Suspect
0b51bdab3982ceda407dbed20495666c
PE Executable | MD5: 0b51bdab3982ceda407dbed20495666c | Size: 32.77 KB | application/x-dosexec
PE Executable
MD5: 0b51bdab3982ceda407dbed20495666c
Size: 32.77 KB
application/x-dosexec
Summary by MalvaGPT
Characteristics
Symbol Obfuscation Score
Low
|
Hash | Hash Value |
|---|---|
| MD5 | 0b51bdab3982ceda407dbed20495666c
|
| Sha1 | 4fad5c6c2b00487feab3d0bac5e4310fb2248cea
|
| Sha256 | 59cf8092c4041feb9527edb9786a5a77dc261b448ee25bcc9d1dc2f3bbe7a88f
|
| Sha384 | a22972e6b4aae052973e4b690657219a62fdd7a8db082b05885d89e94fff21db2c8b92b797d90efd13a4cd8e823dd38a
|
| Sha512 | 4b865c178d462e793fe3e5a49d728f6b5d00d7ddb708276fc530326d443ff0389f2e2915a08e119f0d23080a2af0f8758feea82b9f6cb3dbc9d03f94f563c9ca
|
| SSDeep | 384:uLrcvjFOcHc68cSzHPsINFzzWK4AIzHpu3Hi2VO4akaQkLDOHYCFXPzlpmIMxTZS:4rcvjFOc/8cSPHxpV7WmF7/71Z
|
| TLSH | FBE2E70533AA4703C66D17B90866471647F1CE43453BFB6F5CD9B0ED2E7B7808A42AAB
|
PeID
.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
0b51bdab3982ceda407dbed20495666c
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0002
ID:0
ID:0003
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | k.exe |
| Full Name | k.exe |
| EntryPoint | System.Void k.OK::main() |
| Scope Name | k.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v2.0.50727 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | k |
| Assembly Version | 0.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | <null> |
| Total Strings | 293 |
| Main Method | System.Void k.OK::main() |
| Main IL Instruction Count | 5 |
| Main IL | newobj System.Void k.OK::.ctor() stloc.0 <null> ldloc.0 <null> callvirt System.Void k.OK::Ncn() ret <null> |
| Module Name | k.exe |
| Full Name | k.exe |
| EntryPoint | System.Void k.OK::main() |
| Scope Name | k.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v2.0.50727 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | k |
| Assembly Version | 0.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | <null> |
| Total Strings | 293 |
| Main Method | System.Void k.OK::main() |
| Main IL Instruction Count | 5 |
| Main IL | newobj System.Void k.OK::.ctor() stloc.0 <null> ldloc.0 <null> callvirt System.Void k.OK::Ncn() ret <null> |
0b51bdab3982ceda407dbed20495666c (32.77 KB)
File Structure
0b51bdab3982ceda407dbed20495666c
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0002
ID:0
ID:0003
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.