Suspicious
Suspect

07c20a75c1bbc3f27cf0c0c1b6656c5a

PE Executable
|
MD5: 07c20a75c1bbc3f27cf0c0c1b6656c5a
|
Size: 699.39 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Obfuscation Score

Medium

Hash
Hash Value
MD5
07c20a75c1bbc3f27cf0c0c1b6656c5a
Sha1
705c72530f4808659c3067e6074dc50c936c020b
Sha256
055e35129e5bc0e4417ee8aeb8a4020825489da13a5e01962f0e69391e51b5f7
Sha384
faa833780153974875b6cd7d8e5aa50e82db2b4ab4d3cf4858c866ef357f62ffd686f257207713d1f4b5478e1ae3a6f0
Sha512
95091e7e16c0ea30ce0624b06d099ee6e23a6959e562019ba8012b2c978159ced8129da4d7d68239dade9fdefed5b14a783ebd040ba2548aab0f247a7b74ba5d
SSDeep
12288:SPQH2HUaGXiEvWltSUf+7JBPZrafgjzUXwMCOhoUL/kSSOkg4kfyJNuhx:AfHS5ultQOOzUXCOoULMSakK
TLSH
5FE4124EEE171933D7681F3EC973124A09FCC8068462E7971EF698D20E76E5CC999C86

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

YAhV.exe

Full Name

YAhV.exe

EntryPoint

System.Void Phm.Time.x::Main()

Scope Name

YAhV.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

YAhV

Assembly Version

7.5.3.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

2

Main Method

System.Void Phm.Time.x::Main()

Main IL Instruction Count

9

Main IL

call System.Void Phm.Time.x::Ⴈ() newobj System.Void WinFormsJogoDaVelha.Form1::.ctor() ldc.i4 285 ldc.i4 281 call System.Void Phm.Time.x::Ⴓ<System.Windows.Forms.Form>(System.Windows.Forms.Form,System.Int32,System.Int32) ret <null> ldtoken System.Void Phm.Time.x::Main() pop <null> ret <null>

Module Name

YAhV.exe

Full Name

YAhV.exe

EntryPoint

System.Void Phm.Time.x::Main()

Scope Name

YAhV.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

YAhV

Assembly Version

7.5.3.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

2

Main Method

System.Void Phm.Time.x::Main()

Main IL Instruction Count

9

Main IL

call System.Void Phm.Time.x::Ⴈ() newobj System.Void WinFormsJogoDaVelha.Form1::.ctor() ldc.i4 285 ldc.i4 281 call System.Void Phm.Time.x::Ⴓ<System.Windows.Forms.Form>(System.Windows.Forms.Form,System.Int32,System.Int32) ret <null> ldtoken System.Void Phm.Time.x::Main() pop <null> ret <null>

07c20a75c1bbc3f27cf0c0c1b6656c5a (699.39 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙