Suspicious
Suspect

PE Executable
MD5: a0f0074dd3a759f51be6f4a6e064f1f6
Size: 970.24 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Medium
MD5 a0f0074dd3a759f51be6f4a6e064f1f6
Sha1 239e79026c6074570e73d706719827b2895d32a2
Sha256 aadfe021f937eddbb71eeaa4f109221cce0bbb2607ef26e41ecd6a31e06b5509
Sha384 31f20209d1f71fcc48427ff8deb9192754383ac18656bc83ccfd52e91c4a2999b45f89ef80bd747f41556a61261e3f2c
Sha512 7f56b48576895be143ab3733f192e0f9a8e711e9170d107d8dd2f1db20bea4264d0732a005c8a3c2a7cd472a2e6286551dd46496bd27327db80781e096ef3e6e
SSDeep 24576:FO1VoNzf5T+yafZMFNycuphygQ2PpM7G6ejSvtwv:UKbeMCc2BPG7A8twv
TLSH 10252305224C4623D0E667792E72E6382773ADAD56A2D906AFDB3CDF3632F440B10B57
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
IcebergNavigator.HauptForm.resources
IcebergNavigator.Properties.Resources.resources
HKEd
[NBF]root.Data
[NBF]root.Data-preview.png
zik
[NBF]root.Data
Name Value
Info
PE Detect: PeReader OK (file layout)
Module Name
JfCD.exe
Full Name
JfCD.exe
EntryPoint
System.Void IcebergNavigator.Program::Main()
Scope Name
JfCD.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
JfCD
Assembly Version
0.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5
Total Strings
146
Main Method
System.Void IcebergNavigator.Program::Main()
Main IL Instruction Count
10
Main IL
nop <null>
call System.Void System.Windows.Forms.Application::EnableVisualStyles()
nop <null>
ldc.i4.0 <null>
call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean)
nop <null>
newobj System.Void IcebergNavigator.HauptForm::.ctor()
call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form)
nop <null>
ret <null>
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
IcebergNavigator.HauptForm.resources
IcebergNavigator.Properties.Resources.resources
HKEd
[NBF]root.Data
[NBF]root.Data-preview.png
zik
[NBF]root.Data
No malware configuration was found at this point.
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙