6716cf0523570614dc8161df83fe35a9
PE Executable | MD5: 6716cf0523570614dc8161df83fe35a9 | Size: 1.08 MB | application/x-dosexec
Symbol Ofbuscation Score
|
Hash | Hash Value |
|---|---|
| MD5 | 6716cf0523570614dc8161df83fe35a9
|
| Sha1 | 917eee3e3d7ee8151e1f77b5200fbc4f78c2b219
|
| Sha256 | 3fa048cc9dfa86e06aaae2574ddfe34d0e8c7ea130dc31d2c8063a9806f9021b
|
| Sha384 | 7e20a89cde4f7509f260f42e9f480a07a9a83dcfa7ff0496e90e99923027396595f4634818debb94d249b4fd4b8329b7
|
| Sha512 | 3336aac3ae0f6a15c2c799c1af10709b6f972aac7518d04e787e3cdb1d88645107669663d77fb177baab51099ef6c21f246e0082e05e14509c9d0739a6cfccc0
|
| SSDeep | 24576:Q0MHLFrUd+jKQGO/xpcb6SnOLvL0Gz2SMJYwO:9yBUIj77JpyWLvYwM+wO
|
| TLSH | B135E09C3364B98EC497CA718D64DE70AA207DA6971BC20351E75C9FBC0DA86DF142E3
|
PeID
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x104000 size 13832 bytes |
| Module Name | YLaT.exe |
| Full Name | YLaT.exe |
| EntryPoint | System.Void ClipboardAnalyzer.Program::Main() |
| Scope Name | YLaT.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | YLaT |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.0 |
| Total Strings | 367 |
| Main Method | System.Void ClipboardAnalyzer.Program::Main() |
| Main IL Instruction Count | 43 |
| Main IL | nop <null> call System.Void ClipboardAnalyzer.Program::() ldc.i4 -1197372833 ldc.i4 -206254494 xor <null> dup <null> stloc.0 <null> ldc.i4.6 <null> rem.un <null> switch dnlib.DotNet.Emit.Instruction[] br.s IL_0083: ret newobj System.Void ClipboardAnalyzer.MainForm::.ctor() call System.Void ClipboardAnalyzer.Program::(System.Windows.Forms.Form) nop <null> ldloc.0 <null> ldc.i4 947145778 mul <null> ldc.i4 -924052581 xor <null> br.s IL_000B: ldc.i4 -206254494 ldc.i4.0 <null> call System.Void ClipboardAnalyzer.Program::(System.Boolean) ldloc.0 <null> ldc.i4 -244069467 mul <null> ldc.i4 -1072659671 xor <null> br.s IL_000B: ldc.i4 -206254494 nop <null> ldloc.0 <null> ldc.i4 1273169802 mul <null> ldc.i4 -2038651748 xor <null> br.s IL_000B: ldc.i4 -206254494 nop <null> ldloc.0 <null> ldc.i4 -109104572 mul <null> ldc.i4 -1308452998 xor <null> br.s IL_000B: ldc.i4 -206254494 ret <null> |
| Module Name | YLaT.exe |
| Full Name | YLaT.exe |
| EntryPoint | System.Void ClipboardAnalyzer.Program::Main() |
| Scope Name | YLaT.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | YLaT |
| Assembly Version | 1.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.0 |
| Total Strings | 367 |
| Main Method | System.Void ClipboardAnalyzer.Program::Main() |
| Main IL Instruction Count | 43 |
| Main IL | nop <null> call System.Void ClipboardAnalyzer.Program::() ldc.i4 -1197372833 ldc.i4 -206254494 xor <null> dup <null> stloc.0 <null> ldc.i4.6 <null> rem.un <null> switch dnlib.DotNet.Emit.Instruction[] br.s IL_0083: ret newobj System.Void ClipboardAnalyzer.MainForm::.ctor() call System.Void ClipboardAnalyzer.Program::(System.Windows.Forms.Form) nop <null> ldloc.0 <null> ldc.i4 947145778 mul <null> ldc.i4 -924052581 xor <null> br.s IL_000B: ldc.i4 -206254494 ldc.i4.0 <null> call System.Void ClipboardAnalyzer.Program::(System.Boolean) ldloc.0 <null> ldc.i4 -244069467 mul <null> ldc.i4 -1072659671 xor <null> br.s IL_000B: ldc.i4 -206254494 nop <null> ldloc.0 <null> ldc.i4 1273169802 mul <null> ldc.i4 -2038651748 xor <null> br.s IL_000B: ldc.i4 -206254494 nop <null> ldloc.0 <null> ldc.i4 -109104572 mul <null> ldc.i4 -1308452998 xor <null> br.s IL_000B: ldc.i4 -206254494 ret <null> |