Suspicious
Suspect

822322c7680f2e216cf678131a9c8bc7

PE Executable
|
MD5: 822322c7680f2e216cf678131a9c8bc7
|
Size: 614.4 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
822322c7680f2e216cf678131a9c8bc7
Sha1
0074ec60eeb85a53cc6b443541367a10181358e9
Sha256
94976e161177276c6c1f03697f87bbbda781fedb937342a311728f51a3bce501
Sha384
e6287d315de558af647da9f5f14b1ba1d472526809b0a44e275cce43b574da4e1db16263c666ec3944973d31fa24cb80
Sha512
017a9bce7c84ce28a131169845768b6876c32b180b4961a5204424522e8fd251ab58d40c074016d9dbd77b1ac84122c88665544b94d7df484627e636f28b26df
SSDeep
12288:+gH0OW0npG4iTUTHZPYlubXYq0ZG5b/T8p5JVOX:+anplNYAboG5b/TW9g
TLSH
B2D412882397D513E5B157F08CA2E378236A6EE9A401D3078EEDEDD7B435B503E91682
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
LoremMaker.Forms.MainForm.resources
LoremMaker.Properties.Resources.resources
KS
[NBF]root.Data
yOXL
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: uSBt.pdb

Module Name

uSBt.exe

Full Name

uSBt.exe

EntryPoint

System.Void LoremMaker.Program::Main()

Scope Name

uSBt.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

uSBt

Assembly Version

0.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

350

Main Method

System.Void LoremMaker.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void LoremMaker.Forms.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

822322c7680f2e216cf678131a9c8bc7 (614.4 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
LoremMaker.Forms.MainForm.resources
LoremMaker.Properties.Resources.resources
KS
[NBF]root.Data
yOXL
[NBF]root.Data
[NBF]root.Data-preview.png
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙