Suspect
PE Executable
MD5:
Size: 0 B
application/x-dosexec
Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.
AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score
Low
PeID
.NET SmartAssemby Obfuscator 6.0 (chars) sign ASLMicrosoft Visual C++ DLLMicrosoft Visual C++ v6.0
| Name | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | testpowershell.exe |
| Full Name | testpowershell.exe |
| EntryPoint | System.Void testpowershell.sha::Main() |
| Scope Name | testpowershell.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | testpowershell |
| Assembly Version | 5.0.4.12 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.8 |
| Total Strings | 8 |
| Main Method | System.Void testpowershell.sha::Main() |
| Main IL Instruction Count | 39 |
| Main IL | |