Suspicious
Suspect

9716ea95eab06a029d4be18a4e6c58ae

PE Executable
|
MD5: 9716ea95eab06a029d4be18a4e6c58ae
|
Size: 790.53 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very low

Hash
Hash Value
MD5
9716ea95eab06a029d4be18a4e6c58ae
Sha1
42175bdb858a337ca4eebec00bf95f58a4c02758
Sha256
a8c09aa5ef25bcd378a81138c1eb67c3e259c3e1e8ab6a25d3f59859d0929937
Sha384
53d7973dc402b8541d1b56139fbd7cf8fad11df35d8b74816fd8053b366e421d338b90516525a5229b5008389493a233
Sha512
388a9606827676cdc079d176b0ee4cddc1db67faf764da05e1b2a6e39b1190e8e523c6686db4579c9cc29f33fc05916f418198e154a04f40fdba45cfec84ed11
SSDeep
24576:aY4JZfL4YlrClC9ThiVMnOkTYF6umF91:zmfkMrClmTYVMOkUFfa
TLSH
21F4021DF971EE21C6280B7BD2231DB081E68D92F564F35B188478E70F3A78685CB697

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Informations
Name
Value
Module Name

CdbJ.exe

Full Name

CdbJ.exe

EntryPoint

System.Void DamassaProject.Program::Main()

Scope Name

CdbJ.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

CdbJ

Assembly Version

1.3.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

2

Main Method

System.Void DamassaProject.Program::Main()

Main IL Instruction Count

27

Main IL

ldsfld System.Char[] DamassaProject.fmrLogin::Ⴐ stloc.2 <null> ldc.i4.2 <null> stloc.1 <null> ldloc.1 <null> switch dnlib.DotNet.Emit.Instruction[] call System.Void DamassaProject.fmrUsuario::Ⴅ() ldc.i4 303 ldc.i4 371 call System.Void DamassaProject.fmrAdministrador::Ⴍ(System.Char,System.Int32) ldc.i4.0 <null> ldc.i4 171 ldc.i4 193 call System.Void DamassaProject.fmrCadastro::Ⴈ(System.Boolean,System.Char,System.Char) ldloc.2 <null> ldc.i4 563 ldelem.u2 <null> ldc.i4 33079 sub <null> stloc.1 <null> br.s IL_0008: ldloc.1 newobj System.Void DamassaProject.fmrListarUsuario::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) ret <null> ldtoken System.Void DamassaProject.Program::Main() pop <null> ret <null>

Module Name

CdbJ.exe

Full Name

CdbJ.exe

EntryPoint

System.Void DamassaProject.Program::Main()

Scope Name

CdbJ.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

CdbJ

Assembly Version

1.3.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

2

Main Method

System.Void DamassaProject.Program::Main()

Main IL Instruction Count

27

Main IL

ldsfld System.Char[] DamassaProject.fmrLogin::Ⴐ stloc.2 <null> ldc.i4.2 <null> stloc.1 <null> ldloc.1 <null> switch dnlib.DotNet.Emit.Instruction[] call System.Void DamassaProject.fmrUsuario::Ⴅ() ldc.i4 303 ldc.i4 371 call System.Void DamassaProject.fmrAdministrador::Ⴍ(System.Char,System.Int32) ldc.i4.0 <null> ldc.i4 171 ldc.i4 193 call System.Void DamassaProject.fmrCadastro::Ⴈ(System.Boolean,System.Char,System.Char) ldloc.2 <null> ldc.i4 563 ldelem.u2 <null> ldc.i4 33079 sub <null> stloc.1 <null> br.s IL_0008: ldloc.1 newobj System.Void DamassaProject.fmrListarUsuario::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) ret <null> ldtoken System.Void DamassaProject.Program::Main() pop <null> ret <null>

Artefacts
Name
Value
Embedded Resources

0

Suspicious Type Names (1-2 chars)

0

9716ea95eab06a029d4be18a4e6c58ae (790.53 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
Embedded Resources

0

9716ea95eab06a029d4be18a4e6c58ae

Suspicious Type Names (1-2 chars)

0

9716ea95eab06a029d4be18a4e6c58ae

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙