Malicious
Malicious

Share on LinkedIn
Print
PE Executable
MD5:
Size: 0 B
application/x-dosexec
Ctrl + scroll to zoom · drag to pan

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Config. Field Value
Conf. AES-Salt BF-EB-huhuhuhuhuhuhuhuhuhuhu
Conf. AES-Key gfz6ANhuhuhuhuhuhuhu
Version 2.huhuhuhu
Port selechuhuhuhuhuhuhu
Host selechuhuhuhuhuhuhu
ReconnectDelay 3huhuhuhu
Key WOtrgphuhuhuhuhuhuhu
SubDirectory 3NSukrhuhuhuhuhuhuhuhuhuhuhu
Install Venhuhuhuhu
Startup 0huhuhuhu
Mutex 0huhuhuhu
StartupKey 0huhuhuhu
HideFile 4m697huhuhuhuhuhuhu
EnableLogger 0huhuhuhu
EncryptionKey Venomhuhuhuhuhuhuhu
We extracted this malware's full configuration (C2, credentials, campaign IDs…).
Unlock with Essential
Config. Field Value
URL #1 http:/huhuhuhuhuhuhuhuhuhuhu
URL #2 http:/huhuhuhuhuhuhuhuhuhuhu
We extracted this malware's full configuration (C2, credentials, campaign IDs…).
Unlock with Essential
CnC CNCmalicious
selechuhuhuhuhuhuhu
Port PORTmalicious
selechuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
An error has occurred. This application may no longer respond until reloaded. Reload 🗙