Suspicious
Suspect

0788b45330bfeb8030b6becc356e92e5

PE Executable
MD5: 0788b45330bfeb8030b6becc356e92e5
Size: 12.25 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Medium
MD5 0788b45330bfeb8030b6becc356e92e5
Sha1 36a87ce5ab5c6ce88fe44dc4c6792ad017dcfbfb
Sha256 b2aa2c5c202e530bb1f8ed9f1c00b4e59be8445455f7eef1b8fb25a2f92408a6
Sha384 e358ed5db2261b17f9bffa47949a53a0cb4ed2ae35ebe37d4391e57dd0b7ff001967a4f7c390e0b99daf16bb022be929
Sha512 a6b98b0f5b7ad958fb4289399f7c7dd52f52842105d5a0cf586c815567f2e2d2315396e96d053c8eb85ff1bfa3cbfa72c06930e2be2c30871b754c91b21aa661
SSDeep 196608:XsmQW3Ca5w9yrCo8z2UdzOeCwV0np/gNjkPHAj5txfR2QPpi4IQc5ll:dnya5za2QywVoujkPeZvxo1
TLSH 43C633391902D589D8250AB7E810E3F97AB51E71D830C2279FE77DFB383236419E45BA
PeID
Microsoft Visual C++ DLLMicrosoft Visual C++ v6.0
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
CoralReefApp.Properties.Resources.resources
Kare
[NBF]root.Data
yIop
[NBF]root.Data
[NBF]root.Data-preview.png
CoralReefApp.StockForm.resources
$this.Icon
[NBF]root.IconData
STICH beta

No STICH Path has been generated for this analysis yet.

3 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 2img 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Module Name
BIqg.exe
Full Name
BIqg.exe
EntryPoint
System.Void CoralReefApp.Program::Main()
Scope Name
BIqg.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
BIqg
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
243
Main Method
System.Void CoralReefApp.Program::Main()
Main IL Instruction Count
12
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
call System.Void CoralReefApp.Program::InitialisiereDatenSet()
nop <null>
newobj System.Void CoralReefApp.ReefForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
CoralReefApp.Properties.Resources.resources
Kare
[NBF]root.Data
yIop
[NBF]root.Data
[NBF]root.Data-preview.png
CoralReefApp.StockForm.resources
$this.Icon
[NBF]root.IconData
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙