Suspicious
Suspect

5e27f68f422a8ea1272ffb72f9adf183

PE Executable
|
MD5: 5e27f68f422a8ea1272ffb72f9adf183
|
Size: 833.02 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
5e27f68f422a8ea1272ffb72f9adf183
Sha1
6033950e81481bf38524cc857be5dac615e43283
Sha256
ec1aeca8261ab1b312eee4d0bb17ba3a274789747b7f3e1a026f95e39e8bed97
Sha384
ebcf729b7e1f0d3c2d1a277c912199ae0f415ff1b2b45e5160ee2ca964df0a0bb83617084c1ca07e98bb983f229eddcb
Sha512
b1ab84710ab0354a93bba7c85e35f189d4ac31a02dbe47ca9764145fecca09caaa09ce7c103d33ae0f36008f231aa86636e9b8231e425ceb3bc3cb9f92ee1e60
SSDeep
12288:YQ2PlCcFlcTznzVNaR2xhD+AJon910w/uLetv6CsDuHev526fx0:gWTzfKTHn91Nuatv
TLSH
1E05D0AD3254B99FC467CE318D64DE74A6607DAA9707C20381E71D9FB90DA83CE102E3

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
ClipboardAnalyzer.MainForm.resources
ClipboardAnalyzer.Properties.Resources.resources
Teacher
[NBF]root.Data
gtFO
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

FJxl.exe

Full Name

FJxl.exe

EntryPoint

System.Void ClipboardAnalyzer.Program::Main()

Scope Name

FJxl.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

FJxl

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

367

Main Method

System.Void ClipboardAnalyzer.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void ClipboardAnalyzer.Program::‎‭‬‎‭‏‬‍‏‍‭‍‬‪‫‭‬‮‎‫​‮() nop <null> ldc.i4.0 <null> call System.Void ClipboardAnalyzer.Program::‍‎‮‭‏‬‭‫‪‌‮‮‪‬‎‌‫‮​‏‍‫‎‮(System.Boolean) nop <null> newobj System.Void ClipboardAnalyzer.MainForm::.ctor() call System.Void ClipboardAnalyzer.Program::‏​‮​‍‍‏‪‌‫‪‪‌‪​‬‍‏​‭‍‮(System.Windows.Forms.Form) nop <null> ret <null>

Module Name

FJxl.exe

Full Name

FJxl.exe

EntryPoint

System.Void ClipboardAnalyzer.Program::Main()

Scope Name

FJxl.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

FJxl

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

367

Main Method

System.Void ClipboardAnalyzer.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void ClipboardAnalyzer.Program::‎‭‬‎‭‏‬‍‏‍‭‍‬‪‫‭‬‮‎‫​‮() nop <null> ldc.i4.0 <null> call System.Void ClipboardAnalyzer.Program::‍‎‮‭‏‬‭‫‪‌‮‮‪‬‎‌‫‮​‏‍‫‎‮(System.Boolean) nop <null> newobj System.Void ClipboardAnalyzer.MainForm::.ctor() call System.Void ClipboardAnalyzer.Program::‏​‮​‍‍‏‪‌‫‪‪‌‪​‬‍‏​‭‍‮(System.Windows.Forms.Form) nop <null> ret <null>

5e27f68f422a8ea1272ffb72f9adf183 (833.02 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙