Suspicious
Suspect

37bf3cb130f4da2ee296ecddd67e84af

PE Executable
|
MD5: 37bf3cb130f4da2ee296ecddd67e84af
|
Size: 2.49 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
37bf3cb130f4da2ee296ecddd67e84af
Sha1
a31248df6c73d4b7e0749f55aa1246c8483ac22c
Sha256
190f2113d6e29192b6e8b864d39f4b48ce66ee7022247b59bdd0cc2d4b3a9f6b
Sha384
a51fba0c9a82106b40f38a189e122e3f2cce5ceb3a99c4d7e024e369745939724df2c68a15c2eb8d34ec4056f4c2228d
Sha512
df45f4ca0c6440379f87d957488749a1a896d7fe8a1448c38f6facfd23298f696aa869709035c5fa132d55f08c4ddd1639279a6273155bc32e661b1dbbf4265e
SSDeep
24576:gIGEj4kKEja1mwP9GZLKkleuCBswXaIPy6NRNu6EqRQc/CenuGQmaDYPIaJLr7DS:P4kKx1mqaKkIjBswKUy6BD/NuDcHjTu
TLSH
96B53A342AEFA02DF137AF795BD4359BDB6EB673370AA85D1091034B0A12E41DEC153A

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0032
ID:0
ID:0-preview.png
ID:0033
ID:0
ID:0034
ID:0
ID:0035
ID:0
ID:0036
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
.Net Resources
bks.FrmSeatAssignment.resources
bks.NewSurvey.resources
$this.Icon
[NBF]root.IconData
3ba800d631434a.Resources.resources
e21f89c90
[NBF]root.Data
e21f89c91
[NBF]root.Data
e21f89c910
[NBF]root.Data
e21f89c911
[NBF]root.Data
e21f89c912
[NBF]root.Data
e21f89c913
[NBF]root.Data
e21f89c914
[NBF]root.Data
e21f89c915
[NBF]root.Data
e21f89c916
[NBF]root.Data
e21f89c917
[NBF]root.Data
e21f89c918
[NBF]root.Data
e21f89c919
[NBF]root.Data
e21f89c92
[NBF]root.Data
e21f89c920
[NBF]root.Data
e21f89c921
[NBF]root.Data
e21f89c922
[NBF]root.Data
e21f89c923
[NBF]root.Data
e21f89c924
[NBF]root.Data
e21f89c925
[NBF]root.Data
e21f89c926
[NBF]root.Data
e21f89c927
[NBF]root.Data
e21f89c928
[NBF]root.Data
e21f89c929
[NBF]root.Data
e21f89c93
[NBF]root.Data
e21f89c930
[NBF]root.Data
e21f89c931
[NBF]root.Data
e21f89c932
[NBF]root.Data
e21f89c933
[NBF]root.Data
e21f89c934
[NBF]root.Data
e21f89c935
[NBF]root.Data
e21f89c936
[NBF]root.Data
e21f89c937
[NBF]root.Data
e21f89c938
[NBF]root.Data
e21f89c939
[NBF]root.Data
e21f89c94
[NBF]root.Data
e21f89c940
[NBF]root.Data
e21f89c941
[NBF]root.Data
e21f89c942
[NBF]root.Data
e21f89c943
[NBF]root.Data
e21f89c944
[NBF]root.Data
e21f89c945
[NBF]root.Data
e21f89c946
[NBF]root.Data
e21f89c947
[NBF]root.Data
e21f89c948
[NBF]root.Data
e21f89c949
[NBF]root.Data
e21f89c95
[NBF]root.Data
e21f89c950
[NBF]root.Data
e21f89c951
[NBF]root.Data
e21f89c952
[NBF]root.Data
e21f89c953
[NBF]root.Data
e21f89c954
[NBF]root.Data
e21f89c955
[NBF]root.Data
e21f89c956
[NBF]root.Data
e21f89c957
[NBF]root.Data
e21f89c958
[NBF]root.Data
e21f89c959
[NBF]root.Data
e21f89c96
[NBF]root.Data
e21f89c960
[NBF]root.Data
e21f89c961
[NBF]root.Data
e21f89c962
[NBF]root.Data
e21f89c963
[NBF]root.Data
e21f89c964
[NBF]root.Data
e21f89c965
[NBF]root.Data
e21f89c966
[NBF]root.Data
e21f89c967
[NBF]root.Data
e21f89c968
[NBF]root.Data
e21f89c969
[NBF]root.Data
e21f89c97
[NBF]root.Data
e21f89c970
[NBF]root.Data
e21f89c971
[NBF]root.Data
e21f89c972
[NBF]root.Data
e21f89c973
[NBF]root.Data
e21f89c974
[NBF]root.Data
e21f89c975
[NBF]root.Data
e21f89c976
[NBF]root.Data
e21f89c977
[NBF]root.Data
e21f89c978
[NBF]root.Data
e21f89c979
[NBF]root.Data
e21f89c98
[NBF]root.Data
e21f89c980
[NBF]root.Data
e21f89c981
[NBF]root.Data
e21f89c982
[NBF]root.Data
e21f89c983
[NBF]root.Data
e21f89c984
[NBF]root.Data
e21f89c985
[NBF]root.Data
e21f89c986
[NBF]root.Data
e21f89c99
[NBF]root.Data
Informations
Name
Value
Module Name

bks

Full Name

bks

EntryPoint

System.Void Dx35.i0ZJs::Md7e9()

Scope Name

bks

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

bks

Assembly Version

1.9.4.6

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

2008

Main Method

System.Void Dx35.i0ZJs::Md7e9()

Main IL Instruction Count

40

Main IL

nop <null> call System.DateTime System.DateTime::get_Now() stloc.0 <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> ldc.i4.0 <null> stloc.1 <null> ldloc.1 <null> ldc.i4.1 <null> ceq <null> stloc.2 <null> ldloc.2 <null> brfalse.s IL_002A: nop ldstr Debug mode active. call System.Void System.Diagnostics.Debug::WriteLine(System.String) nop <null> nop <null> nop <null> nop <null> newobj System.Void System.Text.StringBuilder::.ctor() stloc.3 <null> newobj System.Void Dx35.i0ZJs::.ctor() stloc.s V_4 ldloc.s V_4 callvirt System.Windows.Forms.RichTextBox Dx35.i0ZJs::g8J0T() callvirt System.String System.Windows.Forms.RichTextBox::get_Text() call System.Void Dx35.p7GYy5::Pg5t6L(System.String) nop <null> leave.s IL_005D: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_5 nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_005D: nop nop <null> ret <null>

Module Name

bks

Full Name

bks

EntryPoint

System.Void Dx35.i0ZJs::Md7e9()

Scope Name

bks

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

bks

Assembly Version

1.9.4.6

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

2008

Main Method

System.Void Dx35.i0ZJs::Md7e9()

Main IL Instruction Count

40

Main IL

nop <null> call System.DateTime System.DateTime::get_Now() stloc.0 <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> ldc.i4.0 <null> stloc.1 <null> ldloc.1 <null> ldc.i4.1 <null> ceq <null> stloc.2 <null> ldloc.2 <null> brfalse.s IL_002A: nop ldstr Debug mode active. call System.Void System.Diagnostics.Debug::WriteLine(System.String) nop <null> nop <null> nop <null> nop <null> newobj System.Void System.Text.StringBuilder::.ctor() stloc.3 <null> newobj System.Void Dx35.i0ZJs::.ctor() stloc.s V_4 ldloc.s V_4 callvirt System.Windows.Forms.RichTextBox Dx35.i0ZJs::g8J0T() callvirt System.String System.Windows.Forms.RichTextBox::get_Text() call System.Void Dx35.p7GYy5::Pg5t6L(System.String) nop <null> leave.s IL_005D: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_5 nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_005D: nop nop <null> ret <null>

37bf3cb130f4da2ee296ecddd67e84af (2.49 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙