Suspicious
Suspect

4aa8a987908f8d47e4579cb6b321c9b4

PE Executable
|
MD5: 4aa8a987908f8d47e4579cb6b321c9b4
|
Size: 733.18 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Obfuscation Score

Medium

Hash
Hash Value
MD5
4aa8a987908f8d47e4579cb6b321c9b4
Sha1
539d199db456720c7ebc6d4cffc8d1974d735ee3
Sha256
77f1b3962e81e010df9060182c55baada5eab18b72c0fdae8c295a35b4b36c94
Sha384
ab33154a6cceade0f4a9955f903a66340b39ccd66caf4497a73ab48ec7e848ebd8e0a3cc4527c06ab38b848872565f48
Sha512
0940a28d4b3f47bc8515dc5b8d9361f3357773873124bc72d95725fc4749df263d34534cb4a245c1fa68753a33f5efcd79efdd8b7b82fb916ea9d74771b3dbcb
SSDeep
12288:RTEeOuG0P6qizgYkRa0WP+6efVncZVuolJKa1xhJGaQxp:cu3PFYNlP+6efVncZVuolJKa1xfGaQv
TLSH
F7F4C5089AD51F63E2BE573788F3A98473B5A890FB5BD74F515430A208163D64B832FB

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

Zeamjbb.exe

Full Name

Zeamjbb.exe

EntryPoint

System.Void .::()

Scope Name

Zeamjbb.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Zeamjbb

Assembly Version

1.0.903.26454

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1209

Main Method

System.Void .::()

Main IL Instruction Count

58

Main IL

br IL_008B: newobj System.Void .::.ctor() br IL_0095: stloc.0 br.s IL_005C: ldloc.0 br.s IL_005F: callvirt System.String .::() brfalse.s IL_005A: leave.s IL_008A br.s IL_0066: ldloc.0 br.s IL_0069: call System.Type[] .::(.) ldsfld System.Func`2<System.Type,System.Boolean> ./:: dup <null> brtrue.s IL_0033: br.s IL_0070 pop <null> ldsfld ./ ./:: ldftn System.Boolean ./::(System.Type) newobj System.Void System.Func`2<System.Type,System.Boolean>::.ctor(System.Object,System.IntPtr) dup <null> stsfld System.Func`2<System.Type,System.Boolean> ./:: br.s IL_0070: call System.Collections.Generic.IEnumerable`1<System.Type> System.Linq.Enumerable::Where<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>,System.Func`2<System.Type,System.Boolean>) br.s IL_0077: stloc.1 br.s IL_007A: ldloc.1 call System.Int32 System.Linq.Enumerable::Count<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>) ldc.i4.0 <null> ble.s IL_005A: leave.s IL_008A ldloc.1 <null> call System.Type System.Linq.Enumerable::First<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>) ldstr Q7QwuMV9M ldc.i4 256 ldnull <null> ldnull <null> ldnull <null> callvirt System.Object System.Type::InvokeMember(System.String,System.Reflection.BindingFlags,System.Reflection.Binder,System.Object,System.Object[]) pop <null> leave.s IL_008A: ret ldloc.0 <null> br.s IL_000C: br.s IL_005F callvirt System.String .::() br.s IL_000E: brfalse.s IL_005A ldloc.0 <null> br.s IL_0012: br.s IL_0069 call System.Type[] .::(.) br.s IL_0014: ldsfld System.Func`2<System.Type,System.Boolean> ./:: call System.Collections.Generic.IEnumerable`1<System.Type> System.Linq.Enumerable::Where<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>,System.Func`2<System.Type,System.Boolean>) br.s IL_0035: br.s IL_0077 stloc.1 <null> br.s IL_0037: br.s IL_007A ldloc.1 <null> br.s IL_0039: call System.Int32 System.Linq.Enumerable::Count<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>) ldloc.0 <null> brfalse.s IL_0086: ldc.i4.3 ldloc.0 <null> callvirt System.Void System.IDisposable::Dispose() ldc.i4.3 <null> brfalse.s IL_007D: ldloc.0 endfinally <null> ret <null> newobj System.Void .::.ctor() br IL_0005: br IL_0095 stloc.0 <null> br IL_000A: br.s IL_005C

Module Name

Zeamjbb.exe

Full Name

Zeamjbb.exe

EntryPoint

System.Void .::()

Scope Name

Zeamjbb.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Zeamjbb

Assembly Version

1.0.903.26454

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1209

Main Method

System.Void .::()

Main IL Instruction Count

58

Main IL

br IL_008B: newobj System.Void .::.ctor() br IL_0095: stloc.0 br.s IL_005C: ldloc.0 br.s IL_005F: callvirt System.String .::() brfalse.s IL_005A: leave.s IL_008A br.s IL_0066: ldloc.0 br.s IL_0069: call System.Type[] .::(.) ldsfld System.Func`2<System.Type,System.Boolean> ./:: dup <null> brtrue.s IL_0033: br.s IL_0070 pop <null> ldsfld ./ ./:: ldftn System.Boolean ./::(System.Type) newobj System.Void System.Func`2<System.Type,System.Boolean>::.ctor(System.Object,System.IntPtr) dup <null> stsfld System.Func`2<System.Type,System.Boolean> ./:: br.s IL_0070: call System.Collections.Generic.IEnumerable`1<System.Type> System.Linq.Enumerable::Where<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>,System.Func`2<System.Type,System.Boolean>) br.s IL_0077: stloc.1 br.s IL_007A: ldloc.1 call System.Int32 System.Linq.Enumerable::Count<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>) ldc.i4.0 <null> ble.s IL_005A: leave.s IL_008A ldloc.1 <null> call System.Type System.Linq.Enumerable::First<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>) ldstr Q7QwuMV9M ldc.i4 256 ldnull <null> ldnull <null> ldnull <null> callvirt System.Object System.Type::InvokeMember(System.String,System.Reflection.BindingFlags,System.Reflection.Binder,System.Object,System.Object[]) pop <null> leave.s IL_008A: ret ldloc.0 <null> br.s IL_000C: br.s IL_005F callvirt System.String .::() br.s IL_000E: brfalse.s IL_005A ldloc.0 <null> br.s IL_0012: br.s IL_0069 call System.Type[] .::(.) br.s IL_0014: ldsfld System.Func`2<System.Type,System.Boolean> ./:: call System.Collections.Generic.IEnumerable`1<System.Type> System.Linq.Enumerable::Where<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>,System.Func`2<System.Type,System.Boolean>) br.s IL_0035: br.s IL_0077 stloc.1 <null> br.s IL_0037: br.s IL_007A ldloc.1 <null> br.s IL_0039: call System.Int32 System.Linq.Enumerable::Count<System.Type>(System.Collections.Generic.IEnumerable`1<System.Type>) ldloc.0 <null> brfalse.s IL_0086: ldc.i4.3 ldloc.0 <null> callvirt System.Void System.IDisposable::Dispose() ldc.i4.3 <null> brfalse.s IL_007D: ldloc.0 endfinally <null> ret <null> newobj System.Void .::.ctor() br IL_0005: br IL_0095 stloc.0 <null> br IL_000A: br.s IL_005C

4aa8a987908f8d47e4579cb6b321c9b4 (733.18 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙