Suspicious
Suspect

7ae9d64c120cf88a5d8079ec2542ca93

PE Executable
|
MD5: 7ae9d64c120cf88a5d8079ec2542ca93
|
Size: 66.05 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
7ae9d64c120cf88a5d8079ec2542ca93
Sha1
85e94cd8816fbf04766aeca538657e55d0ff812c
Sha256
f26b15aa89c33b3ceabfdbd1e2dbc1a1759587add95183baba90ca4d0607d6d2
Sha384
6ef627f8a4ace3a87cc7d478f39eca64c90a0a9058abe3eaab9ae4affa1779fd2bb88dc04e4294ea7d81dcf91ef29b9e
Sha512
d7f9c62196e74bc725b7ad900563870bba2f7f7e55d59435960782b8c6ad44e40a5ffeae075629db487a71128aa8f324850ec1e777d3ccc67e7e25cc18d348ad
SSDeep
1536:jqFca7c9rCoIUQM8sLTeXlGMsro8hDqw9dkj7IuXJFYDgn:Uc5+UQMqlGNk8hDqI87IufYS
TLSH
C2536B1CF7AE9222D76C497ADCE19904D3B8C6B2720AF32B4DE552BD38067E5D500F92

PeID

Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
yQSNV
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

DELIVERY ORDER HOLD BL NO. MEDUGZ048034 18X40 JPFL FILMS PVT LTD.exe

Full Name

DELIVERY ORDER HOLD BL NO. MEDUGZ048034 18X40 JPFL FILMS PVT LTD.exe

EntryPoint

System.Void  ::()

Scope Name

DELIVERY ORDER HOLD BL NO. MEDUGZ048034 18X40 JPFL FILMS PVT LTD.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

DELIVERY ORDER HOLD BL NO. MEDUGZ048034 18X40 JPFL FILMS PVT LTD

Assembly Version

1.0.3829.16424

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

11

Main Method

System.Void  ::()

Main IL Instruction Count

5

Main IL

newobj System.Void n::.ctor() call System.Byte[] n::a() call System.Byte[] h::a(System.Byte[]) call System.Void q::a(System.Byte[]) ret <null>

Module Name

DELIVERY ORDER HOLD BL NO. MEDUGZ048034 18X40 JPFL FILMS PVT LTD.exe

Full Name

DELIVERY ORDER HOLD BL NO. MEDUGZ048034 18X40 JPFL FILMS PVT LTD.exe

EntryPoint

System.Void  ::()

Scope Name

DELIVERY ORDER HOLD BL NO. MEDUGZ048034 18X40 JPFL FILMS PVT LTD.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

DELIVERY ORDER HOLD BL NO. MEDUGZ048034 18X40 JPFL FILMS PVT LTD

Assembly Version

1.0.3829.16424

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

11

Main Method

System.Void  ::()

Main IL Instruction Count

5

Main IL

newobj System.Void n::.ctor() call System.Byte[] n::a() call System.Byte[] h::a(System.Byte[]) call System.Void q::a(System.Byte[]) ret <null>

7ae9d64c120cf88a5d8079ec2542ca93 (66.05 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙