Suspicious
Suspect

7479900388524599256895898da52666

PE Executable
|
MD5: 7479900388524599256895898da52666
|
Size: 494.59 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
7479900388524599256895898da52666
Sha1
df6b2d1084d5284ed6dab7c5eb5af3b2384f378c
Sha256
bb137c100b1bdff7e0ec53d8c241cbb48c36053ce42b28e0bde597ee44bd6436
Sha384
5de6f7ee83d72eef37b04478ae63eda643ed8b66fb188ec23fb09b80817b2c0402827b4560e6f5519070e3708424c181
Sha512
6afda33568047a54a3be8a03fa469fc57aeaf2be0dbbe39a30ca412f586ee14c751159f258b5d0e35e675b2ce38cdd3ed210a01cab3cf8e9db75e9246cbaba49
SSDeep
6144:zWqtW71gnKXkep2sNbq4TydaFJ1a0nAKVpLqlftDOp+yOjxd25qMCRnN7C6aqy+b:zWq61g252Ybv2daD1xAKrLUfZOQyMs
TLSH
96B49D2023E88A54F5FF5779893105258BF1FC13D732D76EAAA480DD0E72B81CA66727

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
Xji84DkdAic1ae.g.resources
Xji84DkdAic1ae.Resources.resources
5ff6c6e4ff5a3b.Resources.resources
26e20a420
[NBF]root.Data
26e20a421
[NBF]root.Data
26e20a422
[NBF]root.Data
26e20a423
[NBF]root.Data
26e20a424
[NBF]root.Data
26e20a425
[NBF]root.Data
26e20a426
[NBF]root.Data
26e20a427
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

Xji84DkdAic1ae

Full Name

Xji84DkdAic1ae

EntryPoint

System.Void Xji84DkdAic1ae.oLm5P6dgp/nq2N6R_dz.0Xf_xwZ::2iaMdJ7mYg()

Scope Name

Xji84DkdAic1ae

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Xji84DkdAic1ae

Assembly Version

22.4.3.132

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1253

Main Method

System.Void Xji84DkdAic1ae.oLm5P6dgp/nq2N6R_dz.0Xf_xwZ::2iaMdJ7mYg()

Main IL Instruction Count

22

Main IL

nop <null> call System.Threading.Thread System.Threading.Thread::get_CurrentThread() call System.Globalization.CultureInfo System.Globalization.CultureInfo::get_InvariantCulture() callvirt System.Void System.Threading.Thread::set_CurrentCulture(System.Globalization.CultureInfo) nop <null> call System.Threading.Thread System.Threading.Thread::get_CurrentThread() call System.Globalization.CultureInfo System.Globalization.CultureInfo::get_InvariantCulture() callvirt System.Void System.Threading.Thread::set_CurrentUICulture(System.Globalization.CultureInfo) nop <null> nop <null> call System.Void Xji84DkdAic1ae.oLm5P6dgp::9xaQi0Tk1C() nop <null> leave.s IL_0037: nop call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_0037: nop nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> ret <null>

Module Name

Xji84DkdAic1ae

Full Name

Xji84DkdAic1ae

EntryPoint

System.Void Xji84DkdAic1ae.oLm5P6dgp/nq2N6R_dz.0Xf_xwZ::2iaMdJ7mYg()

Scope Name

Xji84DkdAic1ae

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Xji84DkdAic1ae

Assembly Version

22.4.3.132

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1253

Main Method

System.Void Xji84DkdAic1ae.oLm5P6dgp/nq2N6R_dz.0Xf_xwZ::2iaMdJ7mYg()

Main IL Instruction Count

22

Main IL

nop <null> call System.Threading.Thread System.Threading.Thread::get_CurrentThread() call System.Globalization.CultureInfo System.Globalization.CultureInfo::get_InvariantCulture() callvirt System.Void System.Threading.Thread::set_CurrentCulture(System.Globalization.CultureInfo) nop <null> call System.Threading.Thread System.Threading.Thread::get_CurrentThread() call System.Globalization.CultureInfo System.Globalization.CultureInfo::get_InvariantCulture() callvirt System.Void System.Threading.Thread::set_CurrentUICulture(System.Globalization.CultureInfo) nop <null> nop <null> call System.Void Xji84DkdAic1ae.oLm5P6dgp::9xaQi0Tk1C() nop <null> leave.s IL_0037: nop call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_0037: nop nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> ret <null>

7479900388524599256895898da52666 (494.59 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
Xji84DkdAic1ae.g.resources
Xji84DkdAic1ae.Resources.resources
5ff6c6e4ff5a3b.Resources.resources
26e20a420
[NBF]root.Data
26e20a421
[NBF]root.Data
26e20a422
[NBF]root.Data
26e20a423
[NBF]root.Data
26e20a424
[NBF]root.Data
26e20a425
[NBF]root.Data
26e20a426
[NBF]root.Data
26e20a427
[NBF]root.Data
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙