video.exe

Shorokoff

Publisher:
Shorokoff

Product:
Shorokoff

Version:
5.01

MD5:
4a476929917c6b2979e914cb073751e1

SHA-1:
38a88a7f1ca573b590e7d6ef777fbf7a8bd79f6a

SHA-256:
383f441b22eaf7f3b1b8bb002a3175eba10f917e3ed122a9a67c54e639ef73d7

Scanner detections:
0 / 68

Status:
Clean (as of last analysis)

Analysis date:
12/23/2024 7:20:18 PM UTC  (today)

File size:
808 KB (827,392 bytes)

Product version:
5.01

Copyright:
Shorokoff

Trademarks:
Shorokoff

Original file name:
Shorokoff.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\microsoft\windows\inetcache\ie\{random}\video.exe

File PE Metadata
Compilation timestamp:
3/3/2016 10:07:41 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
12288:ZQxhIZnWQTVrERDolkE1ZgiSyjarwtziI4:ixhIAQTVjZgRyjaA2I

Entry address:
0x3DB4

Entry point:
68, B4, 43, 40, 00, E8, F0, FF, FF, FF, 00, 00, 48, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 15, 91, 81, 43, E2, 01, F8, 46, 8F, 1C, 7B, F6, CC, 15, FA, 94, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 00, 00, 00, 00, 53, 68, 6F, 72, 6F, 6B, 6F, 66, 66, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 90, 00, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 02, 00, 00, 00, 6B, D3, 14, 36, E0, 1C, 84, 48, 97, 07, 55, 20, B7, E0, 7E, 1A, 01, 00, 00, 00, 98, 00, 00, 00...
 
[+]

Entropy:
6.1190

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
636 KB (651,264 bytes)

The file video.exe has been seen being distributed by the following URL.

Scan video.exe - Powered by Reason Core Security