Suspect
2c3c1b8c3e3c4b909ee2cbe4759526eb
PE Executable | MD5: 2c3c1b8c3e3c4b909ee2cbe4759526eb | Size: 871.94 KB | application/x-dosexec
PE Executable
MD5: 2c3c1b8c3e3c4b909ee2cbe4759526eb
Size: 871.94 KB
application/x-dosexec
Summary by MalvaGPT
Characteristics
Symbol Ofbuscation Score
Very low
Hash | Hash Value |
---|---|
MD5 | 2c3c1b8c3e3c4b909ee2cbe4759526eb
|
Sha1 | 2db88586e2584b2e5fed100c103dac816bec95e3
|
Sha256 | 1608d1238888d30c34f6d72b2874de8fb543126eaa75973b1a75cba95094a973
|
Sha384 | 20ecf7ad109f342b487ae99c5277d536023b280b568210794fd99990b08d9d5a6af28acc70a3fb743fdb804396c883b5
|
Sha512 | 8bde18cb622c52b144027d8bcac126af9ce6d3c192918738c4550eef6ebb17dbdd17ed5cab0417fb3f610a730273bcc80cd619dd4df5e9c433937fbdb98c817a
|
SSDeep | 24576:pzeWOf4D+4QDnW3TVzK1PlVo1eRIcnE1kBz:pbQG+NbW3TVW1Pvo1eRIcE2J
|
TLSH | 7A05F144A653C7D1C1D107FC48B1EF78127B4E986821DF7A9ACEBEE73F266041E80656
|
File Structure
2c3c1b8c3e3c4b909ee2cbe4759526eb
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
ticTacToe.Form1.resources
$this.Icon
[NBF]root.IconData
htta
[NBF]root.Data
pictureBox1.Image
[NBF]root.Data
[NBF]root.Data-preview.png
Core.Properties.Resources.resources
Ynfi
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
Name0 | Value |
---|---|
Info | PE Detect: PeReader OK (file layout) |
Info | PDB Path: ZOfv.pdb |
Module Name | ZOfv.exe |
Full Name | ZOfv.exe |
EntryPoint | System.Void ticTacToe.Program::Main() |
Scope Name | ZOfv.exe |
Scope Type | ModuleDef |
Kind | Windows |
Runtime Version | v4.0.30319 |
Tables Header Version | 512 |
WinMD Version | <null> |
Assembly Name | ZOfv |
Assembly Version | 1.0.0.0 |
Assembly Culture | <null> |
Has PublicKey | False |
PublicKey Token | <null> |
Target Framework | .NETFramework,Version=v4.5 |
Total Strings | 155 |
Main Method | System.Void ticTacToe.Program::Main() |
Main IL Instruction Count | 10 |
Main IL | nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void ticTacToe.Form1::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null> |
2c3c1b8c3e3c4b909ee2cbe4759526eb (871.94 KB)
File Structure
2c3c1b8c3e3c4b909ee2cbe4759526eb
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
ticTacToe.Form1.resources
$this.Icon
[NBF]root.IconData
htta
[NBF]root.Data
pictureBox1.Image
[NBF]root.Data
[NBF]root.Data-preview.png
Core.Properties.Resources.resources
Ynfi
[NBF]root.Data
[NBF]root.Data-preview.png
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.