Malicious
PE Executable
MD5:
Size: 0 B
application/x-dosexec
Ctrl + scroll to zoom · drag to pan
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
PeID
Microsoft Visual C++ 6.0 DLL (Debug)Microsoft Visual C++ 8Microsoft Visual C++ 8Microsoft Visual C++ v6.0 DLLUPX 2.00-3.0X -> Markus Oberhumer & Laszlo Molnar & John ReiserUPX Protector v1.0xUPX v2.0 -> Markus, Laszlo & ReiserVC8 -> Microsoft Corporation
| Config. Field | Value |
|---|---|
| Mutex | CkU2Vjhuhuhuhuhuhuhuhuhuhuhu |
| KEY | Dq8NKhhuhuhuhuhuhuhuhuhuhuhu |
| USBNM | Gpzw+6huhuhuhuhuhuhu |
| family | xhuhuhuhu |
We extracted this malware's full configuration (C2, credentials, campaign IDs…).
Unlock with Essential
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: C:\Users\DarkCoderSc\Desktop\Celesty Binder\Stub\STATIC\Stub.pdb |
Mutex
MUTEXmalicious
CkU2Vjhuhuhuhuhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential