Suspect
PE Executable
MD5: 6dbc78e7f56e4d05dbf61e3f205b339d
Size: 89.09 KB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
High
| MD5 | 6dbc78e7f56e4d05dbf61e3f205b339d |
| Sha1 | e255fc4314b98064497406940c36c77755c1627a |
| Sha256 | f0f06d6d0f3bbcafb30dd9fd31bf75974e8f19fbb1f226ecada15720496da9ef |
| Sha384 | 109eb24d777bb30bc22914ea1a5c6f04a37fc2904b7efd4b6afa91e01457d14e0a12b35c41c70f518a514179bc5f3d68 |
| Sha512 | 10fe0204e16c61ab91f6b183de3beb4a5f8d701b62c41d18acd326cf6e21831ed538472ea5137da775b9fa7210238dd9ab0d6aed8f12ad39806a5f832bf4cd2c |
| SSDeep | 1536:7e1Qda8UdmdDUfOWnU18NMS40RJ85h2BCbzaer9baRInopjXXT1y9Wp31+qbR:QQCdmdDUfOWnU18NMS4iJk2gN9baRao5 |
| TLSH | 39933A0CB2C59671D0AF9B3545E25720C3B592036643FB4E0DEED1856E833C4AB85ABE |
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
STICH
beta
No STICH Path has been generated for this analysis yet.
3 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.
bin
2img
1| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | stees |
| Full Name | stees |
| EntryPoint | System.Void sO2::vkuyi4() |
| Scope Name | stees |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | gjiew |
| Assembly Version | 231.543.54.4 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.7.2 |
| Total Strings | 714 |
| Main Method | System.Void sO2::vkuyi4() |
| Main IL Instruction Count | 196 |
| Main IL | |
| Module Name | stees |
| Full Name | stees |
| EntryPoint | System.Void sO2::vkuyi4() |
| Scope Name | stees |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | gjiew |
| Assembly Version | 231.543.54.4 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.7.2 |
| Total Strings | 714 |
| Main Method | System.Void sO2::vkuyi4() |
| Main IL Instruction Count | 196 |
| Main IL | |