General

  • Target

    c528dca92763621a3b9c9617adf83ffea058282ee22e265e8ec702034e11143b

  • Size

    2.3MB

  • MD5

    1015cc8dffb1cef59f03c13cac1201dd

  • SHA1

    479802c0f76a617a52bba9d4a87e02a1b1a79dee

  • SHA256

    c528dca92763621a3b9c9617adf83ffea058282ee22e265e8ec702034e11143b

  • SHA512

    be092c349de17eeac27d6057582e3171ae155c2cdabb5ce94ee43d5694822d75c7bc0f73be784c59222689d09ac36bf4b19041ee2dbfa8ed8d9b048a80cf1b83

  • SSDEEP

    49152:BezaTF8FcNkNdfE0pZ9ozt4wIC5aIwC+Agr6St1lOqIucI1WA2tJR:BemTLkNdfE0pZrw7

Score
10/10

Malware Config

Signatures

  • KPOT Core Executable 1 IoCs
  • Kpot family
  • XMRig Miner payload 1 IoCs
  • Xmrig family
  • UPX packed file 1 IoCs

    Detects executables packed with UPX/modified UPX open source packer.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • c528dca92763621a3b9c9617adf83ffea058282ee22e265e8ec702034e11143b
    .exe windows:6 windows x64 arch:x64


    Headers

    Sections