Suspicious
Suspect

51701f0094f42047b6b5980347f35559

PE Executable
|
MD5: 51701f0094f42047b6b5980347f35559
|
Size: 737.28 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Low

Hash
Hash Value
MD5
51701f0094f42047b6b5980347f35559
Sha1
62e430b53255a0b110a35f55d85660a98689dc9a
Sha256
7c633bc400a4cb90c89b5223fcb5401dc0cc08c0a441b11b7fb6dd3774f4a0be
Sha384
5a9a6d11949dd7475007addc1435639d1e23ce913aef7d3b993a873d70ef5dcb55eb38c064aba9576c4fa4541d71cdbf
Sha512
24aa74040d6fb4880da152b55a4963bf0a27abd204cc293efa625c0e75358ce2a765ab371e5353e9f40c7c9b616b74e61702751276fdcb1bfdf2670f93155ce9
SSDeep
12288:za4ctN7IBWXWWQixA00E+ymwtq59puiZAeeHRrZOIppDLIpCmJxWmIheFc6:zaTrIuA00RX5yAAau1ExWm46
TLSH
F1F40254121ADD02C0C15EB2A9B1E3B47B742EDBA9D2D293EFC57F9F743A7805941283

PeID

Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
.Net Resources
ExamGenerator.Form1.resources
$this.Icon
[NBF]root.IconData
Ch1
[NBF]root.Data
ExamGenerator.Properties.Resources.resources
erOe
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: C:\Users\Administrator\Desktop\Client\Temp\hAGShelprg\src\obj\Debug\uVsv.pdb

Module Name

uVsv.exe

Full Name

uVsv.exe

EntryPoint

System.Void ExamGenerator.Program::Main()

Scope Name

uVsv.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

uVsv

Assembly Version

6.8.2.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

70

Main Method

System.Void ExamGenerator.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void ExamGenerator.Form1::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Module Name

uVsv.exe

Full Name

uVsv.exe

EntryPoint

System.Void ExamGenerator.Program::Main()

Scope Name

uVsv.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

uVsv

Assembly Version

6.8.2.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

70

Main Method

System.Void ExamGenerator.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void ExamGenerator.Form1::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

51701f0094f42047b6b5980347f35559 (737.28 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
.Net Resources
ExamGenerator.Form1.resources
$this.Icon
[NBF]root.IconData
Ch1
[NBF]root.Data
ExamGenerator.Properties.Resources.resources
erOe
[NBF]root.Data
[NBF]root.Data-preview.png
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙