Suspect
PE Executable
MD5: 8436615c6a66aeba5290673c2b2ff8e6
Size: 976.9 KB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Medium
| MD5 | 8436615c6a66aeba5290673c2b2ff8e6 |
| Sha1 | dedf3c5f0fc98e5064eac4390d9d333893f3c79d |
| Sha256 | 56bcce30cabed6fa0a484821b4bcce0e67847bbcfc5bd3c4920190ae49e0c442 |
| Sha384 | ea40180cff6166b705d0bce348377534b597ff316020bef57ed06849a0979929afaba078049040780e3f999c9b50f286 |
| Sha512 | 23540dd3661d83c8222979c63d59d882058b3fdf0e51f0b841b86ab6679e230db4b8f347950b56a02e57607e8a7c27f85c706fe4e259b0dd19c9070020f0287d |
| SSDeep | 24576:c+vSk+qkyTn6pUywLL99ophKy14s/YfX1UOfwNHEb:pn+kuf03oTR4fFDz |
| TLSH | CF25126131ADCA0BD6A95BF00D71E77503B16E4EA630CAEB4DEEACCB35D17500E18693 |
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | yEXfuZ.exe |
| Full Name | yEXfuZ.exe |
| EntryPoint | System.Void WinFormWaitDialog.Program::Main() |
| Scope Name | yEXfuZ.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | yEXfuZ |
| Assembly Version | 1.2.4.3 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.5 |
| Total Strings | 205 |
| Main Method | System.Void WinFormWaitDialog.Program::Main() |
| Main IL Instruction Count | 6 |
| Main IL | |
| Module Name | yEXfuZ.exe |
| Full Name | yEXfuZ.exe |
| EntryPoint | System.Void WinFormWaitDialog.Program::Main() |
| Scope Name | yEXfuZ.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | yEXfuZ |
| Assembly Version | 1.2.4.3 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.5 |
| Total Strings | 205 |
| Main Method | System.Void WinFormWaitDialog.Program::Main() |
| Main IL Instruction Count | 6 |
| Main IL | |