File 84f3e2049740ebbcfb5fe827cc6068c6f8691bcaefa781a9f2af7a07d944443b Summary

Analyse score

0 / 14

No antivirus venders flagged
this file as malicious

Signature

File is not signed

Last scanned

First submission

File type

exe

exe

Basic properties

CRC32

0x8b13539d

MD5

018766bcfa72a30a09f2df9755b7a24a

Magic

PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows

SHA1

f7a3dfbda9e1ca854ff4514454cb95854c9a084d

SHA256

84f3e2049740ebbcfb5fe827cc6068c6f8691bcaefa781a9f2af7a07d944443b

SHA512

b28f3809dc25b693987de94afca04ce79aa2a8aaf96a919b5f9a56cb0a7af8482429a4bdefd0a4d161e9ba8edce8b21501a318c46310492e8474f4de06ff2cc3

SSDeep

768:asSphzlEoEri9tFScvOZa86xscFJgZYhPzvhynQuMceIFtksROFJgIYAPiv3:asUbsi9tscvwS7DgWtdJhceIoZDgfgC

Size

246.50KB

Packer
  • PE: library: .NET(v4.0.30319)[-]
  • PE: linker: Microsoft Linker(48.0)[EXE32]
TrID
  • 71.1% (.EXE) Generic CIL Executable (.NET, Mono, etc.) (73123/4/13)
  • 10.2% (.EXE) Win64 Executable (generic) (10523/12/4)
  • 6.3% (.DLL) Win32 Dynamic Link Library (generic) (6578/25/2)
  • 4.3% (.EXE) Win32 Executable (generic) (4505/5/1)
  • 2.0% (.ICL) Windows Icons Library (generic) (2059/9)
Tags

ExifTool File Metadata

AssemblyVersion

1.0.0.0

CharacterSet

Unicode

CodeSize

142.50KB

Comments

CompanyName

EntryPoint

0x258de

ExifToolVersionNumber

12.64

FileDescription

AlphaClicker

FileFlags

(none)

FileFlagsMask

0x003f

FileOs

Win32

FileSize

252 kB

FileSubtype

0

FileType

Win32 EXE

FileTypeExtension

exe

FileVersion

1.0.0.0

FileVersionNumber

1.0.0.0

ImageFileCharacteristics

Executable, Large address aware

ImageVersion

0.0

InitializedDataSize

103.50KB

InternalName

AlphaClicker.exe

LanguageCode

Neutral

LegalCopyright

Copyright © 2021

LegalTrademarks

LinkerVersion

48.0

MachineType

Intel 386 or later, and compatibles

MimeType

application/octet-stream

ObjectFileType

Executable application

OriginalFileName

AlphaClicker.exe

OsVersion

4.0

PeType

PE32

ProductName

AlphaClicker

ProductVersion

1.0.0.0

ProductVersionNumber

1.0.0.0

Subsystem

Windows GUI

SubsystemVersion

6.0

UninitializedDataSize

0

Show all

Submissions

Published Name Source Country
AlphaClicker.exe web undefined

Indicators

Description Severity Category Module
Malware detection of a yara signature: Win32/WannaCry
malicious
Sandbox Detection Behavior
Communicates over HTTP with a low reputation domain
informational
C2 Behavior
Deletes itself after process termination
suspicious
Stealth Behavior
Write a file to the startup folder
suspicious
Persistence Behavior
Check for the existence of Virtual Machines
suspicious
Signature Yara

🚀 Coming soon!

Virtual Screens

🚀 Coming soon!