Suspicious
Suspect

345538c8b0b325c4d96fc91e31cfb676

PE Executable
|
MD5: 345538c8b0b325c4d96fc91e31cfb676
|
Size: 1.05 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
345538c8b0b325c4d96fc91e31cfb676
Sha1
88c82f2e362538902be3975cc2276483932b2f13
Sha256
70b4895b9344e87470809850e75fb9355d3d46ec799221c1232c4d6128b814f7
Sha384
e8299adfa6cbf51c878cadbd1531a723048228ee61b7ebbaf35514e8cd69460739e97315cac3b65bd91212c0214fa2cb
Sha512
d551f3f1d48dd9b73c8e848dd379de15987d41a0d99e6a391e134b2eee9d4954a1878f2067f207e5a6611d9b5a466b162513a5867fd27fb4f1c455162d6322fd
SSDeep
24576:oQIaMOKthwLE7Pby233WE4lcCaoTIC33UjGuk0pv:oQI5OIwLSPb9H4caTI+3Q3L
TLSH
0B252364A728D31BC8A4ABF94569E23187F42D0F9522D75A8FFD5CEF34017208A50BA3
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
SlotMachine.SlotDisplay.resources
SlotMachine.Properties.Resources.resources
NH
[NBF]root.Data
lyNxxn
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: LVApLv.pdb

Module Name

LVApLv.exe

Full Name

LVApLv.exe

EntryPoint

System.Void SlotMachine.Program::Main()

Scope Name

LVApLv.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

LVApLv

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

374

Main Method

System.Void SlotMachine.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void SlotMachine.SlotDisplay::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

345538c8b0b325c4d96fc91e31cfb676 (1.05 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙