Suspect
PE Executable
MD5: 875dc7c079fb6af2fbc88c443ba8649d
Size: 1.57 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Very low
| MD5 | 875dc7c079fb6af2fbc88c443ba8649d |
| Sha1 | 578e27c97a4074ec39a343b032d16af1eb600ca8 |
| Sha256 | efe869295ac3b949a986cbb03bcbce50d8cdee27d904592d1f5915a59d604422 |
| Sha384 | 4c6e42ba0bce8905f8740063da597c2d1e10490871ee6fa4bfe1ef5535c75393e546204532e117cf083a9c620a0f621b |
| Sha512 | c40874ed5292e1a3c0003cda37b25fca314747646c4124d594072eaf83a1579f4a7af8e936b32a03e5dd24f5b9b5abfb91066da56a8b7e96a30249c89df12f72 |
| SSDeep | 24576:JPBdDKzWYasxqcRR5+SoKvNgMJTlTmTuYcwt2gAd6woI9mfrYtrgBeB53hiEal5M:JpQWYOcn5+bo3wnrtidfoI9mfrdBY/aZ |
| TLSH | E67523283223EC51CD815B745652E3B987319DCDE853D3139AEDEDF7F834272682A2A4 |
| Name | Value |
|---|---|
| Module Name | fuHA.exe |
| Full Name | fuHA.exe |
| EntryPoint | System.Void POSManager.Program::Main() |
| Scope Name | fuHA.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | fuHA |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.0 |
| Total Strings | 92 |
| Main Method | System.Void POSManager.Program::Main() |
| Main IL Instruction Count | 10 |
| Main IL | |
PDB Path
PATH
fuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential