xc3.exe

Test

Microsoft

Publisher:
Microsoft

Product:
Test

Version:
1.0.0.0

MD5:
214dca63fd223f6785bd3f01847b394d

SHA-1:
b7e9851279ebc139113f384db375cf4f856d100c

SHA-256:
5e49987b5e31e75a1e92afe058acfebf6a492a71e233f4ba4fbdfe671455bcba

Scanner detections:
2 / 68

Status:
Inconclusive  (not enough data for an accurate detection)

Analysis date:
12/26/2024 6:11:01 AM UTC  (today)

Scan engine
Detection
Engine version

ESET NOD32
MSIL/GameHack.GQ potentially unsafe (variant)
10.13872

F-Prot
W32/MSIL_Bladabindi.AE.gen
v6.4.7.1.166

File size:
38.5 KB (39,424 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2016

Original file name:
Test.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\xc3.exe

File PE Metadata
Compilation timestamp:
7/27/2016 5:53:45 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:Vp4lX7FwM8/T6pSufS1Stdv0mnlRJRJRwsMwTxU2H5QhLk24jXPl9Y73XEWzIv0x:V8XmIcj4dv0+4sMUxUwuV2XP5vHxq

Entry address:
0x7D6E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.1877

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
23.5 KB (24,064 bytes)

The file xc3.exe has been seen being distributed by the following URL.

Scan xc3.exe - Powered by Reason Core Security