Suspicious
Suspect

23afafad5bf2bd916a914d0cb957ad4e

PE Executable
|
MD5: 23afafad5bf2bd916a914d0cb957ad4e
|
Size: 325.12 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
23afafad5bf2bd916a914d0cb957ad4e
Sha1
20bc9f5a2e7d7bc7370b135ced6c797a39c331d7
Sha256
a32a3ad86f79de103387c8a3da630c1d288d9827912a4afc45165cedddf82d32
Sha384
f0cd5a681fbb1474380c883783cffe17ca51fa91898cb2290667c47d3a10c5bdcb5c77d73fe0ab2afda06d55b61075a5
Sha512
78164afab6a0e28ee496bd725f5c51ca1095a0b4a40f3647a9e35c241ee67daf17fa043889320abce74ee6bab7ea1999280754d69608207f48d708fd865f8dcb
SSDeep
6144:ZSi1rh5YkOnw1OBI2D7ew6q9r4m6JYiGR7FMbD782xwtRd++yhDqfl:T13Yk6BIU7Gm6OiGhFQBw5++yAfl
TLSH
81642318DAAC5730D6974A3F04E69B1CCAF5C2884DB5EB15B44F280D3B46F53C693672

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Informations
Name
Value
Module Name

Oxppspff.exe

Full Name

Oxppspff.exe

EntryPoint

System.Void Oxppspff.Gxfzcpr::Main()

Scope Name

Oxppspff.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Oxppspff

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

4

Main Method

System.Void Oxppspff.Gxfzcpr::Main()

Main IL Instruction Count

2

Main IL

call System.Void Oxppspff.D.Vuinumczcld::Xmbhamk() ret <null>

Module Name

Oxppspff.exe

Full Name

Oxppspff.exe

EntryPoint

System.Void Oxppspff.Gxfzcpr::Main()

Scope Name

Oxppspff.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Oxppspff

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

4

Main Method

System.Void Oxppspff.Gxfzcpr::Main()

Main IL Instruction Count

2

Main IL

call System.Void Oxppspff.D.Vuinumczcld::Xmbhamk() ret <null>

Artefacts
Name
Value
Embedded Resources

0

Suspicious Type Names (1-2 chars)

0

23afafad5bf2bd916a914d0cb957ad4e (325.12 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙