Suspect
PE Executable
MD5: 6d4b7db96b65b2ab8c2fe5091bc4e2ca
Size: 1.01 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Low
| MD5 | 6d4b7db96b65b2ab8c2fe5091bc4e2ca |
| Sha1 | 17c44db8533acca540df53f89297411f6f6f3847 |
| Sha256 | 069db9eb6655ea38831e92d501b2ff012757a61a4dd5445110f8e4f7b2a9af7e |
| Sha384 | 7a806058f2f7758702d7dfb04079fe44a901d1c81248a1254a55b64acb8c6a0fbbf4a171b4fdb4f48ceb6710db053fbf |
| Sha512 | e82c639b89269e8270263ce41e9ea119a1fa9be95473ef2b84dacbe005d31c62e71dd62c010179c000769769f7c240824dd16bd1f2a3b471825900b06686bc58 |
| SSDeep | 24576:Jo+wpDc/M5FpmhibWW0ZQeSpn23YZDacXt64LumQzcAKRbn8F:J4Rc/M5+hibX6bR3ZcAwzQMZ |
| TLSH | 2F251254B764FF16C8AE5B751872D37A43B86E8EC927D3178EDDAEEB78103026C00691 |
STICH
beta
No STICH Path has been generated for this analysis yet.
4 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.
bin
2img
2| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: C:\Users\Administrator\Desktop\Client\Temp\QZBjqiBOIh\src\obj\Debug\ZGEG.pdb |
| Module Name | ZGEG.exe |
| Full Name | ZGEG.exe |
| EntryPoint | System.Void VirtualMachine26.Program::Main() |
| Scope Name | ZGEG.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | ZGEG |
| Assembly Version | 26.1.4.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.7.2 |
| Total Strings | 171 |
| Main Method | System.Void VirtualMachine26.Program::Main() |
| Main IL Instruction Count | 10 |
| Main IL | |