Suspect
58f3940dcf972024bd57e275799b8c54
PE Executable
MD5: 58f3940dcf972024bd57e275799b8c54
Size: 805.89 KB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Low
| MD5 | 58f3940dcf972024bd57e275799b8c54 |
| Sha1 | 878a9a306195082ee8354df78ed27b029834ef8d |
| Sha256 | c38c0cf6caae09abb251a613fd891d105e2c37424817f5b005154f34920edc3c |
| Sha384 | 82d68ba28ddcf913f28803af9bb3dfdc596dfcac4baeab140bd5e2dee497e55ea9412fcf66220de6307770760d6cd2d8 |
| Sha512 | d65fd15e70ef8e3573fad12783c41fa048bcfe7a6710ee798b4cf7f7acc51b818b269514a91294735512beb20acd2e6ca4c6d0b5874afaeb95b27a1afa4ed655 |
| SSDeep | 12288:P5nfL2KhBxIp0jIdxl3s1TizMC9+pqQQp1yEJHro5ZERjCZ4vkEO7xKqX:P5nTHO0852TihopxoIEpo52ReOY1 |
| TLSH | 2B05BEB1F2B48455E49967B14D26D83011E62EBCECA1D30EC5DA7DA779B3FC2088294F |
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: ? |
| Module Name | lgso.exe |
| Full Name | lgso.exe |
| EntryPoint | System.Void Zapsinaya_knizka_new.Program::Main() |
| Scope Name | lgso.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | lgso |
| Assembly Version | 0.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.5 |
| Total Strings | 217 |
| Main Method | System.Void Zapsinaya_knizka_new.Program::Main() |
| Main IL Instruction Count | 10 |
| Main IL | |
| Module Name | lgso.exe |
| Full Name | lgso.exe |
| EntryPoint | System.Void Zapsinaya_knizka_new.Program::Main() |
| Scope Name | lgso.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | lgso |
| Assembly Version | 0.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.5 |
| Total Strings | 217 |
| Main Method | System.Void Zapsinaya_knizka_new.Program::Main() |
| Main IL Instruction Count | 10 |
| Main IL | |
No malware configuration was found at this point.
You must be signed in to view YARA rules.