Suspicious
Suspect

652beebd124863324fd23dee5ed8cb82

PE Executable
|
MD5: 652beebd124863324fd23dee5ed8cb82
|
Size: 775.17 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Low

Hash
Hash Value
MD5
652beebd124863324fd23dee5ed8cb82
Sha1
9bf3528fa0e36fe2be2358a9db13f34efd064baa
Sha256
6b76abca8f35fff263c12beaaf521405a1d3743abde3bc20d8415272b2c5a140
Sha384
8e1f802e5a54c5b2d39474028b6cb104a89104f7684fd794c09867f5d344ec94fefd2fd4d7b5a74c9cfe9efa17c04e86
Sha512
155ffcf0e937b7f3a61d8a26b1b12499aea65e8404d35f8b913a4cea140377b829b93516f02c28a7eac738a3f759a1232b642a5420f9ca9be01523090d3149ff
SSDeep
12288:WnS+eUiZgguqlEmihgLnxitm0qpVknXc1J5IRW+ydJCPYYsgpAeaqojL4e:W7eBUiyh4xittqGXu4W+yyPYYrAXq
TLSH
39F422142A11AE01D9920BF41D71E9FC07E99DF8E851E38ACFEA5FFF742364A5584283
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
PatternGenerator.Forms.MainForm.resources
PatternGenerator.Properties.Resources.resources
IcDX
[NBF]root.Data
[NBF]root.Data-preview.png
crc
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: ekqD.pdb

Module Name

ekqD.exe

Full Name

ekqD.exe

EntryPoint

System.Void PatternGenerator.Program::Main()

Scope Name

ekqD.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

ekqD

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

84

Main Method

System.Void PatternGenerator.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void PatternGenerator.Forms.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

652beebd124863324fd23dee5ed8cb82 (775.17 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙