Sample: c456d48ece7443187a6036b379967a94

Note: if you are new to ThreatMiner, check out the how-to page to find out how you can get the most out of this portal.

Metadata
File name:N/A
File type:PE32 executable (GUI) Intel 80386, for MS Windows
File size:1010688
Analysis date:N/A
MD5:c456d48ece7443187a6036b379967a94
SHA1:b0286a9c3727cb7094fd8a105f8fb4c1e5575184
SHA256:1020559474fc1f14c02a51a08c318d78a128abf3b09824f01648f23e4323e0e6
SHA512:N/A
SSDEEP:N/A
IMPHASH:N/A
Authentihash:N/A
Related resources
PE TypePE32
Internal NameImezdo.exe
File Size987 kB
Machine TypeIntel 386 or later, and compatibles
File OSWindows NT 32-bit
Code Size604672
OS Version5.1
Entry Point0x95000
File Flags Mask0x003f
Linker Version10.0
File SubtypeN/A
Uninitialized Data SizeN/A
File Version10.1.8.10
Initialized Data Size2407936
File DescriptionBitDefender Core
Product Version Number10.1.8.10
Product NameSovheu
Company NameG Data Software AG
MIME Typeapplication/octet-stream
Character SetUnicode
Language CodeUnknown (001B)
File Version Number10.1.8.10
File TypeWin32 EXE
Original FilenameCtrq.exe
Legal CopyrightCopyright (C) J Software
SubsystemWindows GUI
Object File TypeExecutable application
Image Version0.0
File Flags(none)
Subsystem Version5.1
Product Version10.1.8.10
Source:
APTNotes
Cyber threat intelligence reports associated with c456d48ece7443187a6036b379967a94.
Loading...
Domains
Domains the malware sample communicates with.
Hosts
Hosts the malware sample communicates with.
HTTP Requests
HTTP requests the malware sample makes.
Registry keys
Registry keys created by the malware sample.
Comments
User comments about c456d48ece7443187a6036b379967a94.
NOTICE: We have updated our privacy terms and conditions in accordance to GDPR. By using our site, you acknowledge that you have read and understand our Privacy Policy. Your use of ThreatMiner’s Products and Services is subject to these policies and terms.