Suspicious
Suspect

13547b35854fb48feddb1653242ecf06

PE Executable
|
MD5: 13547b35854fb48feddb1653242ecf06
|
Size: 1.16 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
13547b35854fb48feddb1653242ecf06
Sha1
c73affcc7bfb08500418e9c5b891f2104313ea73
Sha256
6b43ebd7427305bd0d27f813d8a8e7d3c2fbd81a1d150d9d71be3b36461ed9c5
Sha384
3b672e99a87cfd519f30cf3a2047193d5f3031fc9d4a83ee8bdf5af56c71147322f0fc1148ebcabe15ac6976ecd25ced
Sha512
5d596d70ff2bcd72a44d9a652d09ade0ae0941ba2cf176919dd6619c80354b8bd9c6ae7bc60d5fcec8fb44ef201d799db95346a89ab948d52cd3c1872df0526b
SSDeep
12288:pV1lmIZoniK50omh69b0Bb0HplLEcnBTWB2AI/x5H/yg2Q6VRXXYINHz+:0Qh2b9/EcS2LJZN2Q6DXJHz
TLSH
6335CF1926DA9194E0BBD734EBB90A1447F0BA1BCA32D35FA14615FDCF5638A21133B3

PeID

Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
Pmd79DsyKxc3.g.resources
Pmd79DsyKxc3.Resources.resources
51148090f16cbd.Resources.resources
5e5888a20
[NBF]root.Data
5e5888a21
[NBF]root.Data
5e5888a210
[NBF]root.Data
5e5888a211
[NBF]root.Data
5e5888a212
[NBF]root.Data
5e5888a213
[NBF]root.Data
5e5888a214
[NBF]root.Data
5e5888a215
[NBF]root.Data
5e5888a216
[NBF]root.Data
5e5888a217
[NBF]root.Data
5e5888a218
[NBF]root.Data
5e5888a219
[NBF]root.Data
5e5888a22
[NBF]root.Data
5e5888a220
[NBF]root.Data
5e5888a221
[NBF]root.Data
5e5888a222
[NBF]root.Data
5e5888a223
[NBF]root.Data
5e5888a224
[NBF]root.Data
5e5888a225
[NBF]root.Data
5e5888a226
[NBF]root.Data
5e5888a227
[NBF]root.Data
5e5888a228
[NBF]root.Data
5e5888a229
[NBF]root.Data
5e5888a23
[NBF]root.Data
5e5888a230
[NBF]root.Data
5e5888a231
[NBF]root.Data
5e5888a232
[NBF]root.Data
5e5888a233
[NBF]root.Data
5e5888a234
[NBF]root.Data
5e5888a235
[NBF]root.Data
5e5888a236
[NBF]root.Data
5e5888a237
[NBF]root.Data
5e5888a24
[NBF]root.Data
5e5888a25
[NBF]root.Data
5e5888a26
[NBF]root.Data
5e5888a27
[NBF]root.Data
5e5888a28
[NBF]root.Data
5e5888a29
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

Pmd79DsyKxc3

Full Name

Pmd79DsyKxc3

EntryPoint

System.Void Pmd79DsyKxc3.cZk5B7ei6rxE::8Rrjex9BN0d()

Scope Name

Pmd79DsyKxc3

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Pmd79DsyKxc3

Assembly Version

1.12.16.214

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1005

Main Method

System.Void Pmd79DsyKxc3.cZk5B7ei6rxE::8Rrjex9BN0d()

Main IL Instruction Count

106

Main IL

nop <null> nop <null> newobj System.Void Pmd79DsyKxc3.cZk5B7ei6rxE::.ctor() stloc.0 <null> newobj System.Void System.Windows.Forms.Form::.ctor() stloc.1 <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> newobj System.Void System.Object::.ctor() ldnull <null> ldstr CreateTab ldc.i4.2 <null> newarr System.Object dup <null> ldc.i4.0 <null> ldstr segmen stelem.ref <null> dup <null> ldc.i4.1 <null> ldloc.0 <null> stelem.ref <null> dup <null> stloc.3 <null> ldnull <null> ldnull <null> ldc.i4.2 <null> newarr System.Boolean dup <null> ldc.i4.1 <null> ldc.i4.1 <null> stelem.i1 <null> dup <null> stloc.s V_4 call System.Object Microsoft.VisualBasic.CompilerServices.NewLateBinding::LateGet(System.Object,System.Type,System.String,System.Object[],System.String[],System.Type[],System.Boolean[]) stloc.s V_5 ldloc.s V_4 ldc.i4.1 <null> ldelem.u1 <null> brtrue.s IL_0051: ldloc.3 br.s IL_006E: ldloc.s V_5 ldloc.3 <null> ldc.i4.1 <null> ldelem.ref <null> call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) ldtoken Pmd79DsyKxc3.cZk5B7ei6rxE call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) call System.Object Microsoft.VisualBasic.CompilerServices.Conversions::ChangeType(System.Object,System.Type) castclass Pmd79DsyKxc3.cZk5B7ei6rxE stloc.0 <null> ldloc.s V_5 call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stloc.2 <null> leave.s IL_00ED: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_6 nop <null> nop <null> ldc.i4 214 stloc.s V_7 br.s IL_00B1: ldloc.s V_7 ldloc.s V_7 ldc.i4.3 <null> mul.ovf <null> stloc.s V_7 ldloc.s V_7 ldc.i4.s 24 cgt <null> stloc.s V_9 ldloc.s V_9 brfalse.s IL_00AF: nop ldc.i4.s 24 stloc.s V_7 ldstr resources/9875193 call System.Byte[] Pmd79DsyKxc3.Jye28tDrne6::bGo93caCiP8eSn(System.String) stloc.s V_8 br.s IL_00BF: ldloc.s V_8 nop <null> nop <null> ldloc.s V_7 ldc.i4.s 24 rem <null> ldc.i4.0 <null> cgt.un <null> stloc.s V_10 ldloc.s V_10 brtrue.s IL_008B: ldloc.s V_7 ldloc.s V_8 castclass System.Byte[] call System.Void Pmd79DsyKxc3.1oqSibA0E3/Pgm27eQxcEa1q4.mt0HN3fk8tc::5Nbxfo6Cg8ErW(System.Byte[]) nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> leave.s IL_00E5: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_11 nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00E5: nop nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00ED: nop nop <null> ret <null>

Module Name

Pmd79DsyKxc3

Full Name

Pmd79DsyKxc3

EntryPoint

System.Void Pmd79DsyKxc3.cZk5B7ei6rxE::8Rrjex9BN0d()

Scope Name

Pmd79DsyKxc3

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Pmd79DsyKxc3

Assembly Version

1.12.16.214

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1005

Main Method

System.Void Pmd79DsyKxc3.cZk5B7ei6rxE::8Rrjex9BN0d()

Main IL Instruction Count

106

Main IL

nop <null> nop <null> newobj System.Void Pmd79DsyKxc3.cZk5B7ei6rxE::.ctor() stloc.0 <null> newobj System.Void System.Windows.Forms.Form::.ctor() stloc.1 <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> newobj System.Void System.Object::.ctor() ldnull <null> ldstr CreateTab ldc.i4.2 <null> newarr System.Object dup <null> ldc.i4.0 <null> ldstr segmen stelem.ref <null> dup <null> ldc.i4.1 <null> ldloc.0 <null> stelem.ref <null> dup <null> stloc.3 <null> ldnull <null> ldnull <null> ldc.i4.2 <null> newarr System.Boolean dup <null> ldc.i4.1 <null> ldc.i4.1 <null> stelem.i1 <null> dup <null> stloc.s V_4 call System.Object Microsoft.VisualBasic.CompilerServices.NewLateBinding::LateGet(System.Object,System.Type,System.String,System.Object[],System.String[],System.Type[],System.Boolean[]) stloc.s V_5 ldloc.s V_4 ldc.i4.1 <null> ldelem.u1 <null> brtrue.s IL_0051: ldloc.3 br.s IL_006E: ldloc.s V_5 ldloc.3 <null> ldc.i4.1 <null> ldelem.ref <null> call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) ldtoken Pmd79DsyKxc3.cZk5B7ei6rxE call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) call System.Object Microsoft.VisualBasic.CompilerServices.Conversions::ChangeType(System.Object,System.Type) castclass Pmd79DsyKxc3.cZk5B7ei6rxE stloc.0 <null> ldloc.s V_5 call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stloc.2 <null> leave.s IL_00ED: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_6 nop <null> nop <null> ldc.i4 214 stloc.s V_7 br.s IL_00B1: ldloc.s V_7 ldloc.s V_7 ldc.i4.3 <null> mul.ovf <null> stloc.s V_7 ldloc.s V_7 ldc.i4.s 24 cgt <null> stloc.s V_9 ldloc.s V_9 brfalse.s IL_00AF: nop ldc.i4.s 24 stloc.s V_7 ldstr resources/9875193 call System.Byte[] Pmd79DsyKxc3.Jye28tDrne6::bGo93caCiP8eSn(System.String) stloc.s V_8 br.s IL_00BF: ldloc.s V_8 nop <null> nop <null> ldloc.s V_7 ldc.i4.s 24 rem <null> ldc.i4.0 <null> cgt.un <null> stloc.s V_10 ldloc.s V_10 brtrue.s IL_008B: ldloc.s V_7 ldloc.s V_8 castclass System.Byte[] call System.Void Pmd79DsyKxc3.1oqSibA0E3/Pgm27eQxcEa1q4.mt0HN3fk8tc::5Nbxfo6Cg8ErW(System.Byte[]) nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> leave.s IL_00E5: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_11 nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00E5: nop nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00ED: nop nop <null> ret <null>

13547b35854fb48feddb1653242ecf06 (1.16 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙