General

  • Target

    2f3f2b39398680f68559d7010eb0d9eaf72e4d5742272b9bb36414675abd7877.exe

  • Size

    67KB

  • Sample

    240705-dagadatamh

  • MD5

    4429ea0b099938aa80b70d13ad41ec30

  • SHA1

    f0818b865724e4ebda497a59c9a022705832a29c

  • SHA256

    2f3f2b39398680f68559d7010eb0d9eaf72e4d5742272b9bb36414675abd7877

  • SHA512

    82b503eda797c0f71124dc4434babc80da17b4095f962676e3b825764c4bd34c726b55f9e5b22948d741e80472d9fdd21d0220968c5a1691a602ba0f3b781eec

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIb0z6MTSqfUciw:ymb3NkkiQ3mdBjFI4V4ciw

Malware Config

Targets

    • Target

      2f3f2b39398680f68559d7010eb0d9eaf72e4d5742272b9bb36414675abd7877.exe

    • Size

      67KB

    • MD5

      4429ea0b099938aa80b70d13ad41ec30

    • SHA1

      f0818b865724e4ebda497a59c9a022705832a29c

    • SHA256

      2f3f2b39398680f68559d7010eb0d9eaf72e4d5742272b9bb36414675abd7877

    • SHA512

      82b503eda797c0f71124dc4434babc80da17b4095f962676e3b825764c4bd34c726b55f9e5b22948d741e80472d9fdd21d0220968c5a1691a602ba0f3b781eec

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxNDIb0z6MTSqfUciw:ymb3NkkiQ3mdBjFI4V4ciw

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks