General
Structural Analysis
Config.0
Yara Rules91
Sync
Community
Summary by MalvaGPT
Characteristics
Symbol Ofbuscation Score
High
|
Hash | Hash Value |
|---|---|
| MD5 | 1fb4fd632d4161c7d4f1ffbee86aebab
|
| Sha1 | 87d86f7984578e44d8a1cd3849b21d2f1a1bd03b
|
| Sha256 | f14d95afa835bd5afc5821eb262b45f596a4d6ed3326a9a7c4838cc0b50b40eb
|
| Sha384 | 1e056e0e3152898eaa2ea7de4294525af1fbb18321c5df48f10753301c642760b90dbb750f122e258bc61e01800914c3
|
| Sha512 | 65a9f649c065eb2f39caf4c6356a308b582a559f5d0b4eff85d1d5764c7cc137301a5830f37b5a542a5ca747044d4e68b06cf3f778f6f5ba66bd168116efede0
|
| SSDeep | 49152:1bIxi23JrU5aTYF+1QtiDKMqvGijfTDs+e6kjxUhbwdgjQ4cqVqggH:1bIU2J4z+1QtiDKMqvGijfTDs+e6kjx9
|
| TLSH | AA95AD20B3E81EAEEAF69B3AD87145601273FC45A732C78F535026BF1D63741AD61722
|
PeID
Microsoft Visual C++ v6.0 DLL
File Structure
1fb4fd632d4161c7d4f1ffbee86aebab
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
^obuhH!
Mknoy
.text
.rsrc
.Invalid
Wrong
.Xerin
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
Ionic.Zip.WinFormsSelfExtractorStub.resources
$this.Icon
[NBF]root.IconData
Systems.Properties.Resources.resources
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
Ionic.Zip.Forms.PasswordDialog.resources
$this.Icon
[NBF]root.IconData
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | Systemss.exe |
| Full Name | Systemss.exe |
| EntryPoint | System.Void ud5baf7201f3462eafaa50afdb214uc3.e45839f2450ce2ff0c580f824a437aaa::e4274ce9ca93ace58cf25f7b3f50a9b0(System.String[]) |
| Scope Name | Systemss.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | Systemss |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.7.2 |
| Total Strings | 118 |
| Main Method | System.Void ud5baf7201f3462eafaa50afdb214uc3.e45839f2450ce2ff0c580f824a437aaa::e4274ce9ca93ace58cf25f7b3f50a9b0(System.String[]) |
| Main IL Instruction Count | 0 |
| Main IL | |
1fb4fd632d4161c7d4f1ffbee86aebab (1.91 MB)
File Structure
1fb4fd632d4161c7d4f1ffbee86aebab
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
^obuhH!
Mknoy
.text
.rsrc
.Invalid
Wrong
.Xerin
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
Ionic.Zip.WinFormsSelfExtractorStub.resources
$this.Icon
[NBF]root.IconData
Systems.Properties.Resources.resources
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_MANIFEST
ID:0001
ID:1033
Ionic.Zip.Forms.PasswordDialog.resources
$this.Icon
[NBF]root.IconData
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.