Static task
static1
Behavioral task
behavioral1
Sample
280eb1d9d24fb1029b5d08f72fe3a0cf627fcac877fd2c03a5b39ee5e462cef6.exe
Resource
win7-20220414-en
General
-
Target
280eb1d9d24fb1029b5d08f72fe3a0cf627fcac877fd2c03a5b39ee5e462cef6
-
Size
257KB
-
MD5
6bab2d5b4e14be0c45913fd332bcc6a6
-
SHA1
b957c16ecc370ddb35141546471dd9bb180b86ab
-
SHA256
280eb1d9d24fb1029b5d08f72fe3a0cf627fcac877fd2c03a5b39ee5e462cef6
-
SHA512
043ce6f6d64814b7326d14d552f2db9dcc2d9cd6efa926b2f40b757d43bf8abf75fd3c76c9ab69f748a3339ec2014a2a54f51544d944dd048491fa517f96b985
-
SSDEEP
6144:7IFb791LGQVBItUtxxtewX1guVIAwfULOBR8pM:7I17zLGCNJewlVwfUuR8i
Malware Config
Signatures
-
Processes:
resource yara_rule sample upx
Files
-
280eb1d9d24fb1029b5d08f72fe3a0cf627fcac877fd2c03a5b39ee5e462cef6.exe windows x86
Headers
DLL Characteristics
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
File Characteristics
IMAGE_FILE_RELOCS_STRIPPED
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_DEBUG_STRIPPED
Sections
UPX0 Size: - Virtual size: 73.3MB
IMAGE_SCN_CNT_UNINITIALIZED_DATA
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
UPX1 Size: 250KB - Virtual size: 252KB
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
.rsrc Size: 5KB - Virtual size: 8KB
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
-
out.upx.exe windows x86
Headers
DLL Characteristics
IMAGE_DLLCHARACTERISTICS_NX_COMPAT
IMAGE_DLLCHARACTERISTICS_TERMINAL_SERVER_AWARE
File Characteristics
IMAGE_FILE_RELOCS_STRIPPED
IMAGE_FILE_EXECUTABLE_IMAGE
IMAGE_FILE_32BIT_MACHINE
IMAGE_FILE_DEBUG_STRIPPED
Sections
.text Size: 86KB - Virtual size: 86KB
IMAGE_SCN_CNT_CODE
IMAGE_SCN_MEM_EXECUTE
IMAGE_SCN_MEM_READ
.rdata Size: 18KB - Virtual size: 17KB
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
.data Size: 944KB - Virtual size: 73.4MB
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
IMAGE_SCN_MEM_WRITE
.rsrc Size: 10KB - Virtual size: 10KB
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_READ
.reloc Size: 43KB - Virtual size: 42KB
IMAGE_SCN_CNT_INITIALIZED_DATA
IMAGE_SCN_MEM_DISCARDABLE
IMAGE_SCN_MEM_READ