Suspicious
Suspect

PE Executable
MD5: 926a129539e76faf88fe2dfa462b18c9
Size: 733.7 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Medium
MD5 926a129539e76faf88fe2dfa462b18c9
Sha1 d49e45ccfe4be3ca474e31de08d4cd8ebd626a67
Sha256 9100b0b6f9841dac7febdc66401cf61fccd63f126fa6769945c5505575f00cd9
Sha384 a4417851340d3fc298e96256d4c026f10a8f459af2ce15c95f975628e301e9f537b4329af470af4a7690cc21ad282e2c
Sha512 9c69d447ecc93cc0946e216cbe7f07d123077ac861fe529a96bdcaf34655de319b5bc27cbf867d669c73dffdedac1dee5f39f58449f8fc10d633d3e39dece297
SSDeep 12288:1amRsA9vJ+12PsSQZMTMbM12q3r17KvBe0Izl4vEfLhcvlglzCZpUA3thkNICXpK:zRsA9vM1c1xr1GvBzG4vELhcvliCYA3p
TLSH 82F412A45386C916D08607B599A1F3F477789ECFAA11D3129EFABCCB7D32B017091392
PeID
Microsoft Visual C++ v6.0 DLL
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
PassGenerator.Forms.MainForm.resources
PassGenerator.Properties.Resources.resources
Ce
[NBF]root.Data
KQLc
[NBF]root.Data
[NBF]root.Data-preview.png
gold_bars
[NBF]root.Data
[NBF]root.Data-preview.png
Name Value
Info
PE Detect: PeReader OK (file layout)
Info
PDB Path: CPNA.pdb
Module Name
CPNA.exe
Full Name
CPNA.exe
EntryPoint
System.Void PassGenerator.Program::Main()
Scope Name
CPNA.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
CPNA
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
99
Main Method
System.Void PassGenerator.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void PassGenerator.Forms.MainForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
PassGenerator.Forms.MainForm.resources
PassGenerator.Properties.Resources.resources
Ce
[NBF]root.Data
KQLc
[NBF]root.Data
[NBF]root.Data-preview.png
gold_bars
[NBF]root.Data
[NBF]root.Data-preview.png
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙