Suspicious
Suspect

141b9abb06dfc21d994f4e1304833bad

PE Executable
|
MD5: 141b9abb06dfc21d994f4e1304833bad
|
Size: 1.04 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
141b9abb06dfc21d994f4e1304833bad
Sha1
cda384ea26cf39ccaabe3156407a3afd97c84134
Sha256
6f9c1b2d7a3287b2615068382a7febcc4f3b39ce1acecd59ed8687c3d7b0123e
Sha384
b04fcde716340648c9923b59ad0643dd93bad2245c348ede2c01f07038e8f54012c2e82eff26aa9698bbc627780d1d62
Sha512
6154f1a3da37612baa44d84c924169848324e40198ac57bd7d7a38a2d0458339fba5534462837031aa8ada74b7a7dfb1b1864b480524ab4376809ba5660d5735
SSDeep
24576:XA+9TnRODd5thB4P+tVfxpLg4NwaxshveDALWVLj/6X0:w+9gBY+tV7gAwG50eLj/6X
TLSH
BD25232E860C65BFE21B56FF0D425364A8B547630127634F04B9D6B0616B8BBDE43F2E

PeID

x64 .NET EXE/DLL ( jmp rax - DBG/noDBG ) Visual Studio v.6.0-11.0
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
Ehupso.Properties.Resources.resources
Sqeummp
           ​
Informations
Name
Value
Module Name

Xmagqgqkxki.exe

Full Name

Xmagqgqkxki.exe

EntryPoint

System.Void  ::()

Scope Name

Xmagqgqkxki.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Xmagqgqkxki

Assembly Version

1.0.5416.9213

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

0

Main Method

System.Void  ::()

Main IL Instruction Count

11

Main IL

ldsfld System.Action`1<System.IO.MemoryStream>  /:: dup <null> brtrue.s IL_001F: call System.Void  ::(System.Action`1<System.IO.MemoryStream>) pop <null> ldsfld  /  /:: ldftn System.Void  /::(System.IO.MemoryStream) newobj System.Void System.Action`1<System.IO.MemoryStream>::.ctor(System.Object,System.IntPtr) dup <null> stsfld System.Action`1<System.IO.MemoryStream>  /:: call System.Void  ::(System.Action`1<System.IO.MemoryStream>) ret <null>

141b9abb06dfc21d994f4e1304833bad (1.04 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
Ehupso.Properties.Resources.resources
Sqeummp
           ​
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙