Suspect
a9ccd123ce88a3df842da1ddd57d94a7
PE Executable
MD5: a9ccd123ce88a3df842da1ddd57d94a7
Size: 1.6 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Medium
| MD5 | a9ccd123ce88a3df842da1ddd57d94a7 |
| Sha1 | 2f613d21af79ae3820be0df913fa61d864922170 |
| Sha256 | 64465cfaee2db20531657bee57f40cec0f6747cd7fdc3b5933bafd64c117ba0b |
| Sha384 | 12985ecb57ee983baa4285ee69e7b1da7ea69d382817765adeadfe40368566ae32db9e8a24b5a310a3a8eca4ca51c99d |
| Sha512 | 93bf1e0fff5f4260ee45811e5f6dbdad560aace4e9d2d9583b8a25e17b5f8f5a463908864dda72aed76c6d65da5eb939f2a8be788e4bb04f04367c2daa4b5c4c |
| SSDeep | 24576:RNQSsmMWl/Qea61l2PyaRR0bRjMTX0Inv4t9Wlcw0taOJ8:YS3MQIm1EPv0RjqBQt9vjUg8 |
| TLSH | 997523A963BDDE12E8BD0F725576C3B427B05E8E6412D217CFF6ADEB3101B442818792 |
STICH
beta
No STICH Path has been generated for this analysis yet.
4 structural branches were classified as secondary (decorative or non-determinant content) and did not produce a fingerprint.
bin
2img
2| Name | Value |
|---|---|
| Module Name | AFld.exe |
| Full Name | AFld.exe |
| EntryPoint | System.Void PuddleSkipper.Program::Main() |
| Scope Name | AFld.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | AFld |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.5 |
| Total Strings | 286 |
| Main Method | System.Void PuddleSkipper.Program::Main() |
| Main IL Instruction Count | 10 |
| Main IL | |
| Info | PE Detect: PeReader OK (file layout) |
No malware configuration was found at this point.
You must be signed in to view YARA rules.