General

  • Target

    1c2e26e5c896f7aff902694d4253f1a08b4a46a62e3b6290dfa9d87e8b5d2256.exe

  • Size

    61KB

  • MD5

    59ed2e7bbea3ae874ac576710c9ac030

  • SHA1

    1a15e360d1c9531968f778f081d7012cfde5d3d3

  • SHA256

    1c2e26e5c896f7aff902694d4253f1a08b4a46a62e3b6290dfa9d87e8b5d2256

  • SHA512

    6af1fa504dee85cec1a088c00a1732df10a1c79e1372fe156dd6968dcc5cf2757c11ff36bd91528794f909292c9d9d36f39dfe0bed02e52e9c33fe353192a1da

  • SSDEEP

    768:wIhkrfEHkPYixQ8eLt80aO6eeoeU0jYB3LCJxNJzdZW/lIsZ7ykcZS:wCkLEHkQ/QO6eey72JxzsZ7yw

Score
10/10

Malware Config

Signatures

  • GandCrab payload 1 IoCs
  • Gandcrab family
  • UPX packed file 1 IoCs

    Detects executables packed with UPX/modified UPX open source packer.

  • Unsigned PE 2 IoCs

    Checks for missing Authenticode signature.

Files

  • 1c2e26e5c896f7aff902694d4253f1a08b4a46a62e3b6290dfa9d87e8b5d2256.exe
    .exe windows:5 windows x86 arch:x86


    Headers

    Sections

  • out.upx
    .exe windows:5 windows x86 arch:x86


    Headers

    Sections