fdc24611153f905bfab25ce4e20ddb.exe

    • Size

      71KB

    • MD5

      2cd5da05314eacdcf8ef3dc677252e20

    • SHA1

      b3be6cb3803df16d950c33ce0332e008024ac037

    • SHA256

      2bb221a79096b4add5b4fc61e68acd2457fdc24611153f905bfab25ce4e20ddb

    • SHA512

      a8a68724c1d0182b9b51e583cab65c4ac82e2b706700612b3896bf96e9c2f922a93936b201a28ae178808f843b87990562a04668dc92fdd0dcc504c03a855874

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxND0yUwcsbYsRgVq:ymb3NkkiQ3mdBjF0yjcsMsRb

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks