Windows Analysis Report
1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe

Overview

General Information

Sample name: 1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe
Analysis ID: 1543221
MD5: 17cd8cd72853143b09653fd5850b62db
SHA1: cf302714eb6fe986c6a816b32bbf76a709dbf280
SHA256: 8f2e90a1faf005ce982231e5b973eff3e0865110f820279f5d7c063d547d2cae
Tags: base64-decodedexeuser-abuse_ch
Errors
  • No process behavior to analyse as no analysis process or sample was found
  • Corrupt sample or wrongly selected analyzer. Details: The image file %1 is valid, but is for a machine type other than the current machine.

Detection

Score: 0
Range: 0 - 100
Whitelisted: false
Confidence: 60%

Signatures

Sample file is different than original file name gathered from version info

Classification

Source: 1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe String found in binary or memory: http://www.chiark.greenend.org.uk/C
Source: 1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe Binary or memory string: OriginalFilenamePuTTY: vs 1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe
Source: classification engine Classification label: unknown0.winEXE@0/0@0/0
Source: 1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe String found in binary or memory: ssh.tunnels.portfwd.ipversion:config-ssh-portfwd-address-family
Source: 1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe String found in binary or memory: connection.ipversion:config-address-family
Source: 1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe String found in binary or memory: serial.stopbits:config-serial-stopbits
Source: 1730032629a1045efd2ad4e4adac06966158f2f021a0f8bc87f6317324f45807d8121c0671809.dat-decoded.exe String found in binary or memory: DSR/DTRRTS/CTSXON/XOFFSpaceMarkEvenOddFlow controlserial.flow:config-serial-flowParityserial.parity:config-serial-parityStop bitsserial.stopbits:config-serial-stopbitsData bitsserial.databits:config-serial-databitsSpeed (baud)serial.speed:config-serial-speedsercfgConfigure the serial lineSerial line to connect toserial.line:config-serial-lineserlineSelect a serial lineConnection/SerialOptions controlling local serial linesSerial

No Behavior Graph

No contacted IP infos