General

  • Target

    520ff442557e1a1424c310584107ec575fb3abaa1a52d763a939956c2f7a259f

  • Size

    2.1MB

  • MD5

    1616da446f2e92a8b34d00276b4b184a

  • SHA1

    57ff361f52de627c749c203c644fff53246040e2

  • SHA256

    520ff442557e1a1424c310584107ec575fb3abaa1a52d763a939956c2f7a259f

  • SHA512

    d066ba1fa8313777b00f1c2ceb89efff306e419b3b653123e6a2c894ad0850d2fd3de4fcd56a7891fb8224b6fe480a28b34a5fe976d83ff8f22b314d747bffc5

  • SSDEEP

    49152:oezaTF8FcNkNdfE0pZ9ozt4wIC5aIwC+Agr6SNasrR:oemTLkNdfE0pZrw6

Score
10/10

Malware Config

Signatures

  • KPOT Core Executable 1 IoCs
  • Kpot family
  • XMRig Miner payload 1 IoCs
  • Xmrig family
  • UPX packed file 1 IoCs

    Detects executables packed with UPX/modified UPX open source packer.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 520ff442557e1a1424c310584107ec575fb3abaa1a52d763a939956c2f7a259f
    .exe windows:6 windows x64 arch:x64


    Headers

    Sections