Suspicious
Suspect

7706808ce47cc70857f4c96a204b2e14

PE Executable
|
MD5: 7706808ce47cc70857f4c96a204b2e14
|
Size: 1.24 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
7706808ce47cc70857f4c96a204b2e14
Sha1
c1d677fb4e1073b2ec3779bcad16f0b235fbc7cc
Sha256
594c365596c21b70b4e929a54e88f0abdc2f8641956817881418a57508484912
Sha384
86878407e075cae3f0d484733e1a05d3695033bacb15a6e014c0a875cea34440901cf4a444c2e88daff527a50ebd46ce
Sha512
8fbe4c04ef80c38029c69d35e121bbbd5020068a189bdbe7fd305b971ab31dc7890b7676e7aea2ee1a8c1bd87b4d4e372b29d4f779e0bab28bfce34914c225be
SSDeep
24576:WQh2b2mzd3LXvlvCP2erAGJgpZCK/GfJAS:ZIqmZbXt6P2eUnQAS
TLSH
AE45D01926D69194E0BBDB34EBB90A1443F0BA17CA32D76FA14615FDCF1639A21133B3

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
pz3P5.g.resources
pz3P5.Resources.resources
43ca32b812ac56.Resources.resources
642796420
[NBF]root.Data
642796421
[NBF]root.Data
6427964210
[NBF]root.Data
6427964211
[NBF]root.Data
6427964212
[NBF]root.Data
6427964213
[NBF]root.Data
6427964214
[NBF]root.Data
6427964215
[NBF]root.Data
6427964216
[NBF]root.Data
6427964217
[NBF]root.Data
6427964218
[NBF]root.Data
6427964219
[NBF]root.Data
642796422
[NBF]root.Data
6427964220
[NBF]root.Data
6427964221
[NBF]root.Data
6427964222
[NBF]root.Data
6427964223
[NBF]root.Data
6427964224
[NBF]root.Data
6427964225
[NBF]root.Data
6427964226
[NBF]root.Data
6427964227
[NBF]root.Data
6427964228
[NBF]root.Data
6427964229
[NBF]root.Data
642796423
[NBF]root.Data
6427964230
[NBF]root.Data
6427964231
[NBF]root.Data
6427964232
[NBF]root.Data
6427964233
[NBF]root.Data
6427964234
[NBF]root.Data
6427964235
[NBF]root.Data
6427964236
[NBF]root.Data
6427964237
[NBF]root.Data
6427964238
[NBF]root.Data
6427964239
[NBF]root.Data
642796424
[NBF]root.Data
6427964240
[NBF]root.Data
6427964241
[NBF]root.Data
6427964242
[NBF]root.Data
642796425
[NBF]root.Data
642796426
[NBF]root.Data
642796427
[NBF]root.Data
642796428
[NBF]root.Data
642796429
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

pz3P5

Full Name

pz3P5

EntryPoint

System.Void pz3P5.3exSTe4jcmM1Ds::7Wecn8Pid()

Scope Name

pz3P5

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

pz3P5

Assembly Version

7.25.46.162

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1005

Main Method

System.Void pz3P5.3exSTe4jcmM1Ds::7Wecn8Pid()

Main IL Instruction Count

106

Main IL

nop <null> nop <null> newobj System.Void pz3P5.3exSTe4jcmM1Ds::.ctor() stloc.0 <null> newobj System.Void System.Windows.Forms.Form::.ctor() stloc.1 <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> newobj System.Void System.Object::.ctor() ldnull <null> ldstr CreateTab ldc.i4.2 <null> newarr System.Object dup <null> ldc.i4.0 <null> ldstr segmen stelem.ref <null> dup <null> ldc.i4.1 <null> ldloc.0 <null> stelem.ref <null> dup <null> stloc.3 <null> ldnull <null> ldnull <null> ldc.i4.2 <null> newarr System.Boolean dup <null> ldc.i4.1 <null> ldc.i4.1 <null> stelem.i1 <null> dup <null> stloc.s V_4 call System.Object Microsoft.VisualBasic.CompilerServices.NewLateBinding::LateGet(System.Object,System.Type,System.String,System.Object[],System.String[],System.Type[],System.Boolean[]) stloc.s V_5 ldloc.s V_4 ldc.i4.1 <null> ldelem.u1 <null> brtrue.s IL_0051: ldloc.3 br.s IL_006E: ldloc.s V_5 ldloc.3 <null> ldc.i4.1 <null> ldelem.ref <null> call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) ldtoken pz3P5.3exSTe4jcmM1Ds call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) call System.Object Microsoft.VisualBasic.CompilerServices.Conversions::ChangeType(System.Object,System.Type) castclass pz3P5.3exSTe4jcmM1Ds stloc.0 <null> ldloc.s V_5 call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stloc.2 <null> leave.s IL_00ED: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_6 nop <null> nop <null> ldc.i4 214 stloc.s V_7 br.s IL_00B1: ldloc.s V_7 ldloc.s V_7 ldc.i4.3 <null> mul.ovf <null> stloc.s V_7 ldloc.s V_7 ldc.i4.s 24 cgt <null> stloc.s V_9 ldloc.s V_9 brfalse.s IL_00AF: nop ldc.i4.s 24 stloc.s V_7 ldstr resources/9875193 call System.Byte[] pz3P5.Rc4xnXt::2Lbrtc(System.String) stloc.s V_8 br.s IL_00BF: ldloc.s V_8 nop <null> nop <null> ldloc.s V_7 ldc.i4.s 24 rem <null> ldc.i4.0 <null> cgt.un <null> stloc.s V_10 ldloc.s V_10 brtrue.s IL_008B: ldloc.s V_7 ldloc.s V_8 castclass System.Byte[] call System.Void pz3P5.Kd4ri1Emws8L5s/we0MdJq5Ra2j.2YcqMe8xfTz6::Gek1c5W(System.Byte[]) nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> leave.s IL_00E5: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_11 nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00E5: nop nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00ED: nop nop <null> ret <null>

Module Name

pz3P5

Full Name

pz3P5

EntryPoint

System.Void pz3P5.3exSTe4jcmM1Ds::7Wecn8Pid()

Scope Name

pz3P5

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

pz3P5

Assembly Version

7.25.46.162

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1005

Main Method

System.Void pz3P5.3exSTe4jcmM1Ds::7Wecn8Pid()

Main IL Instruction Count

106

Main IL

nop <null> nop <null> newobj System.Void pz3P5.3exSTe4jcmM1Ds::.ctor() stloc.0 <null> newobj System.Void System.Windows.Forms.Form::.ctor() stloc.1 <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> newobj System.Void System.Object::.ctor() ldnull <null> ldstr CreateTab ldc.i4.2 <null> newarr System.Object dup <null> ldc.i4.0 <null> ldstr segmen stelem.ref <null> dup <null> ldc.i4.1 <null> ldloc.0 <null> stelem.ref <null> dup <null> stloc.3 <null> ldnull <null> ldnull <null> ldc.i4.2 <null> newarr System.Boolean dup <null> ldc.i4.1 <null> ldc.i4.1 <null> stelem.i1 <null> dup <null> stloc.s V_4 call System.Object Microsoft.VisualBasic.CompilerServices.NewLateBinding::LateGet(System.Object,System.Type,System.String,System.Object[],System.String[],System.Type[],System.Boolean[]) stloc.s V_5 ldloc.s V_4 ldc.i4.1 <null> ldelem.u1 <null> brtrue.s IL_0051: ldloc.3 br.s IL_006E: ldloc.s V_5 ldloc.3 <null> ldc.i4.1 <null> ldelem.ref <null> call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) ldtoken pz3P5.3exSTe4jcmM1Ds call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) call System.Object Microsoft.VisualBasic.CompilerServices.Conversions::ChangeType(System.Object,System.Type) castclass pz3P5.3exSTe4jcmM1Ds stloc.0 <null> ldloc.s V_5 call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stloc.2 <null> leave.s IL_00ED: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_6 nop <null> nop <null> ldc.i4 214 stloc.s V_7 br.s IL_00B1: ldloc.s V_7 ldloc.s V_7 ldc.i4.3 <null> mul.ovf <null> stloc.s V_7 ldloc.s V_7 ldc.i4.s 24 cgt <null> stloc.s V_9 ldloc.s V_9 brfalse.s IL_00AF: nop ldc.i4.s 24 stloc.s V_7 ldstr resources/9875193 call System.Byte[] pz3P5.Rc4xnXt::2Lbrtc(System.String) stloc.s V_8 br.s IL_00BF: ldloc.s V_8 nop <null> nop <null> ldloc.s V_7 ldc.i4.s 24 rem <null> ldc.i4.0 <null> cgt.un <null> stloc.s V_10 ldloc.s V_10 brtrue.s IL_008B: ldloc.s V_7 ldloc.s V_8 castclass System.Byte[] call System.Void pz3P5.Kd4ri1Emws8L5s/we0MdJq5Ra2j.2YcqMe8xfTz6::Gek1c5W(System.Byte[]) nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> leave.s IL_00E5: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_11 nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00E5: nop nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00ED: nop nop <null> ret <null>

7706808ce47cc70857f4c96a204b2e14 (1.24 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙