General

  • Target

    5f4b736ac02f1b23bf1d960698955ce0a32a156fede40644d74f1042adfbb3a1

  • Size

    13.6MB

  • MD5

    eb5c4aa1891c0358fa2b94f3aa8d35d9

  • SHA1

    39ce8eb6c8accfa79bbe928c2142523a30e0ca50

  • SHA256

    5f4b736ac02f1b23bf1d960698955ce0a32a156fede40644d74f1042adfbb3a1

  • SHA512

    4ad60a725f34c4f6cfbb632e7128e0b9c7340d88c85358fe02e4566a9221dc63824d93d686b3826111fe69cb0b9486092f8d67a4e872098602f41a9ba9aed2a9

  • SSDEEP

    196608:o5w7vAwXCBpMX40lYq8E9Pi3Yl72d0x6Wuddob0Y4o6bfUTLV85Nyh0ladhP6c4U:5PJPi3v66Wwdo9aDUTLx1jL3w

Score
10/10

Malware Config

Signatures

  • Blackmoon family
  • Detect Blackmoon payload 1 IoCs
  • UPX packed file 1 IoCs

    Detects executables packed with UPX/modified UPX open source packer.

  • Unsigned PE 2 IoCs

    Checks for missing Authenticode signature.

Files

  • 5f4b736ac02f1b23bf1d960698955ce0a32a156fede40644d74f1042adfbb3a1
    .exe windows:4 windows x86 arch:x86


    Headers

    Sections

  • out.upx
    .exe windows:4 windows x86 arch:x86


    Headers

    Sections