Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Joe Sandbox ML: detected |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: EXECUTABLE_IMAGE, 32BIT_MACHINE |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
String found in binary or memory: https://steamcommunity.com/profiles/76561199817305251 |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
String found in binary or memory: https://steamcommunity.com/profiles/76561199817305251fc0stnMozilla/5.0 |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
String found in binary or memory: https://t.me/w0ctzn |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
String found in binary or memory: https://t.me/w0ctznfc0stnMozilla/5.0 |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: Section: .text IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: No import functions for PE file found |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: EXECUTABLE_IMAGE, 32BIT_MACHINE |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: Section: .00cfg ZLIB complexity 1.015625 |
Source: classification engine |
Classification label: mal48.winEXE@0/0@0/0 |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: Section: .text IMAGE_SCN_CNT_CODE, IMAGE_SCN_MEM_EXECUTE, IMAGE_SCN_MEM_READ, IMAGE_SCN_MEM_WRITE |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_IMPORT is in: .rdata |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_RESOURCE is in: .rsrc |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_BASERELOC is in: .reloc |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_LOAD_CONFIG is in: .rdata |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: Data directory: IMAGE_DIRECTORY_ENTRY_IAT is in: .rdata |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: section name: .00cfg |
Source: 173698434687b8a1fabde34850fca22a1750c6b07d6f37b5459bc550949ffaad053c75e773402.dat-decoded.exe |
Static PE information: section name: .text entropy: 6.847674913217407 |