Analysis Date2015-09-16 23:43:00
MD5fce414ea8d2b90133317e35734d5fe6c
SHA104b096d46478125cbad6c27dd7271160f00e0efb

Static Details:

File typePE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly
Section.text md5: f48f1f2bb45abce5ab9e589d91ad16b5 sha1: 328aff71f69418045a46bff22b53697081d174d6 size: 1506304
Section.rsrc md5: 8f4114bea5e58b7ee280c49441f55c5f sha1: 6209f12a244430d629a3faa25a7b21a4a948e95d size: 2048
Section.reloc md5: 5c1603643b4a146a2e0b8706bdf01158 sha1: a37e9dcc50b04e0ba3cc999a245aed4062932047 size: 1024
Timestamp2015-09-02 19:36:27
VersionLegalCopyright: Copyright ©MyImgur Programming Team.
Assembly Version: 5.11.2.0
InternalName: rt2.exe
FileVersion: 5.11.2.0
CompanyName: MyImgur Programming Team.
LegalTrademarks: MyImgur™. All rights reserved.
Comments: An application to upload images directly to Imgur.
ProductName: MyImgur
ProductVersion: 5.11.2.0
FileDescription: MyImgur
OriginalFilename: rt2.exe
PackerMicrosoft Visual C# v7.0 / Basic .NET
PEhash85d92b8c61af0cc8f960f0ac72521cd308ac2d8e
IMPhashf34d5f2d4577ed6d9ceec516c1f5a744
AVRisingno_virus
AVCA (E-Trust Ino)no_virus
AVF-SecureGen:Variant.Kazy.289581
AVDr. WebTrojan.Inject2.301
AVClamAVno_virus
AVArcabit (arcavir)Gen:Variant.Kazy.289581
AVBullGuardGen:Variant.Kazy.289581
AVPadvishno_virus
AVVirusBlokAda (vba32)no_virus
AVCAT (quickheal)no_virus
AVTrend Microno_virus
AVKasperskyTrojan.Win32.Generic
AVZillya!no_virus
AVEmsisoftGen:Variant.Kazy.289581
AVIkarusBackdoor.Win32.DarkKomet
AVFrisk (f-prot)no_virus
AVAuthentiumW32/Trojan.IEYQ-6901
AVMalwareBytesBackdoor.Agent.MITGen
AVMicroWorld (escan)Gen:Variant.Kazy.289581
AVMicrosoft Security Essentialsno_virus
AVK7no_virus
AVBitDefenderGen:Variant.Kazy.289581
AVFortinetMSIL/Dropper.OSS!tr
AVSymantecno_virus
AVGrisoft (avg)Dropper.Generic9.CB
AVEset (nod32)MSIL/Kryptik.VL
AVAlwil (avast)Agent-ATC [Trj]
AVAd-AwareGen:Variant.Kazy.289581
AVTwisterno_virus
AVAvira (antivir)TR/Dropper.MSIL.196384
AVMcafeeno_virus

Runtime Details:

Screenshot

Process
↳ C:\malware.exe

Network Details:


Raw Pcap

Strings