Suspicious
Suspect

011000bfbbfdbf4421777d4de49c91af

PE Executable
|
MD5: 011000bfbbfdbf4421777d4de49c91af
|
Size: 1.21 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
011000bfbbfdbf4421777d4de49c91af
Sha1
40251d43434648219657b2705367b9240aaf69a6
Sha256
47b707ee7aeb49ae4d8e8a7abb7aa067a49f7ec9a804aa7c21d2c563cf2cb50f
Sha384
99e7f00243343152abab51f67048c990454f486b28a4cb71c76bbc144021e9b8571ff2e535734703b227f3c6916a8b3a
Sha512
c2f753a3860c5a57e2f29a590de61922466fa2dab04dadafe691c2d3af723107eeaebb940cdd4ba164413ee1136d85cb1b1f1d51682b952a6b9a67f5e5bd87f4
SSDeep
12288:fB2N7hWVzhQtAh9kedxIdFt6pZwas4D/1xifEaSRIU1zDWZF3+dfJG2Bhfk4Kq9d:fB27y9P9HxaFWRG8DpfJXZTu/H8jP
TLSH
1E4542342EEA102AF173BF7D8AE47596DA5EBAA33707985D10B103C60723A42DDD153E

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

g5JglfWcECT2QmOz

Full Name

g5JglfWcECT2QmOz

EntryPoint

System.Void 74V.PEs::627()

Scope Name

g5JglfWcECT2QmOz

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

N1qmOJsslaLSi

Assembly Version

1.2.6.1

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

1779

Main Method

System.Void 74V.PEs::627()

Main IL Instruction Count

5

Main IL

nop <null> ldsfld ab2.2J2 74V.PEs::792 callvirt System.Void ab2.2J2::nC6() nop <null> ret <null>

Module Name

g5JglfWcECT2QmOz

Full Name

g5JglfWcECT2QmOz

EntryPoint

System.Void 74V.PEs::627()

Scope Name

g5JglfWcECT2QmOz

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

N1qmOJsslaLSi

Assembly Version

1.2.6.1

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

1779

Main Method

System.Void 74V.PEs::627()

Main IL Instruction Count

5

Main IL

nop <null> ldsfld ab2.2J2 74V.PEs::792 callvirt System.Void ab2.2J2::nC6() nop <null> ret <null>

011000bfbbfdbf4421777d4de49c91af (1.21 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙