Suspicious
Suspect

PE Executable
MD5: 84eec531f9b39f4d1c5fbad3d9d531db
Size: 5.82 MB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Low
MD5 84eec531f9b39f4d1c5fbad3d9d531db
Sha1 e5db79c793885fadfed5397d82887e94a153ea24
Sha256 2da4e452aef9094897e8face35805010b092d05049cde895b0fa0a679290605e
Sha384 0cb1c1014007098765adf2deeaa7a04c7b8630dab26da772260c9e53b95d78f8cca3a3384abde6ede209ddc40791f01e
Sha512 32acb0934dd54b69d14cae9affe0d4c5be1e3dccb218db4cac2bb1b6c726f921e22f0d5190c42ebe5739851fdae3ce0ce5a444f640bcbd6ff42da08411dcc723
SSDeep 98304:7gWW4UcXmcyqorCVMtCXDiyKaiKJ7ydehxP6Ok94NiUD1XJfqOZkYb:7gWWkmCor4MkBp+gqORiUD75X
TLSH 8346331038AB61CCC86DB37CD93119C581C5A40BBA47169FCF0B79AAD78F9479B68E34
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
tsj.Resources
FREE NEW PANEL.exe
Microsoft Windows Search protocol Host.exe
Realtek HD Audio Universal Service.exe
miner.exe
Name Value
Info
PE Detect: PeReader OK (file layout)
Module Name
FREE NEW PANEL.exe
Full Name
FREE NEW PANEL.exe
EntryPoint
System.Void Program::Main()
Scope Name
FREE NEW PANEL.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
FREE NEW PANEL
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
<null>
Total Strings
12
Main Method
System.Void Program::Main()
Main IL Instruction Count
10
Main IL
ldc.i4 2000
call System.Void System.Threading.Thread::Sleep(System.Int32)
call System.Boolean Program::CreateMutex()
brtrue.s IL_001B: ldnull
call System.Int32 System.Environment::get_ExitCode()
call System.Void System.Environment::Exit(System.Int32)
ldnull <null>
call System.Object Program::WorkF(System.Object)
pop <null>
ret <null>
Module Name
FREE NEW PANEL.exe
Full Name
FREE NEW PANEL.exe
EntryPoint
System.Void Program::Main()
Scope Name
FREE NEW PANEL.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
FREE NEW PANEL
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
<null>
Total Strings
12
Main Method
System.Void Program::Main()
Main IL Instruction Count
10
Main IL
ldc.i4 2000
call System.Void System.Threading.Thread::Sleep(System.Int32)
call System.Boolean Program::CreateMutex()
brtrue.s IL_001B: ldnull
call System.Int32 System.Environment::get_ExitCode()
call System.Void System.Environment::Exit(System.Int32)
ldnull <null>
call System.Object Program::WorkF(System.Object)
pop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
tsj.Resources
FREE NEW PANEL.exe
Microsoft Windows Search protocol Host.exe
Realtek HD Audio Universal Service.exe
miner.exe
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙