Suspicious
Suspect

0b51bdab3982ceda407dbed20495666c

PE Executable
|
MD5: 0b51bdab3982ceda407dbed20495666c
|
Size: 32.77 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Obfuscation Score

Low

Hash
Hash Value
MD5
0b51bdab3982ceda407dbed20495666c
Sha1
4fad5c6c2b00487feab3d0bac5e4310fb2248cea
Sha256
59cf8092c4041feb9527edb9786a5a77dc261b448ee25bcc9d1dc2f3bbe7a88f
Sha384
a22972e6b4aae052973e4b690657219a62fdd7a8db082b05885d89e94fff21db2c8b92b797d90efd13a4cd8e823dd38a
Sha512
4b865c178d462e793fe3e5a49d728f6b5d00d7ddb708276fc530326d443ff0389f2e2915a08e119f0d23080a2af0f8758feea82b9f6cb3dbc9d03f94f563c9ca
SSDeep
384:uLrcvjFOcHc68cSzHPsINFzzWK4AIzHpu3Hi2VO4akaQkLDOHYCFXPzlpmIMxTZS:4rcvjFOc/8cSPHxpV7WmF7/71Z
TLSH
FBE2E70533AA4703C66D17B90866471647F1CE43453BFB6F5CD9B0ED2E7B7808A42AAB

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0002
ID:0
ID:0003
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

k.exe

Full Name

k.exe

EntryPoint

System.Void k.OK::main()

Scope Name

k.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v2.0.50727

Tables Header Version

512

WinMD Version

<null>

Assembly Name

k

Assembly Version

0.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

<null>

Total Strings

293

Main Method

System.Void k.OK::main()

Main IL Instruction Count

5

Main IL

newobj System.Void k.OK::.ctor() stloc.0 <null> ldloc.0 <null> callvirt System.Void k.OK::Ncn() ret <null>

Module Name

k.exe

Full Name

k.exe

EntryPoint

System.Void k.OK::main()

Scope Name

k.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v2.0.50727

Tables Header Version

512

WinMD Version

<null>

Assembly Name

k

Assembly Version

0.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

<null>

Total Strings

293

Main Method

System.Void k.OK::main()

Main IL Instruction Count

5

Main IL

newobj System.Void k.OK::.ctor() stloc.0 <null> ldloc.0 <null> callvirt System.Void k.OK::Ncn() ret <null>

0b51bdab3982ceda407dbed20495666c (32.77 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙