General
Structural Analysis
Config.0
Yara Rules21
Sync
Community
Summary by MalvaGPT
Characteristics
Symbol Ofbuscation Score
Low
|
Hash | Hash Value |
|---|---|
| MD5 | b3c2547d02fb49cb4d2b2a2ca101d938
|
| Sha1 | 1772f06feb32bc73d1e98f15174b4d89ee3c6c1c
|
| Sha256 | 1ffdf7d60a9ea155e01520d12ebfadbdca8b62d99ff925245c184499b34a75f5
|
| Sha384 | 75d3223f25e6405c2cc7407e30e9d44c25e943c1e38aa983b141b5dd602c0ab5181b5bd53c2633e4570ff23e27eece29
|
| Sha512 | b4f7dee6305b25bfc779e63ee789d4301019ae7052a16be3a291baac079eac37899121533e44167581acfbf54214fae8cfeb2fa9f3438a8fbc0a73b00a78809a
|
| SSDeep | 12288:NVFd/s2tpDPkER/caE25J+42dQizOUsyt8BYXx0tDUKGXnS6KMSfWIn6rn5R606q:1h7DPcr2i5XzOU56ECqXNInKbdyHNxu
|
| TLSH | 71459DB66A869F05CC3028B80B739BF99F6C0D17F510CA9359D6391BA9BC281345E377
|
File Structure
b3c2547d02fb49cb4d2b2a2ca101d938
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0005
ID:0
ID:0006
ID:0
ID:0007
ID:0
ID:0008
ID:0
ID:0009
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
.Net Resources
Faculdade_ProjectGame.FormProfile.resources
Faculdade_ProjectGame.FormMain.resources
$this.Icon
[NBF]root.IconData
F6
[NBF]root.Data
menuStrip1.TrayLocation
timer1.TrayLocation
timer2.TrayLocation
Faculdade_ProjectGame.Properties.Resources.resources
gbSq
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | PDB Path: C:\Users\Administrator\Desktop\Client\Temp\EwmIHikwzD\src\obj\Debug\cZjf.pdb |
| Module Name | cZjf.exe |
| Full Name | cZjf.exe |
| EntryPoint | System.Void Faculdade_ProjectGame.Program::Main() |
| Scope Name | cZjf.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | cZjf |
| Assembly Version | 2.1.5.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.5 |
| Total Strings | 131 |
| Main Method | System.Void Faculdade_ProjectGame.Program::Main() |
| Main IL Instruction Count | 6 |
| Main IL | call System.Void System.Windows.Forms.Application::EnableVisualStyles() ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) newobj System.Void Faculdade_ProjectGame.FormMain::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) ret <null> |
b3c2547d02fb49cb4d2b2a2ca101d938 (1.21 MB)
File Structure
b3c2547d02fb49cb4d2b2a2ca101d938
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0005
ID:0
ID:0006
ID:0
ID:0007
ID:0
ID:0008
ID:0
ID:0009
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
.Net Resources
Faculdade_ProjectGame.FormProfile.resources
Faculdade_ProjectGame.FormMain.resources
$this.Icon
[NBF]root.IconData
F6
[NBF]root.Data
menuStrip1.TrayLocation
timer1.TrayLocation
timer2.TrayLocation
Faculdade_ProjectGame.Properties.Resources.resources
gbSq
[NBF]root.Data
[NBF]root.Data-preview.png
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.