By using Saferwall you consent to our Terms of Service and Privacy Policy and allow us to share your submission with the security community. Learn more

Summary

Analyse score

5/ 14

5 antivirus venders flagged
this file as malicious

Signature

File is not signed

Last scanned

First submission

File type

exe

exe

Basic properties

CRC32

0xec7dc4e0

MD5

7407fd99ee1940051b4f543656ea9b0a

Magic

PE32+ executable (GUI) x86-64, for MS Windows

SHA1

7149b25db501b75111ac77fe4bcfe6915058757a

SHA256

bef628b23396d36849beac1bf633859d02f82ae9dc877281862b7e9e85148ecd

SHA512

804a257e128f54d5febaca7424f308403e092f773119075270b89d8721e9cc91e3b7adc402ad9a9fbb252b5af250745d2f6a34f523f30b1f08c212aea0e5b75d

SSDeep

98304:g08oqEGSxQo0nYD20QB/2IuD4fb9e9z2FkZgFkrSyt85ZOnhAug8HrtqA:JnZr0YyG25eIFkKFFZ18H4A

Size

7.57MB

Packer
  • PE+(64): linker: Microsoft Linker(14.16, Visual Studio 2017 15.9*)[EXE64]
TrID
  • 48.7% (.EXE) Win64 Executable (generic) (10523/12/4)
  • 23.3% (.EXE) Win16 NE executable (generic) (5038/12/1)
  • 9.3% (.EXE) OS/2 Executable (generic) (2029/13)
  • 9.2% (.EXE) Generic Win/DOS Executable (2002/3)
  • 9.2% (.EXE) DOS Executable Generic (2000/1)
Tags

ExifTool File Metadata

CodeSize

2.58MB

EntryPoint

0x972058

ExifToolVersionNumber

12.76

FileSize

7.9 MB

FileType

Win64 EXE

FileTypeExtension

exe

ImageFileCharacteristics

Executable, Large address aware

ImageVersion

0.0

InitializedDataSize

1.56MB

LinkerVersion

14.16

MachineType

AMD AMD64

MimeType

application/octet-stream

OsVersion

6.0

PeType

PE32+

Subsystem

Windows GUI

SubsystemVersion

6.0

UninitializedDataSize

0

Submissions

Published Name Source Country
true.exe web
N/A