Suspicious
Suspect

3314345f2f7a50789c3790b1e6e86d7f

PE Executable
|
MD5: 3314345f2f7a50789c3790b1e6e86d7f
|
Size: 570.37 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very low

Hash
Hash Value
MD5
3314345f2f7a50789c3790b1e6e86d7f
Sha1
e1d04c077243c42c2916ac87766159721d8dc30f
Sha256
17d70d796220ac7bef6a22366d01799a94ac7d2e71f8d7fc5e591e02763ed04d
Sha384
d8eb841249282503c3bdb121501ca1b76037746011c39271586c5b3a7d1b6490ef7de2c2ceef3f3c323091da26dabe8b
Sha512
919cfdd77ef8548376f6348ec154175892643f6aa49d42f985bdbd89d5229ac7c1c4738147f90688a9836b4e74e60648f6c0a8677a0343b9899b61a020032bb7
SSDeep
12288:cN5I3/VLhZ+Ph9IKFnUykCrak8aBoLqQHyKa1/nkJsH4U:q5INLhKIKFnBkC2kBBoLqayFkJsYU
TLSH
F0C401186262EF62D6E907F41420D27113F67DEEE812D3078EDAFCEB78147493892697

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
ModernAdapter.MainForm.resources
ModernAdapter.Properties.Resources.resources
CONb
SL
Informations
Name
Value
Module Name

LhlB.exe

Full Name

LhlB.exe

EntryPoint

System.Void ModernAdapter.Program::Main()

Scope Name

LhlB.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

LhlB

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

617

Main Method

System.Void ModernAdapter.Program::Main()

Main IL Instruction Count

12

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> call System.Void ModernAdapter.Program::InitializeApplication() nop <null> newobj System.Void ModernAdapter.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Module Name

LhlB.exe

Full Name

LhlB.exe

EntryPoint

System.Void ModernAdapter.Program::Main()

Scope Name

LhlB.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

LhlB

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

617

Main Method

System.Void ModernAdapter.Program::Main()

Main IL Instruction Count

12

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> call System.Void ModernAdapter.Program::InitializeApplication() nop <null> newobj System.Void ModernAdapter.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Artefacts
Name
Value
Embedded Resources

8

Suspicious Type Names (1-2 chars)

0

3314345f2f7a50789c3790b1e6e86d7f (570.37 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
ModernAdapter.MainForm.resources
ModernAdapter.Properties.Resources.resources
CONb
SL
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
Embedded Resources

8

3314345f2f7a50789c3790b1e6e86d7f

Suspicious Type Names (1-2 chars)

0

3314345f2f7a50789c3790b1e6e86d7f

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙