Suspect
PE Executable
MD5: e31664311f7d2f4b38729c971932921f
Size: 915.46 KB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Very low
| MD5 | e31664311f7d2f4b38729c971932921f |
| Sha1 | c1085121af9d3a19dea6219f7c77dffcc7254dd2 |
| Sha256 | 62bd1a4886eaea5b5bbd21eea90540913b0a7a573305b0eb7c58cc61e93ecea0 |
| Sha384 | f73d9fa07bf52bf3dc5174c7800efb8a7a04dcdea5c893f789a9f86c0b174ac799aceb91cbb7fb31e57e812392e5be2d |
| Sha512 | 68c83e9d3faa4277a941ae28a85404d5b7d9b58ccb7ec378b183b9358cc9cbe2b4b3cd1c3f6282ce5db77efdaa75704b1c71f47cf763c46d4ec64e3c79fca094 |
| SSDeep | 24576:WC697vLr9CBLb59Tc2uAm13SGy1bz6G6JU4CLIBbV7v:J697jr9OPhm13SZ61Ck5V7 |
| TLSH | 361512AA029AC831C4FD2BF4A661D23B1378ED9D9406C31BCACDBCE77C1775965423A1 |
PeID
.NET executableMicrosoft Visual C# / Basic .NETMicrosoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL Microsoft Visual C# v7.0 / Basic .NETMicrosoft Visual Studio .NET
| Name | Value |
|---|---|
| Module Name | GpDJ.exe |
| Full Name | GpDJ.exe |
| EntryPoint | System.Void StIvesLib.main::Main() |
| Scope Name | GpDJ.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | GpDJ |
| Assembly Version | 0.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.0 |
| Total Strings | 107 |
| Main Method | System.Void StIvesLib.main::Main() |
| Main IL Instruction Count | 10 |
| Main IL | |
| Module Name | GpDJ.exe |
| Full Name | GpDJ.exe |
| EntryPoint | System.Void StIvesLib.main::Main() |
| Scope Name | GpDJ.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | GpDJ |
| Assembly Version | 0.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.0 |
| Total Strings | 107 |
| Main Method | System.Void StIvesLib.main::Main() |
| Main IL Instruction Count | 10 |
| Main IL | |
Embedded Resources
UNKNWOWNsuspect
2huhuhuhu
Suspicious Type Names (1-2 chars)
UNKNWOWN
0huhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential