Suspicious
Suspect

PE Executable
MD5: f5848eab1fd8e3528b40d58989fc024a
Size: 114.18 KB
application/x-dosexec

Get an AI-generated breakdown of this malware's behaviour, IOCs and recommendations.

AI analysis is available with Essential.
Unlock with Essential
Symbol Obfuscation Score Very high
MD5 f5848eab1fd8e3528b40d58989fc024a
Sha1 10a3c583b8eca5c128a0fb13d0aff7f9558324ce
Sha256 009f403a7037dfda001e8d151f70e552ac6f09f1485cf12ec82dd34c6f25c851
Sha384 8fe2bffe7b8dcdc476097b7525dde1ad777366d32fe187a0fef0ad7037ca80c90c5395637f708946a9e4584f03f8299d
Sha512 3a81daeeafd04fd000d81a3fdfa7e7398d3fe550198ca5534d14f04da828e4f763f55641372635809c059f08629d5e1f515f9a1a75387c68f84cd647f9dfe28e
SSDeep 3072:9EzO9o55PoN2ILOjnmxhwmOm5DNw8h7LW4P01FhxG:z9k5ANjLhwmn5DNwOW4P01Fhx
TLSH 42B3079D726071EFC867C472DEA82C68EA6474BB831F4603A06716ADDE4D897CF150F2
PeID
Microsoft Visual C# / Basic .NET
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
9uQW
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Name Value
Module Name
VZXFGSDFG.exe
Full Name
VZXFGSDFG.exe
EntryPoint
System.Void ‬‭​‫‏​‍‎‎‏‬‌‌‪‪‭‮‌​‏‌‬​‍​‬‮::‪​‌‪‫‪‬‪​‬‮‮‬‮‏‎‌‫‪‍‍‭‍‬‍‍‌‮()
Scope Name
VZXFGSDFG.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
VZXFGSDFG
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5.2
Total Strings
2
Main Method
System.Void ‬‭​‫‏​‍‎‎‏‬‌‌‪‪‭‮‌​‏‌‬​‍​‬‮::‪​‌‪‫‪‬‪​‬‮‮‬‮‏‎‌‫‪‍‍‭‍‬‍‍‌‮()
Main IL Instruction Count
0
Main IL
Module Name
VZXFGSDFG.exe
Full Name
VZXFGSDFG.exe
EntryPoint
System.Void ‬‭​‫‏​‍‎‎‏‬‌‌‪‪‭‮‌​‏‌‬​‍​‬‮::‪​‌‪‫‪‬‪​‬‮‮‬‮‏‎‌‫‪‍‍‭‍‬‍‍‌‮()
Scope Name
VZXFGSDFG.exe
Scope Type
ModuleDef
Kind
Windows
Runtime Version
v4.0.30319
Tables Header Version
512
WinMD Version
<null>
Assembly Name
VZXFGSDFG
Assembly Version
1.0.0.0
Assembly Culture
<null>
Has PublicKey
False
PublicKey Token
<null>
Target Framework
.NETFramework,Version=v4.5.2
Total Strings
2
Main Method
System.Void ‬‭​‫‏​‍‎‎‏‬‌‌‪‪‭‮‌​‏‌‬​‍​‬‮::‪​‌‪‫‪‬‪​‬‮‮‬‮‏‎‌‫‪‍‍‭‍‬‍‍‌‮()
Main IL Instruction Count
0
Main IL
PDB Path PATH
VZXFhuhuhuhuhuhuhu
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
9uQW
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
No malware configuration was found at this point.
PDB Path PATH
VZXFhuhuhuhuhuhuhu
f5848eab1fd8e3528b40d58989fc024a
Full artefact values (URLs, paths, registry keys, scripts…) are available with Essential.
Unlock with Essential
You must be signed in to view YARA rules.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙