Suspicious
Suspect

729c33511834266c3ef49e0b62c0e4ba

PE Executable
|
MD5: 729c33511834266c3ef49e0b62c0e4ba
|
Size: 5.62 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
729c33511834266c3ef49e0b62c0e4ba
Sha1
d157eb7921c0ffdb0e885d7d07977304c69c5b37
Sha256
d25df8d5b45fe5cd79e2b45896459838b06ccc9abf6358d97232af011d273976
Sha384
030b0d6635fb047079ce6393357bd99c6e4ee598d00c415a86fe9905a4a288a1b21a846ce0bd469935907a2dcb08e36a
Sha512
6a01f51a7360aa36d736703086670f4ef7327c582104b336cc5bdc09a59368b05ea948c6c539ce31f4f12283ad6de41d09de3dcec9868aec10c42652f57c6fc3
SSDeep
98304:BE4FFbyuSmKB526pCSP7GImvSyrdD1nv9Q37PE4rm:BZqLCSPKLKyrn9Ibr
TLSH
CB46233635815E44D07F4BB8C93444C167F26E4FAF11DB9E75A92A9C7E02287E32272B

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0032
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:0
.Net Resources
ex9Ap1.g.resources
ex9Ap1.Resources.resources
bd7176b69dfee3.Resources.resources
8311e7410
[NBF]root.Data
8311e7411
[NBF]root.Data
8311e74110
[NBF]root.Data
8311e741100
[NBF]root.Data
8311e741101
[NBF]root.Data
8311e741102
[NBF]root.Data
8311e741103
[NBF]root.Data
8311e741104
[NBF]root.Data
8311e741105
[NBF]root.Data
8311e741106
[NBF]root.Data
8311e741107
[NBF]root.Data
8311e741108
[NBF]root.Data
8311e741109
[NBF]root.Data
8311e74111
[NBF]root.Data
8311e741110
[NBF]root.Data
8311e741111
[NBF]root.Data
8311e741112
[NBF]root.Data
8311e741113
[NBF]root.Data
8311e741114
[NBF]root.Data
8311e741115
[NBF]root.Data
8311e741116
[NBF]root.Data
8311e741117
[NBF]root.Data
8311e741118
[NBF]root.Data
8311e741119
[NBF]root.Data
8311e74112
[NBF]root.Data
8311e741120
[NBF]root.Data
8311e741121
[NBF]root.Data
8311e741122
[NBF]root.Data
8311e741123
[NBF]root.Data
8311e741124
[NBF]root.Data
8311e741125
[NBF]root.Data
8311e741126
[NBF]root.Data
8311e741127
[NBF]root.Data
8311e741128
[NBF]root.Data
8311e741129
[NBF]root.Data
8311e74113
[NBF]root.Data
8311e741130
[NBF]root.Data
8311e741131
[NBF]root.Data
8311e741132
[NBF]root.Data
8311e741133
[NBF]root.Data
8311e741134
[NBF]root.Data
8311e741135
[NBF]root.Data
8311e741136
[NBF]root.Data
8311e741137
[NBF]root.Data
8311e741138
[NBF]root.Data
8311e741139
[NBF]root.Data
8311e74114
[NBF]root.Data
8311e741140
[NBF]root.Data
8311e741141
[NBF]root.Data
8311e741142
[NBF]root.Data
8311e741143
[NBF]root.Data
8311e741144
[NBF]root.Data
8311e741145
[NBF]root.Data
8311e741146
[NBF]root.Data
8311e741147
[NBF]root.Data
8311e741148
[NBF]root.Data
8311e741149
[NBF]root.Data
8311e74115
[NBF]root.Data
8311e741150
[NBF]root.Data
8311e741151
[NBF]root.Data
8311e741152
[NBF]root.Data
8311e741153
[NBF]root.Data
8311e741154
[NBF]root.Data
8311e741155
[NBF]root.Data
8311e741156
[NBF]root.Data
8311e741157
[NBF]root.Data
8311e741158
[NBF]root.Data
8311e741159
[NBF]root.Data
8311e74116
[NBF]root.Data
8311e741160
[NBF]root.Data
8311e741161
[NBF]root.Data
8311e741162
[NBF]root.Data
8311e741163
[NBF]root.Data
8311e741164
[NBF]root.Data
8311e741165
[NBF]root.Data
8311e741166
[NBF]root.Data
8311e741167
[NBF]root.Data
8311e741168
[NBF]root.Data
8311e741169
[NBF]root.Data
8311e74117
[NBF]root.Data
8311e741170
[NBF]root.Data
8311e741171
[NBF]root.Data
8311e741172
[NBF]root.Data
8311e741173
[NBF]root.Data
8311e741174
[NBF]root.Data
8311e741175
[NBF]root.Data
8311e741176
[NBF]root.Data
8311e741177
[NBF]root.Data
8311e741178
[NBF]root.Data
8311e741179
[NBF]root.Data
8311e74118
[NBF]root.Data
8311e741180
[NBF]root.Data
8311e741181
[NBF]root.Data
8311e741182
[NBF]root.Data
8311e741183
[NBF]root.Data
8311e741184
[NBF]root.Data
8311e741185
[NBF]root.Data
8311e741186
[NBF]root.Data
8311e741187
[NBF]root.Data
8311e741188
[NBF]root.Data
8311e741189
[NBF]root.Data
8311e74119
[NBF]root.Data
8311e741190
[NBF]root.Data
8311e741191
[NBF]root.Data
8311e741192
[NBF]root.Data
8311e741193
[NBF]root.Data
8311e741194
[NBF]root.Data
8311e741195
[NBF]root.Data
8311e741196
[NBF]root.Data
8311e741197
[NBF]root.Data
8311e741198
[NBF]root.Data
8311e741199
[NBF]root.Data
8311e7412
[NBF]root.Data
8311e74120
[NBF]root.Data
8311e741200
[NBF]root.Data
8311e741201
[NBF]root.Data
8311e741202
[NBF]root.Data
8311e741203
[NBF]root.Data
8311e741204
[NBF]root.Data
8311e741205
[NBF]root.Data
8311e741206
[NBF]root.Data
8311e741207
[NBF]root.Data
8311e741208
[NBF]root.Data
8311e741209
[NBF]root.Data
8311e74121
[NBF]root.Data
8311e741210
[NBF]root.Data
8311e741211
[NBF]root.Data
8311e741212
[NBF]root.Data
8311e741213
[NBF]root.Data
8311e741214
[NBF]root.Data
8311e741215
[NBF]root.Data
8311e741216
[NBF]root.Data
8311e741217
[NBF]root.Data
8311e741218
[NBF]root.Data
8311e741219
[NBF]root.Data
8311e74122
[NBF]root.Data
8311e741220
[NBF]root.Data
8311e741221
[NBF]root.Data
8311e741222
[NBF]root.Data
8311e741223
[NBF]root.Data
8311e741224
[NBF]root.Data
8311e741225
[NBF]root.Data
8311e741226
[NBF]root.Data
8311e741227
[NBF]root.Data
8311e741228
[NBF]root.Data
8311e741229
[NBF]root.Data
8311e74123
[NBF]root.Data
8311e741230
[NBF]root.Data
8311e741231
[NBF]root.Data
8311e741232
[NBF]root.Data
8311e741233
[NBF]root.Data
8311e741234
[NBF]root.Data
8311e741235
[NBF]root.Data
8311e741236
[NBF]root.Data
8311e741237
[NBF]root.Data
8311e741238
[NBF]root.Data
8311e741239
[NBF]root.Data
8311e74124
[NBF]root.Data
8311e741240
[NBF]root.Data
8311e741241
[NBF]root.Data
8311e741242
[NBF]root.Data
8311e741243
[NBF]root.Data
8311e741244
[NBF]root.Data
8311e741245
[NBF]root.Data
8311e741246
[NBF]root.Data
8311e741247
[NBF]root.Data
8311e741248
[NBF]root.Data
8311e741249
[NBF]root.Data
8311e74125
[NBF]root.Data
8311e741250
[NBF]root.Data
8311e741251
[NBF]root.Data
8311e741252
[NBF]root.Data
8311e741253
[NBF]root.Data
8311e741254
[NBF]root.Data
8311e741255
[NBF]root.Data
8311e741256
[NBF]root.Data
8311e741257
[NBF]root.Data
8311e741258
[NBF]root.Data
8311e741259
[NBF]root.Data
8311e74126
[NBF]root.Data
8311e741260
[NBF]root.Data
8311e741261
[NBF]root.Data
8311e741262
[NBF]root.Data
8311e741263
[NBF]root.Data
8311e741264
[NBF]root.Data
8311e741265
[NBF]root.Data
8311e741266
[NBF]root.Data
8311e741267
[NBF]root.Data
8311e741268
[NBF]root.Data
8311e741269
[NBF]root.Data
8311e74127
[NBF]root.Data
8311e741270
[NBF]root.Data
8311e741271
[NBF]root.Data
8311e741272
[NBF]root.Data
8311e741273
[NBF]root.Data
8311e741274
[NBF]root.Data
8311e741275
[NBF]root.Data
8311e741276
[NBF]root.Data
8311e741277
[NBF]root.Data
8311e741278
[NBF]root.Data
8311e741279
[NBF]root.Data
8311e74128
[NBF]root.Data
8311e741280
[NBF]root.Data
8311e741281
[NBF]root.Data
8311e741282
[NBF]root.Data
8311e74129
[NBF]root.Data
8311e7413
[NBF]root.Data
8311e74130
[NBF]root.Data
8311e74131
[NBF]root.Data
8311e74132
[NBF]root.Data
8311e74133
[NBF]root.Data
8311e74134
[NBF]root.Data
8311e74135
[NBF]root.Data
8311e74136
[NBF]root.Data
8311e74137
[NBF]root.Data
8311e74138
[NBF]root.Data
8311e74139
[NBF]root.Data
8311e7414
[NBF]root.Data
8311e74140
[NBF]root.Data
8311e74141
[NBF]root.Data
8311e74142
[NBF]root.Data
8311e74143
[NBF]root.Data
8311e74144
[NBF]root.Data
8311e74145
[NBF]root.Data
8311e74146
[NBF]root.Data
8311e74147
[NBF]root.Data
8311e74148
[NBF]root.Data
8311e74149
[NBF]root.Data
8311e7415
[NBF]root.Data
8311e74150
[NBF]root.Data
8311e74151
[NBF]root.Data
8311e74152
[NBF]root.Data
8311e74153
[NBF]root.Data
8311e74154
[NBF]root.Data
8311e74155
[NBF]root.Data
8311e74156
[NBF]root.Data
8311e74157
[NBF]root.Data
8311e74158
[NBF]root.Data
8311e74159
[NBF]root.Data
8311e7416
[NBF]root.Data
8311e74160
[NBF]root.Data
8311e74161
[NBF]root.Data
8311e74162
[NBF]root.Data
8311e74163
[NBF]root.Data
8311e74164
[NBF]root.Data
8311e74165
[NBF]root.Data
8311e74166
[NBF]root.Data
8311e74167
[NBF]root.Data
8311e74168
[NBF]root.Data
8311e74169
[NBF]root.Data
8311e7417
[NBF]root.Data
8311e74170
[NBF]root.Data
8311e74171
[NBF]root.Data
8311e74172
[NBF]root.Data
8311e74173
[NBF]root.Data
8311e74174
[NBF]root.Data
8311e74175
[NBF]root.Data
8311e74176
[NBF]root.Data
8311e74177
[NBF]root.Data
8311e74178
[NBF]root.Data
8311e74179
[NBF]root.Data
8311e7418
[NBF]root.Data
8311e74180
[NBF]root.Data
8311e74181
[NBF]root.Data
8311e74182
[NBF]root.Data
8311e74183
[NBF]root.Data
8311e74184
[NBF]root.Data
8311e74185
[NBF]root.Data
8311e74186
[NBF]root.Data
8311e74187
[NBF]root.Data
8311e74188
[NBF]root.Data
8311e74189
[NBF]root.Data
8311e7419
[NBF]root.Data
8311e74190
[NBF]root.Data
8311e74191
[NBF]root.Data
8311e74192
[NBF]root.Data
8311e74193
[NBF]root.Data
8311e74194
[NBF]root.Data
8311e74195
[NBF]root.Data
8311e74196
[NBF]root.Data
8311e74197
[NBF]root.Data
8311e74198
[NBF]root.Data
8311e74199
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

ex9Ap1

Full Name

ex9Ap1

EntryPoint

System.Void ex9Ap1.sDs48kWwQp/6DdyRks8rQ9i4.8Stgo0ePZyj3id::1QjogkZ5s8o()

Scope Name

ex9Ap1

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

ex9Ap1

Assembly Version

18.7.23.165

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

912

Main Method

System.Void ex9Ap1.sDs48kWwQp/6DdyRks8rQ9i4.8Stgo0ePZyj3id::1QjogkZ5s8o()

Main IL Instruction Count

76

Main IL

nop <null> nop <null> ldc.i4.s 24 stloc.0 <null> ldloc.0 <null> ldc.i4.1 <null> sub.ovf <null> ldc.i4.1 <null> add.ovf <null> newarr System.Object stloc.1 <null> ldc.i4 9032078 stloc.2 <null> ldloc.1 <null> ldloc.0 <null> ldc.i4.1 <null> sub.ovf <null> ldstr resources/aximone call System.Byte[] ex9Ap1.in7W3NaoLgw/it7R0qDqi6gA8y.j_1GCsy3w::1Hgbmy5MZ(System.String) ldloc.2 <null> call System.Object ex9Ap1.Jc1ir3FiyYj6::jq2Qk4Go0Ykbm(System.Byte[],System.Int32) ldnull <null> ldstr ToArray ldc.i4.0 <null> newarr System.Object ldnull <null> ldnull <null> ldnull <null> call System.Object Microsoft.VisualBasic.CompilerServices.NewLateBinding::LateGet(System.Object,System.Type,System.String,System.Object[],System.String[],System.Type[],System.Boolean[]) call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stelem.ref <null> ldloc.1 <null> ldloc.0 <null> ldc.i4.6 <null> sub.ovf <null> ldtoken System.Reflection.Assembly call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) ldstr Load ldc.i4.s 24 ldnull <null> ldc.i4.1 <null> newarr System.Type dup <null> ldc.i4.0 <null> ldtoken System.Byte[] call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) stelem.ref <null> ldnull <null> call System.Reflection.MethodInfo System.Type::GetMethod(System.String,System.Reflection.BindingFlags,System.Reflection.Binder,System.Type[],System.Reflection.ParameterModifier[]) ldnull <null> ldc.i4.1 <null> newarr System.Object dup <null> ldc.i4.0 <null> ldloc.1 <null> ldloc.0 <null> ldc.i4.1 <null> sub.ovf <null> ldelem.ref <null> stelem.ref <null> callvirt System.Object System.Reflection.MethodBase::Invoke(System.Object,System.Object[]) call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stelem.ref <null> ldloc.1 <null> ldloc.0 <null> call System.Void ex9Ap1.Bxw84n/8kbNeC5eZds90.br0P7YgyAnc::8fnFT9i(System.Object[],System.Int32) nop <null> leave.s IL_00A6: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.3 <null> nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00A6: nop nop <null> ret <null>

Module Name

ex9Ap1

Full Name

ex9Ap1

EntryPoint

System.Void ex9Ap1.sDs48kWwQp/6DdyRks8rQ9i4.8Stgo0ePZyj3id::1QjogkZ5s8o()

Scope Name

ex9Ap1

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

ex9Ap1

Assembly Version

18.7.23.165

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

912

Main Method

System.Void ex9Ap1.sDs48kWwQp/6DdyRks8rQ9i4.8Stgo0ePZyj3id::1QjogkZ5s8o()

Main IL Instruction Count

76

Main IL

nop <null> nop <null> ldc.i4.s 24 stloc.0 <null> ldloc.0 <null> ldc.i4.1 <null> sub.ovf <null> ldc.i4.1 <null> add.ovf <null> newarr System.Object stloc.1 <null> ldc.i4 9032078 stloc.2 <null> ldloc.1 <null> ldloc.0 <null> ldc.i4.1 <null> sub.ovf <null> ldstr resources/aximone call System.Byte[] ex9Ap1.in7W3NaoLgw/it7R0qDqi6gA8y.j_1GCsy3w::1Hgbmy5MZ(System.String) ldloc.2 <null> call System.Object ex9Ap1.Jc1ir3FiyYj6::jq2Qk4Go0Ykbm(System.Byte[],System.Int32) ldnull <null> ldstr ToArray ldc.i4.0 <null> newarr System.Object ldnull <null> ldnull <null> ldnull <null> call System.Object Microsoft.VisualBasic.CompilerServices.NewLateBinding::LateGet(System.Object,System.Type,System.String,System.Object[],System.String[],System.Type[],System.Boolean[]) call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stelem.ref <null> ldloc.1 <null> ldloc.0 <null> ldc.i4.6 <null> sub.ovf <null> ldtoken System.Reflection.Assembly call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) ldstr Load ldc.i4.s 24 ldnull <null> ldc.i4.1 <null> newarr System.Type dup <null> ldc.i4.0 <null> ldtoken System.Byte[] call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) stelem.ref <null> ldnull <null> call System.Reflection.MethodInfo System.Type::GetMethod(System.String,System.Reflection.BindingFlags,System.Reflection.Binder,System.Type[],System.Reflection.ParameterModifier[]) ldnull <null> ldc.i4.1 <null> newarr System.Object dup <null> ldc.i4.0 <null> ldloc.1 <null> ldloc.0 <null> ldc.i4.1 <null> sub.ovf <null> ldelem.ref <null> stelem.ref <null> callvirt System.Object System.Reflection.MethodBase::Invoke(System.Object,System.Object[]) call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stelem.ref <null> ldloc.1 <null> ldloc.0 <null> call System.Void ex9Ap1.Bxw84n/8kbNeC5eZds90.br0P7YgyAnc::8fnFT9i(System.Object[],System.Int32) nop <null> leave.s IL_00A6: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.3 <null> nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00A6: nop nop <null> ret <null>

729c33511834266c3ef49e0b62c0e4ba (5.62 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙