General

  • Target

    3bd3b49c654186bfbd5d71732d3d180f5b745500c89bc684c5431d1888fff27e.exe

  • Size

    78KB

  • Sample

    240705-fke66sshnj

  • MD5

    fc45552e2cadcdc282462a6f84f54d40

  • SHA1

    be5bf500829a9bff6ad50e62af356dfe35f9fc76

  • SHA256

    3bd3b49c654186bfbd5d71732d3d180f5b745500c89bc684c5431d1888fff27e

  • SHA512

    c6a46222d3dcaa45c361de9e426c4a98ec8189740e276f28317ccb7a38d70898fe2b9111dbe038233fcbcc6377855d4fd7a85090b582724dba25b089d4fc13ed

  • SSDEEP

    1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxND+3T4+C2wVEJ8vai:ymb3NkkiQ3mdBjF+3TU2KEJni

Malware Config

Targets

    • Target

      3bd3b49c654186bfbd5d71732d3d180f5b745500c89bc684c5431d1888fff27e.exe

    • Size

      78KB

    • MD5

      fc45552e2cadcdc282462a6f84f54d40

    • SHA1

      be5bf500829a9bff6ad50e62af356dfe35f9fc76

    • SHA256

      3bd3b49c654186bfbd5d71732d3d180f5b745500c89bc684c5431d1888fff27e

    • SHA512

      c6a46222d3dcaa45c361de9e426c4a98ec8189740e276f28317ccb7a38d70898fe2b9111dbe038233fcbcc6377855d4fd7a85090b582724dba25b089d4fc13ed

    • SSDEEP

      1536:9Q8hoOAesfYvcyjfS3H9yl8Q1pmdBcxedLxND+3T4+C2wVEJ8vai:ymb3NkkiQ3mdBjF+3TU2KEJni

    • Blackmoon, KrBanker

      Blackmoon also known as KrBanker is banking trojan first discovered in early 2014.

    • Detect Blackmoon payload

    • Executes dropped EXE

    • UPX packed file

      Detects executables packed with UPX/modified UPX open source packer.

MITRE ATT&CK Matrix

Tasks