Suspicious
Suspect

3885c4180e676dd9059686630b63cf8c

PE Executable
|
MD5: 3885c4180e676dd9059686630b63cf8c
|
Size: 569.34 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
3885c4180e676dd9059686630b63cf8c
Sha1
a0c4c1ff2e059903fd624d6948e787dda9dad5d3
Sha256
f6dddb9ef4030810b65dd4523449697042412ea1c3b231f29711a8e2eb06f204
Sha384
c367d5a3fac48c974f5fc527a2bf2a5092dc39dcb19fa33bb235e6747a3c42e0f11b0503669765a0fa32b87eab1764e9
Sha512
b56bb8102da0ed4b2190746d5904606ba0bb99d1cd594c65de7ebdd3a7e4de43cd881a2f8499b0b11c2c0b91c7b44e4af2beb574630d8f1ed900d5279eea93ea
SSDeep
12288:OIsuvh+SpjTPT4cPLEney+fyk+yNokvN96p5BsCx7OOBVKDtT4U:OZuvhHB5y+fTLok6TBHrHMT4U
TLSH
E4C42335653D2927DD7A67BB1A67C89E82F01B148CAEC49F5130B6869D03F84CB13B27

PeID

Microsoft Visual C++ DLL
Microsoft Visual C++ v6.0
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Informations
Name
Value
Module Name

Klrrbobzzzv.exe

Full Name

Klrrbobzzzv.exe

EntryPoint

System.Void Klrrbobzzzv.Xockszsx::Main()

Scope Name

Klrrbobzzzv.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Klrrbobzzzv

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

4

Main Method

System.Void Klrrbobzzzv.Xockszsx::Main()

Main IL Instruction Count

2

Main IL

call System.Void Klrrbobzzzv.D.Oppejxrk::Vncswyoj() ret <null>

Artefacts
Name
Value
Embedded Resources

0

Suspicious Type Names (1-2 chars)

0

3885c4180e676dd9059686630b63cf8c (569.34 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
Embedded Resources

0

3885c4180e676dd9059686630b63cf8c

Suspicious Type Names (1-2 chars)

0

3885c4180e676dd9059686630b63cf8c

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙