General
Structural Analysis
Config.0
Yara Rules5
Sync
Community
Summary by MalvaGPT
Characteristics
Symbol Ofbuscation Score
Medium
|
Hash | Hash Value |
|---|---|
| MD5 | 88489de418a8dc5d13adf0f7fb72f42c
|
| Sha1 | 09c3bce7c335e14229e726c05ec7ee86160d2b4b
|
| Sha256 | 8646a46ef0988ca44edd112fac6988a6f9426c9ac1abdbe76069b71c4f1c4664
|
| Sha384 | 8b7807fb9492efcae0b695eb7644d171b77768ca3c550ce72303c67cf00d05c20060078ae701abc0b761da1e1bb161dc
|
| Sha512 | 3730566460104575c8fcea7236541ef3cc044ab813f7a0d0e533d17a6669d446f32ca0b4247148c466c4f3db813c671a6e15c6c34ef2a3e05dbf35396fa6563c
|
| SSDeep | 1536:o9OoFYSjCmJ0TViz54PXzpQK8WBD7Ft9dIwtkHf/jFh0ivgfhAXAQ3vlfHwJbivn:bVEcUNHfH0HAXAQ3vlfHwMv41Cnd
|
| TLSH | 2A04AB037B498B40C568353A93FB6D3D63A0F5CB07728A0FDF54769A1DD22A69DCC24A
|
PeID
Microsoft Visual C++ DLL
Microsoft Visual C++ v6.0
File Structure
88489de418a8dc5d13adf0f7fb72f42c
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_VERSION
ID:0001
ID:0
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: ? |
| Module Name | weholyhejybiku.dll |
| Full Name | weholyhejybiku.dll |
| Scope Name | weholyhejybiku.dll |
| Scope Type | ModuleDef |
| Kind | Dll |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | weholyhejybiku |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.8 |
| Total Strings | 0 |
| Main Method | Not found or no body |
88489de418a8dc5d13adf0f7fb72f42c (182.78 KB)
File Structure
88489de418a8dc5d13adf0f7fb72f42c
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_VERSION
ID:0001
ID:0
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.