Suspicious
Suspect

c0d884f9e123316c4524f0f0a41cad7a

PE Executable
|
MD5: c0d884f9e123316c4524f0f0a41cad7a
|
Size: 685.06 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
c0d884f9e123316c4524f0f0a41cad7a
Sha1
9d65157dbe69634f9b81f109b774326133b5003b
Sha256
7159bc1eed5f336a6b4ced415ea0db837dc13f776c09c2ac48848e020d2d8b4c
Sha384
38b0016384ac7221eeb640fa8a3b38c30b07e85acd02a657c14ed6aab107abf3c3b8bec844216d66638d928c006fb436
Sha512
dab5b9757a038f71740bc48bb739a2eb388c286c5e3558e29971099bd44b14e6aeb2c941a7d6931a5c73c998a4ca8c6c824db030b257eefec09d31b320d7186f
SSDeep
12288:zs3RjULm9c5YpdP1wweQSoEhY7hMqkLL7VktNlfwjAGNf3vGhEZ3/o1iDaE6cStE:z6tkm9c5YdRN7bkHpkBfwEevtVo1in1
TLSH
CFE4021A3A28D717E675ABB958B2D674037E6DAEA420D30B4ED97CEB7477B000C44393
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
UnitConvert.BidirectionalConverterForm.resources
UnitConvert.Properties.Resources.resources
NeDG
[NBF]root.Data
[NBF]root.Data-preview.png
de
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: EAFS.pdb

Module Name

EAFS.exe

Full Name

EAFS.exe

EntryPoint

System.Void UnitConvert.Program::Main()

Scope Name

EAFS.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

EAFS

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

387

Main Method

System.Void UnitConvert.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void UnitConvert.MainMenuForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

c0d884f9e123316c4524f0f0a41cad7a (685.06 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙