Suspicious
Suspect

56a64401bd7aa078fbdf5ca306b2d535

PE Executable
|
MD5: 56a64401bd7aa078fbdf5ca306b2d535
|
Size: 695.81 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

High

Hash
Hash Value
MD5
56a64401bd7aa078fbdf5ca306b2d535
Sha1
e8aa9b29cb5c253af25c427bcf828eec3fbd03ea
Sha256
3d60993b1ca1c6786c9c2fe6c6b7c2574fcfa5e28101181f7c29c6c5ddf54c37
Sha384
4367f8498d5d0b94da00a0e138663c3e5894230a8a3302fb9706daaaaa593b589c19f3083ba6759d8805fc69532f0609
Sha512
f50c8b99f34cf93ad13cdd70a4f62b75fa118302378f0ffd9fc2181751f45d649d3ac61aea5d92075d588e881a0d5f1c2bdc27ca9b87dbd23107c6d43a0d3744
SSDeep
12288:G1t/JeRPAgqbjYPO0QnZNB5uVlfniJ60PHL39lNHJbI07/OJR6/O0PK9Q3cJmcAN:GnJ+Pqbjd0ONBcGPHjNHtDYomXocAwy0
TLSH
4BE4F19D3A68B1AFD853C9725978EC3096607CAE8307C30350EB5DEBB94D696CE441F2

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
JuegoRompeLadrillos.Properties.Resources.resources
Task1
[NBF]root.Data
ZBFAIm
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

zjXSKW.exe

Full Name

zjXSKW.exe

EntryPoint

System.Void JuegoRompeLadrillos.Program::Main()

Scope Name

zjXSKW.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

zjXSKW

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

102

Main Method

System.Void JuegoRompeLadrillos.Program::Main()

Main IL Instruction Count

37

Main IL

nop <null> ldc.i4 311835702 ldc.i4 798888480 xor <null> dup <null> stloc.0 <null> ldc.i4.5 <null> rem.un <null> switch dnlib.DotNet.Emit.Instruction[] br.s IL_0070: ret call System.Void JuegoRompeLadrillos.Program::‍‬‍​​​‎‪‪‭‬‏‎‎‎‫‪‮‎‫‎‬‮‮‏‌‮() nop <null> ldloc.0 <null> ldc.i4 1503960341 mul <null> ldc.i4 601493503 xor <null> br.s IL_0006: ldc.i4 798888480 nop <null> newobj System.Void JuegoRompeLadrillos.FormMenuPrincipal::.ctor() call System.Void JuegoRompeLadrillos.Program::‌‎‭​‮‫​‫‌‌‏‪‎‬​​‮‌‫‮(System.Windows.Forms.Form) nop <null> ldloc.0 <null> ldc.i4 215681613 mul <null> ldc.i4 1792547082 xor <null> br.s IL_0006: ldc.i4 798888480 ldc.i4.0 <null> call System.Void JuegoRompeLadrillos.Program::‍‪‮‪‌‏‏‫‌‭‍‌‏‎‬‎​‫‬‫‎‏‬‌‍‌‫‌‮(System.Boolean) ldloc.0 <null> ldc.i4 -55087859 mul <null> ldc.i4 -1666037526 xor <null> br.s IL_0006: ldc.i4 798888480 ret <null>

Module Name

zjXSKW.exe

Full Name

zjXSKW.exe

EntryPoint

System.Void JuegoRompeLadrillos.Program::Main()

Scope Name

zjXSKW.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

zjXSKW

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

102

Main Method

System.Void JuegoRompeLadrillos.Program::Main()

Main IL Instruction Count

37

Main IL

nop <null> ldc.i4 311835702 ldc.i4 798888480 xor <null> dup <null> stloc.0 <null> ldc.i4.5 <null> rem.un <null> switch dnlib.DotNet.Emit.Instruction[] br.s IL_0070: ret call System.Void JuegoRompeLadrillos.Program::‍‬‍​​​‎‪‪‭‬‏‎‎‎‫‪‮‎‫‎‬‮‮‏‌‮() nop <null> ldloc.0 <null> ldc.i4 1503960341 mul <null> ldc.i4 601493503 xor <null> br.s IL_0006: ldc.i4 798888480 nop <null> newobj System.Void JuegoRompeLadrillos.FormMenuPrincipal::.ctor() call System.Void JuegoRompeLadrillos.Program::‌‎‭​‮‫​‫‌‌‏‪‎‬​​‮‌‫‮(System.Windows.Forms.Form) nop <null> ldloc.0 <null> ldc.i4 215681613 mul <null> ldc.i4 1792547082 xor <null> br.s IL_0006: ldc.i4 798888480 ldc.i4.0 <null> call System.Void JuegoRompeLadrillos.Program::‍‪‮‪‌‏‏‫‌‭‍‌‏‎‬‎​‫‬‫‎‏‬‌‍‌‫‌‮(System.Boolean) ldloc.0 <null> ldc.i4 -55087859 mul <null> ldc.i4 -1666037526 xor <null> br.s IL_0006: ldc.i4 798888480 ret <null>

56a64401bd7aa078fbdf5ca306b2d535 (695.81 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
JuegoRompeLadrillos.Properties.Resources.resources
Task1
[NBF]root.Data
ZBFAIm
[NBF]root.Data
[NBF]root.Data-preview.png
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙