Suspicious
Suspect

968957d65121b3fdfd1a935a9d87b0bb

PE Executable
|
MD5: 968957d65121b3fdfd1a935a9d87b0bb
|
Size: 833.54 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
968957d65121b3fdfd1a935a9d87b0bb
Sha1
2adb1e84b16f4e67ebdc4b3d1ecb3bc992856d81
Sha256
9ffa9e2811b32d5392d585c41d73158bcdd53f090f4b56652230353cb48dcc88
Sha384
9a908e95639ede4387750d7244cd121b0302925afbc8c146f18864d52dceacac1f4996c42ee680f9ee7cf057b7da0e84
Sha512
25b5486ad876067a77e208bde619071af1373cf3afcf4d46156e55161d214e9288faf04a27e55141395f3351df38bbc76ba07de7b48f95487be3990663090e11
SSDeep
12288:qrRUyA0DIYxfwFvu35mwGpsOwf1SVW0xNzMZCG1ctpyb9Ebx1/+1V9Y:gC14vxf8pRW0xKZCG1cK903OY
TLSH
FC05E03032AB9605D4665BB00C31D3F023B97E9DB914C74E6AE92E9FFD326135B113A6
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0.exif
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
StokTakip.BrandsManage.resources
$this.AutoScaleDimensions
$this.ClientSize
$this.Font
$this.Margin
btnCreateBrand.Location
btnCreateBrand.Size
btnDeleteBrand.Location
btnDeleteBrand.Size
groupBox1.Location
groupBox1.Size
lst_Brands.Dock
lst_Brands.Location
lst_Brands.Size
txtBrandName.Location
txtBrandName.Size
StokTakip.Form1.resources
$this.AutoScaleDimensions
$this.ClientSize
$this.Icon
[NBF]root.IconData
$this.Margin
$this.StartPosition
CTT
[NBF]root.Data
dilToolStripMenuItem.Font
dilToolStripMenuItem.Size
englishToolStripMenuItem.Size
markalarToolStripMenuItem.Size
menuStrip1.Size
menuStrip1.TrayLocation
satışToolStripMenuItem.Font
satışToolStripMenuItem.Size
tanımlarToolStripMenuItem.Size
StokTakip.PhoneCaseCreate.resources
$this.ClientSize
btn_AddStock.Location
btn_AddStock.Size
btn_Clear.ImeMode
btn_Clear.Location
btn_Clear.Size
btn_save.Location
btn_save.Size
cb_cases.Location
cb_cases.Size
cb_color.Location
label1.Location
label1.Size
label2.Location
label2.Size
label3.Location
label3.Size
label4.Location
label4.Size
label5.Location
label5.Size
label7.Location
label7.Size
label7.TextAlign
lbl_info.Font
lbl_info.Location
lbl_info.Size
nm_price.Location
nm_price.Size
nm_qty.Location
nm_qtyAdd.Location
tabControl1.Location
tabControl1.Size
tabPage1.Location
tabPage1.Padding
tabPage1.Size
tb_name.Location
StokTakip.PhoneCaseManage.resources
StokTakip.PhoneCreate.resources
$this.ClientSize
btn_Clear.Location
btn_save.Location
btn_save.Size
cb_brand.Location
label1.Location
label1.Size
label2.Location
label3.Location
label3.Size
label4.Location
label4.Size
label5.Location
label5.Size
label6.Location
nm_price.Location
tb_IMEI1.Location
tb_IMEI2.Location
tb_modelCode.Location
tb_name.Location
StokTakip.PhonesManage.resources
$this.ClientSize
btn_deletePhone.Location
btn_deletePhone.Size
btn_newPhone.Location
btn_newPhone.Size
filter_btn_search.Location
filter_btn_search.Size
filter_cb_brand.Size
filter_tb_modelcode.Location
filter_tb_modelcode.Size
grid_phones.Location
grid_phones.Size
StokTakip.Properties.Resources.resources
definitions
iconfinder_search_322497
[NBF]root.Data
[NBF]root.Data-preview.png
wVyr
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: C:\Users\Administrator\Desktop\Client\Temp\HnhAJcTADg\src\obj\Debug\sNAe.pdb

Module Name

sNAe.exe

Full Name

sNAe.exe

EntryPoint

System.Void StokTakip.Program::Main()

Scope Name

sNAe.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

sNAe

Assembly Version

0.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

255

Main Method

System.Void StokTakip.Program::Main()

Main IL Instruction Count

12

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> call System.Void StokTakip.Ayar::GetLatestLanguage() nop <null> newobj System.Void StokTakip.Form1::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

968957d65121b3fdfd1a935a9d87b0bb (833.54 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0.exif
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
StokTakip.BrandsManage.resources
$this.AutoScaleDimensions
$this.ClientSize
$this.Font
$this.Margin
btnCreateBrand.Location
btnCreateBrand.Size
btnDeleteBrand.Location
btnDeleteBrand.Size
groupBox1.Location
groupBox1.Size
lst_Brands.Dock
lst_Brands.Location
lst_Brands.Size
txtBrandName.Location
txtBrandName.Size
StokTakip.Form1.resources
$this.AutoScaleDimensions
$this.ClientSize
$this.Icon
[NBF]root.IconData
$this.Margin
$this.StartPosition
CTT
[NBF]root.Data
dilToolStripMenuItem.Font
dilToolStripMenuItem.Size
englishToolStripMenuItem.Size
markalarToolStripMenuItem.Size
menuStrip1.Size
menuStrip1.TrayLocation
satışToolStripMenuItem.Font
satışToolStripMenuItem.Size
tanımlarToolStripMenuItem.Size
StokTakip.PhoneCaseCreate.resources
$this.ClientSize
btn_AddStock.Location
btn_AddStock.Size
btn_Clear.ImeMode
btn_Clear.Location
btn_Clear.Size
btn_save.Location
btn_save.Size
cb_cases.Location
cb_cases.Size
cb_color.Location
label1.Location
label1.Size
label2.Location
label2.Size
label3.Location
label3.Size
label4.Location
label4.Size
label5.Location
label5.Size
label7.Location
label7.Size
label7.TextAlign
lbl_info.Font
lbl_info.Location
lbl_info.Size
nm_price.Location
nm_price.Size
nm_qty.Location
nm_qtyAdd.Location
tabControl1.Location
tabControl1.Size
tabPage1.Location
tabPage1.Padding
tabPage1.Size
tb_name.Location
StokTakip.PhoneCaseManage.resources
StokTakip.PhoneCreate.resources
$this.ClientSize
btn_Clear.Location
btn_save.Location
btn_save.Size
cb_brand.Location
label1.Location
label1.Size
label2.Location
label3.Location
label3.Size
label4.Location
label4.Size
label5.Location
label5.Size
label6.Location
nm_price.Location
tb_IMEI1.Location
tb_IMEI2.Location
tb_modelCode.Location
tb_name.Location
StokTakip.PhonesManage.resources
$this.ClientSize
btn_deletePhone.Location
btn_deletePhone.Size
btn_newPhone.Location
btn_newPhone.Size
filter_btn_search.Location
filter_btn_search.Size
filter_cb_brand.Size
filter_tb_modelcode.Location
filter_tb_modelcode.Size
grid_phones.Location
grid_phones.Size
StokTakip.Properties.Resources.resources
definitions
iconfinder_search_322497
[NBF]root.Data
[NBF]root.Data-preview.png
wVyr
[NBF]root.Data
[NBF]root.Data-preview.png
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙