Suspect
PE Executable
MD5: 3455c7d385c241c62995d9101039e811
Size: 3.42 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Very high
| MD5 | 3455c7d385c241c62995d9101039e811 |
| Sha1 | 1ce474480af6607221a3ec4e0a167f03b8148872 |
| Sha256 | 511ace09e2e37545e0f12232fb3ad7da230f0c55ea803fa14ae84530257069b6 |
| Sha384 | d4daf7e0fdb003b66d6773df7616a6658e979e5532d04174eab85f2ef3c4727991322dbd9a9fca46e2eca7f2eda93b2b |
| Sha512 | ef7e976aeedead95ea82f1a6347f63aa63e09cb02f04b9f7c7443f84a56a3ef3f0bc568935b22950114eec6529f137221f572111b9887ca8f76ec7a9347f5b74 |
| SSDeep | 49152:z+DP6joVqq/KRTSQ9lhp+GMPUdvxzcpNGq3bV0VWiCqU9Xg6YrsoJMdkQNQYx8ch:qDFu19doGMcJzr9IqDeRDNMeBOc0 |
| TLSH | FAF523DD7120B1EFC817E5B58AA12D749621AC7B47179203A8233DCBBA3D0D79F148B6 |
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | server1.exe |
| Full Name | server1.exe |
| EntryPoint | |
| Scope Name | server1.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | server1 |
| Assembly Version | 5.2.0.8 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.8 |
| Total Strings | 7 |
| Main Method | |
| Main IL Instruction Count | 49 |
| Main IL | |
| Module Name | server1.exe |
| Full Name | server1.exe |
| EntryPoint | |
| Scope Name | server1.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | server1 |
| Assembly Version | 5.2.0.8 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.8 |
| Total Strings | 7 |
| Main Method | |
| Main IL Instruction Count | 49 |
| Main IL | |
No malware configuration was found at this point.
You must be signed in to view YARA rules.