Suspicious
Suspect

3317f3bf5953e9e87e65aeb8b0d702ac

PE Executable
|
MD5: 3317f3bf5953e9e87e65aeb8b0d702ac
|
Size: 70.14 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
3317f3bf5953e9e87e65aeb8b0d702ac
Sha1
3d6d5ae2197544106a43554d813f2dde6d1b1426
Sha256
4af4a77879e5b2f8ab53358e50756a98f77f57173c393914209c8d4e72c8f40c
Sha384
9c0113b6758a5c9ca0f2dd7be90abee5438e1e8fc5006c434c0e02eb369ddd41a6c93f2700a61497447adeb0ae9d1557
Sha512
6cca3b8acfdebf600bab56ae582799af5a22529f44684b40548dfbe119ae38d0e2bdad5d2de416d836e8e1ce8d6fe15b9fa7482b86e1f19e25a9c142cdf86113
SSDeep
1536:LW+iW3sXoX2yMlIvgxOL58jUuv4JUK+miSVuM+or2kF:LW+t9X2Cf5yv4JUK+7ScHTkF
TLSH
1A633B19778845DBE5BC42B3F87B010012E5EDBEE6D2A72F69D6F26504B37A20207D1B

PeID

Microsoft Visual C++ DLL
Microsoft Visual C++ v6.0
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_ICON
ID:0001
ID:0
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0005
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
XwbJ
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

Nwhglcz.exe

Full Name

Nwhglcz.exe

EntryPoint

System.Void Ykaemtakg.Zhfwoovn::Main()

Scope Name

Nwhglcz.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Nwhglcz

Assembly Version

1.0.2117.14704

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

12

Main Method

System.Void Ykaemtakg.Zhfwoovn::Main()

Main IL Instruction Count

3

Main IL

newobj System.Void a::.ctor() pop <null> ret <null>

3317f3bf5953e9e87e65aeb8b0d702ac (70.14 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_ICON
ID:0001
ID:0
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0005
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
XwbJ
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙