Suspicious
Suspect

88c1bd307cb11e6e2ef25d59273b7cd7

PE Executable
|
MD5: 88c1bd307cb11e6e2ef25d59273b7cd7
|
Size: 1.55 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Low

Hash
Hash Value
MD5
88c1bd307cb11e6e2ef25d59273b7cd7
Sha1
bdbed7d600f8741927e026d709e7993c601aabdb
Sha256
08761722c1c51fe2f880bad2c5a2ec108dcf5c398a3e2a2bdda3b16afd45d36d
Sha384
67b572b2137c438659b28efff5e950bbde443a53d527e4b876d3983b8fcd8deb32092351dcfe9d444cd7ff9023d6f374
Sha512
7c85bbc4491dde8ff146d73c0c81fc9b662941cbf436074e8548ff795d28e8be93d7d4fd6ce4a577db9858e43f6ef6523b77154e6352f34fda2f048ecf430800
SSDeep
24576:64L3Jw41KbmB9XpNGPEH9h1m+i2X5EMe2coUncVVUy9Ofz9FonkJn:9C41KbyBGPEH9h13JEMe2coUVf8nS
TLSH
EF65236412DEEE12ED9523705E22D17637F11DAF6422EB438EE92CEB35217C22D852D3
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
CalculatorPlus.Properties.Resources.resources
FU
[NBF]root.Data
oHHS
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: nwNn.pdb

Module Name

nwNn.exe

Full Name

nwNn.exe

EntryPoint

System.Void CalculatorPlus.Program::Main()

Scope Name

nwNn.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

nwNn

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

271

Main Method

System.Void CalculatorPlus.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void CalculatorPlus.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

88c1bd307cb11e6e2ef25d59273b7cd7 (1.55 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙