General
Structural Analysis
Config.0
Yara Rules16
Sync
Community
Summary by MalvaGPT
Characteristics
Symbol Ofbuscation Score
Very high
|
Hash | Hash Value |
|---|---|
| MD5 | 1b831f50793bd6c0c2dde2a96b70a9fa
|
| Sha1 | 312cbd44be4c2cf89680505006acbf542e0db399
|
| Sha256 | f0bc465a97815582b40e26b96e601129520a50682b5519e785e29b297b8b1fa9
|
| Sha384 | f30918dbdb62e8f1e4bc57eb0154475e3b0dfb82eeb87730a816051e5e8119f64ad83315a0ec16a4668b96920dbe75b0
|
| Sha512 | 9dd661823072b928cb71c09b574bfa06db3032b5f4918d0ce4073fc20e4dbce5cc664d46f7da204acdf46de259e5260889765abcd307834e8f529d62d1c75636
|
| SSDeep | 12288:RHQtcQAcqzFODcoXmvP4vPj2QsckSEvK15UFo8Sk:dQ2Zce0uoHWWGFIk
|
| TLSH | 8BC4582A7FA90814ED90087D493E2E197B34A1F65706B3C77342A2765E86DDCDE6C0E3
|
File Structure
1b831f50793bd6c0c2dde2a96b70a9fa
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
Az-?Z
.text
.rsrc
)
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
xr1sr7qlzam62x
kv5wb0nvwaultc2kge39ffzqbd0e
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | Client.exe |
| Full Name | Client.exe |
| EntryPoint | System.Void UDwkSDviHXxdnSAbVjsyd.eWrKzxAWWxkqAFrQpYZfTie::FDZGvLBAGVeLRR(System.String[]) |
| Scope Name | Client.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | Client |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.0 |
| Total Strings | 43 |
| Main Method | System.Void UDwkSDviHXxdnSAbVjsyd.eWrKzxAWWxkqAFrQpYZfTie::FDZGvLBAGVeLRR(System.String[]) |
| Main IL Instruction Count | 0 |
| Main IL | |
1b831f50793bd6c0c2dde2a96b70a9fa (583.68 KB)
File Structure
1b831f50793bd6c0c2dde2a96b70a9fa
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
Az-?Z
.text
.rsrc
)
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
xr1sr7qlzam62x
kv5wb0nvwaultc2kge39ffzqbd0e
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.