hs.exe

QQQQ

Product:
QQQQ

Version:
1.0.0.0

MD5:
8ff9a6653fddb8fa2e89cfe01b9a50a2

SHA-1:
bc77170e1146dbd3900e215f4b8ac6c803dad21e

SHA-256:
cb382e50023060d1051823402fc1edf63c3661e6085183dd669cae6a4969796d

Scanner detections:
1 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
11/27/2024 8:52:45 AM UTC  (today)

Scan engine
Detection
Engine version

avast!
Win32:Malware-gen
150717-0

File size:
197.5 KB (202,240 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
QQQQ.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\hs.exe

File PE Metadata
Compilation timestamp:
4/19/2016 4:21:07 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:aHBCQvLVPx5iQWxgyJyOqvmZ7VIjvbCJnIpRM0G7lU00MT5Y8WD5AkM5GB0SKkjk:DQj0QsoOsmZ7AvbDS7lGMNY8DkM5GB0

Entry address:
0x32AAE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.5858

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
195 KB (199,680 bytes)

The file hs.exe has been seen being distributed by the following URL.

Scan hs.exe - Powered by Reason Core Security