Suspicious
Suspect

022ee7641552840d6f3bec848e3f542e

PE Executable
|
MD5: 022ee7641552840d6f3bec848e3f542e
|
Size: 759.81 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
022ee7641552840d6f3bec848e3f542e
Sha1
bb8bfa97781a7ffaa7e247048af2f33919787834
Sha256
56b823a94c3c6723b8ddc90cee68c6d71588144d2e01440b6802d61dac0ad148
Sha384
24e55530f93c34d1f7666dd133b43fb7fc18ea9ee2e98f69357541994299e4ba20d58b9d03b0f72f2aabfcd5b1dc42da
Sha512
35ccfa913096b500b8066e7ab0fe83c43b63654d0ef316f742ee2d50334a08784db7a5a96bf0094e8eceb7a1325fda7b90b862cadcdc2858ca1f1bec1dae8144
SSDeep
12288:URiSflQipL/IlQGNbtDX8r9YFeMH3anT7Z1rpvHn+NTDmnJLHYXB3edyxBb68vbc:UR3KipL/wNbtDT8MKn51rRGTDCLw9FvE
TLSH
6BF4021A135AEF02E8A21BF404B1E37513B4AE9DB910D3428FFAADFF78353516956243

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
TrayManager.IconOrganizerForm.resources
TrayManager.Properties.Resources.resources
Idtq
[NBF]root.Data
[NBF]root.Data-preview.png
fee
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: BcjT.pdb

Module Name

BcjT.exe

Full Name

BcjT.exe

EntryPoint

System.Void TrayManager.Program::Main()

Scope Name

BcjT.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

BcjT

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

191

Main Method

System.Void TrayManager.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void TrayManager.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Module Name

BcjT.exe

Full Name

BcjT.exe

EntryPoint

System.Void TrayManager.Program::Main()

Scope Name

BcjT.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

BcjT

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

191

Main Method

System.Void TrayManager.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void TrayManager.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

022ee7641552840d6f3bec848e3f542e (759.81 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙