stub.exe

{B1A3E942-0C97-49A3-8C63-10C008633F19}

Publisher:

Version:
0.0.0.0

MD5:
68a3c9ea4721e6f5a450ffd56c491a4b

SHA-1:
0f371bc0b9ac1a7ba7410a82adf13d008e554976

SHA-256:
20deaa58bc43fa32b25f5c969ca844a40b71b28a8ddcf763b2f2cff9ba09c045

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
4/26/2024 8:19:52 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
MSIL/Injector.CIU trojan
6.3.12010.0

File size:
443.1 KB (453,696 bytes)

Product version:
0.0.0.0

Original file name:
tmp77A6.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\stub.exe

Digital Signature
Authority:
{B1A3E942-0C97-49A3-8C63-10C008633F19}

Valid from:
11/26/2013 5:15:56 PM

Valid to:
11/26/2014 11:15:56 PM

Subject:
CN={B1A3E942-0C97-49A3-8C63-10C008633F19}

Issuer:
CN={B1A3E942-0C97-49A3-8C63-10C008633F19}

Serial number:
170631A2653871824A2B0B818369A5C6

File PE Metadata
Compilation timestamp:
12/5/2013 6:11:11 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
12288:whXjV9wyxr13k0GYZvHzy55HQHHXR9zhqOr6iyY1Ua+wt:wxV9VhU0xLybcHB9zB6iyKUaHt

Entry address:
0x6FCBE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.4873

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
439.5 KB (450,048 bytes)

Scan stub.exe - Powered by Reason Core Security