Suspicious
Suspect

1b9574f0ac639c64b7eb8256cc04719a

PE Executable
|
MD5: 1b9574f0ac639c64b7eb8256cc04719a
|
Size: 861.7 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Low

Hash
Hash Value
MD5
1b9574f0ac639c64b7eb8256cc04719a
Sha1
3c9384f720b51b8629411a77b9979a01042cd68b
Sha256
e6b33ea90e7abbf2c7631a63d8babde22d77d112d4f670ec9c5e8f841ec51a9a
Sha384
14b11b45948143c7635768f505bb42cad0e3071083ecbcef38a844a3e07f2f0227ab1fc68c454052dc6f8ff52f1513af
Sha512
57e3b444cb25206e103132755a4b457c601bdd39337119d9d82c7fd39e7b63f56553fe5d48c4bad3739f5a3d85eb2edc776a0051bcba887d2800603646c4e424
SSDeep
24576:fwqwaHRc9IIj2g+JApZrjcTiWRQHiDZs1i2Xe2g9vz:fwqw01IidAplx0NVWXe2g9L
TLSH
57052303CBA988B5E85E6735B8308F1B05725AC9B014EF3B6D57928E7D533D908BB760

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
Zeonvetd.Properties.Resources.resources
Fsieqbtrrh
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

Lwdlkmzuz.exe

Full Name

Lwdlkmzuz.exe

EntryPoint

System.Void Zeonvetd.Erhdbctg::Main()

Scope Name

Lwdlkmzuz.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Lwdlkmzuz

Assembly Version

1.0.90.11472

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

9

Main Method

System.Void Zeonvetd.Erhdbctg::Main()

Main IL Instruction Count

5

Main IL

newobj System.Void Zeonvetd.Clhfbupydhv::.ctor() call System.Byte[] Zeonvetd.Clhfbupydhv::Xvbjkmuxkxw() call System.Byte[] Zeonvetd.Tolsapxq::Yttkcc(System.Byte[]) call System.Void Zeonvetd.Pyipeptmn::Xyojeqy(System.Byte[]) ret <null>

Module Name

Lwdlkmzuz.exe

Full Name

Lwdlkmzuz.exe

EntryPoint

System.Void Zeonvetd.Erhdbctg::Main()

Scope Name

Lwdlkmzuz.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Lwdlkmzuz

Assembly Version

1.0.90.11472

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

9

Main Method

System.Void Zeonvetd.Erhdbctg::Main()

Main IL Instruction Count

5

Main IL

newobj System.Void Zeonvetd.Clhfbupydhv::.ctor() call System.Byte[] Zeonvetd.Clhfbupydhv::Xvbjkmuxkxw() call System.Byte[] Zeonvetd.Tolsapxq::Yttkcc(System.Byte[]) call System.Void Zeonvetd.Pyipeptmn::Xyojeqy(System.Byte[]) ret <null>

1b9574f0ac639c64b7eb8256cc04719a (861.7 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙