Open-source atomic malware analysis

Analyze another

f77c7d88a4b2844c0c017989f0fe0f58f32d19b4a6975abf0bb957bbb2d00546

PE
Verdict: SUSPICIOUS
AI UPX packed PE with evasion markers
Mal-ecule
O₂(AsC)H(Db)Md(Bi)
Size 3.4 MB download
First seen 41 days ago
Analyzed 35 days ago
Ecosystem windows
Source abuse.ch
UPX decompression failed: IO error: No such file or directory (os error 2): f77c7d88a4b2844c0c017989f0fe0f58f32d19b4a6975abf0bb957bbb2d00546.exe
Entry point in writable scrambled UPX section: f77c7d88a4b2844c0c017989f0fe0f58f32d19b4a6975abf0bb957bbb2d00546.exe:0x0
f77c7d88a4b2844c0c017989f0fe0f58f32d19b4a6975abf0bb957bbb2d00546.exe pe
0x0 4d5a90000300000004000000ffff0000 MZ..............Entry point in writable scrambled UPX section
0x10 8b000000000000004000000000000000 ........@.......
0x20 00000000000000000000000000000000 ................
0x30 00000000000000000000000080000000 ................
0x40 0e1fba0e00b409cd21b8014ccd215468 ........!..L.!Th
0x50 69732070726f6772616d2063616e6e6f is program canno
0x60 74206265 t be
0x168 00000000000000000000000000000000 ................
0x178 555058300000000000608e0000100000 UPX0.....`......
0x188 00000000000200000000000000000000 ................
0x198 00000000800000e05550583100000000 ........UPX1....
0x1a8 00e0360000708e0000d8360000020000 ..6..p....6.....
0x1b8 000000000000000000000000 ............
0x1f0 352e303200555058210d090e0a226a63 5.02.UPX!...."jc
0x200 1141be379d9613c50011ca360000d6bf .A.7.......6....Entry point in writable scrambled UPX section
0x210 00262700851a030045810067d4e53538 .&'.....E..g..58
0x220 1879eaf33c5d377b3d8620d493d100f2 .y..<]7{=. .....
0x230 91d190dc51452a40163145f2e3caf434 ....QE*@.1E....4
0x240 6e7a5c22756b21cd590f15f7fc5577 nz\"uk!.Y....Uw
0x36d9f0 00000000000000000000000000000000 ................
0x36da00 0000000000000000000000003c50c500 ............<P..Entry point in writable scrambled UPX section
0x36da10 2850c500000000000000000000000000 (P..............
0x36da20 00000000 ....

Objectives

Micro-behaviors

Metadata

anti-static

hostile severity, 100% confident.
packer/upx UPX decompression failed: IO error: No such file or directory (os error 2)
suspicious severity, 100% confident.
packer Binary contains a UPX packing marker

Identity

SHA-256 f77c7d88a4b2844c0c017989f0fe0f58f32d19b4a6975abf0bb957bbb2d00546
Filename f77c7d88a4b2844c0c017989f0fe0f58f32d19b4a6975abf0bb957bbb2d00546.exe
Package f77c7d88a4b2844c0c017989f0fe0f58f32d19b4a6975abf0bb957bbb2d00546

Origin

Source harvest
Feed malwarebazaar
Ecosystem windows
Domain abuse.ch

Timeline

First seen 14 Jun 2026 11:19 UTC
First analyzed 14 Jun 2026 11:30 UTC
Last analyzed 21 Jun 2026 05:19 UTC
Last updated 21 Jun 2026 05:19 UTC

Labeling

Label bad
Label source harvest
Traits version 1f35f