General

  • Target

    3fd3a25376730c5b0442bcbd49c8d905029a60e48746499fa6d17fd8eb931898.exe

  • Size

    2.1MB

  • MD5

    2296bdc06b3fb0e98ae34c6e2b7e69f0

  • SHA1

    dba1855597cf78d3d968537b1abf2229012947af

  • SHA256

    3fd3a25376730c5b0442bcbd49c8d905029a60e48746499fa6d17fd8eb931898

  • SHA512

    d9e347a4ca8ca9132394261f4567dea9a56cefb818f4e49433d1055c4f94f15ad31eb4f5c294eee77db346397b54813d3f0a299e6c3bf61fbbd7ecde19bc6e9f

  • SSDEEP

    49152:oezaTF8FcNkNdfE0pZ9ozt4wIC5aIwC+Agr6SNasr0C:oemTLkNdfE0pZrwU

Score
10/10

Malware Config

Signatures

  • KPOT Core Executable 1 IoCs
  • Kpot family
  • XMRig Miner payload 1 IoCs
  • Xmrig family
  • UPX packed file 1 IoCs

    Detects executables packed with UPX/modified UPX open source packer.

  • Unsigned PE 1 IoCs

    Checks for missing Authenticode signature.

Files

  • 3fd3a25376730c5b0442bcbd49c8d905029a60e48746499fa6d17fd8eb931898.exe
    .exe windows:6 windows x64 arch:x64


    Headers

    Sections