Suspicious
Suspect

3f3a9f60fc144db5711db0f5299854c0

PE Executable
MD5: 3f3a9f60fc144db5711db0f5299854c0
Size: 288.26 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 3f3a9f60fc144db5711db0f5299854c0
Sha1 b9aa7c426472f86a27e78a5b03dd71e7fcdc575f
Sha256 d15d2eb84261207cd71ae7acceb5534fcc2e520e656549d9c38f6b022f9f61e7
Sha384 cba385e02c79910cb181bfdde921f304ec4156811dcfae1046b9e30d62037c766599752f39ff09a66951b712a56984ba
Sha512 fc1793b8e7ad18113b1a9d05de9a2809253ed8484af6ecf7c579a4f6e4d6a8bb5d6c19e39f4cc912def6d515854b1d549ab0c8fc6f9e14c5b8e97267946a17c4
SSDeep 6144:F2wBWoxQniwPPt/uU9/UhcX7elbKTuq9bfF/H9d9n:F2joxQi6h3X3uO
TLSH 6D54F16D1E95CD42EAD94C7504B3A37CD26C9DB36E0C4903D7687DA82B36E482E26333
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0005
ID:0
ID:0006
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
seoatmi.Resources
Fsociety DDoS V2.rar
H-Output.exe
Name Value
Info
PE Detect: PeReader OK (file layout)
Module Name
DDos-3.v1.exe
Full Name
DDos-3.v1.exe
EntryPoint
System.Void Program::Main()
Scope Name
DDos-3.v1.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
DDos-3.v1
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
<null>
Total Strings
14
Main Method
System.Void Program::Main()
Main IL Instruction Count
10
Main IL
ldc.i4 2000
call System.Void System.Threading.Thread::Sleep(System.Int32)
call System.Boolean Program::CreateMutex()
brtrue.s IL_001B: ldnull
call System.Int32 System.Environment::get_ExitCode()
call System.Void System.Environment::Exit(System.Int32)
ldnull <null>
call System.Object Program::WorkF(System.Object)
pop <null>
ret <null>
Module Name
DDos-3.v1.exe
Full Name
DDos-3.v1.exe
EntryPoint
System.Void Program::Main()
Scope Name
DDos-3.v1.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
DDos-3.v1
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
<null>
Total Strings
14
Main Method
System.Void Program::Main()
Main IL Instruction Count
10
Main IL
ldc.i4 2000
call System.Void System.Threading.Thread::Sleep(System.Int32)
call System.Boolean Program::CreateMutex()
brtrue.s IL_001B: ldnull
call System.Int32 System.Environment::get_ExitCode()
call System.Void System.Environment::Exit(System.Int32)
ldnull <null>
call System.Object Program::WorkF(System.Object)
pop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0005
ID:0
ID:0006
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
seoatmi.Resources
Fsociety DDoS V2.rar
H-Output.exe
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙