Suspicious
Suspect

3ac6135c314bf560a6040fa74cc36f5a

PE Executable
MD5: 3ac6135c314bf560a6040fa74cc36f5a
Size: 1.31 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Medium
MD5 3ac6135c314bf560a6040fa74cc36f5a
Sha1 b44056e9a38ebba8c63d993310a3d60f757e33ad
Sha256 1f1f86689f6caab069cbf0e68a24862df392ed33a790fbff04d9cf9d11b4447b
Sha384 032e616fc90bcd78ae02e0c048cfbea6e1a7ba80437ce4b655489d92d832d717d37d9e9e301178d4173a988f4d4df71a
Sha512 d43e5c7e2b21d283cddd3fef54ffb1a002c5b03e9dedde1a1d3148f178db1e32f0b2e7fa3c7c3ada37afcb051c36e58a94655f85ef82d1e347a5eb0b6d27c1be
SSDeep 24576:UERilrETNRZ2Il+VO4itrLRJDM0gFOjT2Hf/UldQPjogq:bYGl+FitRR1CD/Uc8gq
TLSH FA5512682615DD02D4635BF01D70D3F527F56E887811E3239EEA7EEBBA3A7112C486C2
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
GrainSilo.Properties.Resources.resources
Kare
[NBF]root.Data
SKOz
[NBF]root.Data
[NBF]root.Data-preview.png
STICH beta

No STICH Path has been generated for this analysis yet.

3 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.

bin 2img 1
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: ?
Module Name
IEUP.exe
Full Name
IEUP.exe
EntryPoint
System.Void GrainSilo.Program::Main()
Scope Name
IEUP.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
IEUP
Assembly Version
0.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
287
Main Method
System.Void GrainSilo.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void GrainSilo.FormSilo::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
GrainSilo.Properties.Resources.resources
Kare
[NBF]root.Data
SKOz
[NBF]root.Data
[NBF]root.Data-preview.png
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙