General

  • Target

    d0d28512844e1938023174ea6578d8458d1d6c9aac243da68327342b6ae2eae5

  • Size

    70KB

  • Sample

    240705-dm938atdpg

  • MD5

    d422d4c362f14c6788e9a03c60bea4e6

  • SHA1

    289e1ba2a2cdd63196337e41de99cedfcc38ac3e

  • SHA256

    d0d28512844e1938023174ea6578d8458d1d6c9aac243da68327342b6ae2eae5

  • SHA512

    79f861cc45ca1c018978f57ded356adc29b1bd16c30b91a1e4b1c0694e331915dde2d199fd37ff60d5cc4a287f2ff9b0cfe741b5062f5154fcd8b086047871cd

  • SSDEEP

    1536:kvQBeOGtrYS3srx93UBWfwC6Ggnouy8p5yAXNYLIALUmYgPi:khOmTsF93UYfwC6GIoutpY4ALUmVi

Malware Config

Targets

    • Target

      d0d28512844e1938023174ea6578d8458d1d6c9aac243da68327342b6ae2eae5

    • Size

      70KB

    • MD5

      d422d4c362f14c6788e9a03c60bea4e6

    • SHA1

      289e1ba2a2cdd63196337e41de99cedfcc38ac3e

    • SHA256

      d0d28512844e1938023174ea6578d8458d1d6c9aac243da68327342b6ae2eae5

    • SHA512

      79f861cc45ca1c018978f57ded356adc29b1bd16c30b91a1e4b1c0694e331915dde2d199fd37ff60d5cc4a287f2ff9b0cfe741b5062f5154fcd8b086047871cd

    • SSDEEP

      1536:kvQBeOGtrYS3srx93UBWfwC6Ggnouy8p5yAXNYLIALUmYgPi:khOmTsF93UYfwC6GIoutpY4ALUmVi

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks