File 723f848d65360accfc2aa70a38d862ce1f4588b6e134e8208477d593e96bb45f Summary

Analyse score

1 / 14

1 antivirus venders flagged
this file as malicious

Signature

File is not signed

Last scanned

First submission

File type

exe

exe

Basic properties

CRC32

0x9acb8197

MD5

2da61ec8a3b8b0d08c6114bf30366b00

Magic

PE32+ executable (console) x86-64, for MS Windows

SHA1

c75d8950df96e5ab22364452d758e2d6c5a61d3c

SHA256

723f848d65360accfc2aa70a38d862ce1f4588b6e134e8208477d593e96bb45f

SHA512

e7647ce1a8bfcfa7b583310a2e2fff0459c8471fb600bb3a6a7f20b8700cea508f21911a53ae770b7a7d2e3ef4e10137e07bea597d5447ed56691c2a96624637

SSDeep

49152:q8b61gvO4F6AlzdXmewvukKH2u7x1aYi27R/OVr5FPxcYj+fdR9alpCPTI2A5:aqdF6Ajz37s5t

Size

5.67MB

Packer
  • PE+(64): linker: unknown(3.0)[EXE64,console]
TrID
  • 37.3% (.EXE) Win64 Executable (generic) (10523/12/4)
  • 17.8% (.EXE) Win16 NE executable (generic) (5038/12/1)
  • 16.0% (.EXE) Win32 Executable (generic) (4505/5/1)
  • 7.3% (.ICL) Windows Icons Library (generic) (2059/9)
  • 7.2% (.EXE) OS/2 Executable (generic) (2029/13)
Tags

ExifTool File Metadata

CodeSize

3.66MB

EntryPoint

0x68160

ExifToolVersionNumber

12.64

FileSize

5.9 MB

FileType

Win64 EXE

FileTypeExtension

exe

ImageFileCharacteristics

Executable, Large address aware

ImageVersion

1.0

InitializedDataSize

89.50KB

LinkerVersion

3.0

MachineType

AMD AMD64

MimeType

application/octet-stream

OsVersion

6.1

PeType

PE32+

Subsystem

Windows command line

SubsystemVersion

6.1

UninitializedDataSize

0

Show all

Submissions

Published Name Source Country
main.go.exe web undefined

Indicators

Description Severity Category Module
Malware detection of a yara signature: Win32/WannaCry
malicious
Sandbox Detection Behavior
Communicates over HTTP with a low reputation domain
informational
C2 Behavior
Deletes itself after process termination
suspicious
Stealth Behavior
Write a file to the startup folder
suspicious
Persistence Behavior
Check for the existence of Virtual Machines
suspicious
Signature Yara

🚀 Coming soon!

Virtual Screens

🚀 Coming soon!