Suspect
PE Executable
MD5: f11a7b9639092de01f260dd0aa21d39a
Size: 1.04 MB
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Low
| MD5 | f11a7b9639092de01f260dd0aa21d39a |
| Sha1 | 5960b5f16ab291a5c5841867d3f734e1aaaf949e |
| Sha256 | 673139dbfbd997edcebfe6d25b8cc2d006c59c752d89a84ef4136f1a5e876db0 |
| Sha384 | 83cef8801512d5e063284d4e12524ac6c180b1376472c6364248974c5e5ef19e369247c9cf8deb9d2865a56b3f755a75 |
| Sha512 | cc494c8055636a49a905a55beabfca7752bdfb63ee0b9069dff706e162a0dc5b19133a1695990b4face773b8022fa7f422f06fed3f2892eba408d623ffe85964 |
| SSDeep | 24576:FWc23x7fYF7JcIwp9nVx1DZhmNHAZcdUnJ4MB:Fd23xMF7JcIwp9Vx1lhmNHecinJ3B |
| TLSH | 0C25011C63C8C405C6BF9376A0B2E171037ABD5BF978D36D06C9BCEB3AA1B025945726 |
| Name | Value |
|---|---|
| Module Name | GOxpr.exe |
| Full Name | GOxpr.exe |
| EntryPoint | System.Void AnalyzeGraphics.Program::Main() |
| Scope Name | GOxpr.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | GOxpr |
| Assembly Version | 4.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.5 |
| Total Strings | 760 |
| Main Method | System.Void AnalyzeGraphics.Program::Main() |
| Main IL Instruction Count | 37 |
| Main IL | |
PDB Path
PATH
GOxhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential