Suspect
PE Executable
MD5: 4b4e3520f6127c1c65fdd8b3ecac975e
Size: 4.4 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Medium
| MD5 | 4b4e3520f6127c1c65fdd8b3ecac975e |
| Sha1 | bbc427f63445d9fa65fb10859ac83720fc147e8e |
| Sha256 | 3a88fc89c7e42d6865ac32b65091fbe0c4940b4661c80a57d1c85980d76b8a50 |
| Sha384 | 36a1953c2e7c230d59f027ee95e721ec1d5a64cb56a334fad41122edc4c453151907b958ab360e9aa490948bb959eec9 |
| Sha512 | 0bc6bf3b2439bbe0c4fc5dde8783edcee0ac67672fe8dd19d1f0a2c3426c4f04c8292a3e40b79ab8997d70aea5598b483f3d1229907b7dfc94489a95a40eedaa |
| SSDeep | 98304:FW+GNNftT3R4w3K6tZSaMSs1eJMn7w08BKAqffmj:Dkb2w3E16MiBrUfm |
| TLSH | D11622107D56C032D56251B21F79EBF285BDBC21AB3149DB77C01E36AA211E2AA31F39 |
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ 7.0 - 8.0Microsoft Visual C++ v6.0 DLLMicrosoft Visual Studio .NET
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | DownloaderApp.exe |
| Full Name | DownloaderApp.exe |
| EntryPoint | System.Void ::(System.String[]) |
| Scope Name | DownloaderApp.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | DownloaderApp |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.7.2 |
| Total Strings | 0 |
| Main Method | System.Void ::(System.String[]) |
| Main IL Instruction Count | 279 |
| Main IL | |
| Module Name | DownloaderApp.exe |
| Full Name | DownloaderApp.exe |
| EntryPoint | System.Void ::(System.String[]) |
| Scope Name | DownloaderApp.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | DownloaderApp |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.7.2 |
| Total Strings | 0 |
| Main Method | System.Void ::(System.String[]) |
| Main IL Instruction Count | 279 |
| Main IL | |