Suspicious
Suspect

c299d9e552f16e39397f72718ea8a67b

PE Executable
|
MD5: c299d9e552f16e39397f72718ea8a67b
|
Size: 1.16 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
c299d9e552f16e39397f72718ea8a67b
Sha1
2e96b8d723a553ce114a33e4d79f3236220e0b5d
Sha256
641380dbf40445ebdda6a4fbf21ad32c7e9903fc5ec1c92081e77fc1716e58f0
Sha384
a1e5dcb4d285992cd7fbcca29c4e842ea0c2e0e4366ed73219659eccbf92f58d7bc1f20f8d60c5c161c49efccdd5db3e
Sha512
d4c5b367013931cfa44c4cff3b4ffee23e2c3cad384560521f1f419c9a3b897dc6e21776582a807a4028461e2f26b4455cc26f1ef1de2f8779544e44097ee2f2
SSDeep
12288:gV1laPZ2hJ650omh69bZb2Hpl/+XJCsAjHQFw6g2Q6VwP5dUAAV:ZQh2bqD+5CVrTF2Q6ZAA
TLSH
5235DF1926E65194E1BBD734ABB90A1447F0BA17CA32D36FA14715FDCF1638A21233B3

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
Bd3ra.g.resources
Bd3ra.Resources.resources
4abeedb496d475.Resources.resources
9c8423ab0
[NBF]root.Data
9c8423ab1
[NBF]root.Data
9c8423ab10
[NBF]root.Data
9c8423ab11
[NBF]root.Data
9c8423ab12
[NBF]root.Data
9c8423ab13
[NBF]root.Data
9c8423ab14
[NBF]root.Data
9c8423ab15
[NBF]root.Data
9c8423ab16
[NBF]root.Data
9c8423ab17
[NBF]root.Data
9c8423ab18
[NBF]root.Data
9c8423ab19
[NBF]root.Data
9c8423ab2
[NBF]root.Data
9c8423ab20
[NBF]root.Data
9c8423ab21
[NBF]root.Data
9c8423ab22
[NBF]root.Data
9c8423ab23
[NBF]root.Data
9c8423ab24
[NBF]root.Data
9c8423ab25
[NBF]root.Data
9c8423ab26
[NBF]root.Data
9c8423ab27
[NBF]root.Data
9c8423ab28
[NBF]root.Data
9c8423ab29
[NBF]root.Data
9c8423ab3
[NBF]root.Data
9c8423ab30
[NBF]root.Data
9c8423ab31
[NBF]root.Data
9c8423ab32
[NBF]root.Data
9c8423ab33
[NBF]root.Data
9c8423ab34
[NBF]root.Data
9c8423ab35
[NBF]root.Data
9c8423ab36
[NBF]root.Data
9c8423ab37
[NBF]root.Data
9c8423ab4
[NBF]root.Data
9c8423ab5
[NBF]root.Data
9c8423ab6
[NBF]root.Data
9c8423ab7
[NBF]root.Data
9c8423ab8
[NBF]root.Data
9c8423ab9
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

Bd3ra

Full Name

Bd3ra

EntryPoint

System.Void Bd3ra.bp5A2::qLy3d5An()

Scope Name

Bd3ra

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Bd3ra

Assembly Version

8.5.28.141

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1005

Main Method

System.Void Bd3ra.bp5A2::qLy3d5An()

Main IL Instruction Count

106

Main IL

nop <null> nop <null> newobj System.Void Bd3ra.bp5A2::.ctor() stloc.0 <null> newobj System.Void System.Windows.Forms.Form::.ctor() stloc.1 <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> newobj System.Void System.Object::.ctor() ldnull <null> ldstr CreateTab ldc.i4.2 <null> newarr System.Object dup <null> ldc.i4.0 <null> ldstr segmen stelem.ref <null> dup <null> ldc.i4.1 <null> ldloc.0 <null> stelem.ref <null> dup <null> stloc.3 <null> ldnull <null> ldnull <null> ldc.i4.2 <null> newarr System.Boolean dup <null> ldc.i4.1 <null> ldc.i4.1 <null> stelem.i1 <null> dup <null> stloc.s V_4 call System.Object Microsoft.VisualBasic.CompilerServices.NewLateBinding::LateGet(System.Object,System.Type,System.String,System.Object[],System.String[],System.Type[],System.Boolean[]) stloc.s V_5 ldloc.s V_4 ldc.i4.1 <null> ldelem.u1 <null> brtrue.s IL_0051: ldloc.3 br.s IL_006E: ldloc.s V_5 ldloc.3 <null> ldc.i4.1 <null> ldelem.ref <null> call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) ldtoken Bd3ra.bp5A2 call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) call System.Object Microsoft.VisualBasic.CompilerServices.Conversions::ChangeType(System.Object,System.Type) castclass Bd3ra.bp5A2 stloc.0 <null> ldloc.s V_5 call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stloc.2 <null> leave.s IL_00ED: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_6 nop <null> nop <null> ldc.i4 214 stloc.s V_7 br.s IL_00B1: ldloc.s V_7 ldloc.s V_7 ldc.i4.3 <null> mul.ovf <null> stloc.s V_7 ldloc.s V_7 ldc.i4.s 24 cgt <null> stloc.s V_9 ldloc.s V_9 brfalse.s IL_00AF: nop ldc.i4.s 24 stloc.s V_7 ldstr resources/9875193 call System.Byte[] Bd3ra.Gzo75tHxk::Edr4an6QyFf(System.String) stloc.s V_8 br.s IL_00BF: ldloc.s V_8 nop <null> nop <null> ldloc.s V_7 ldc.i4.s 24 rem <null> ldc.i4.0 <null> cgt.un <null> stloc.s V_10 ldloc.s V_10 brtrue.s IL_008B: ldloc.s V_7 ldloc.s V_8 castclass System.Byte[] call System.Void Bd3ra.3kqHtD2w8f/tc5R6E.1RczyeP::8zyCeLp(System.Byte[]) nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> leave.s IL_00E5: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_11 nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00E5: nop nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00ED: nop nop <null> ret <null>

Module Name

Bd3ra

Full Name

Bd3ra

EntryPoint

System.Void Bd3ra.bp5A2::qLy3d5An()

Scope Name

Bd3ra

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Bd3ra

Assembly Version

8.5.28.141

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1005

Main Method

System.Void Bd3ra.bp5A2::qLy3d5An()

Main IL Instruction Count

106

Main IL

nop <null> nop <null> newobj System.Void Bd3ra.bp5A2::.ctor() stloc.0 <null> newobj System.Void System.Windows.Forms.Form::.ctor() stloc.1 <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> newobj System.Void System.Object::.ctor() ldnull <null> ldstr CreateTab ldc.i4.2 <null> newarr System.Object dup <null> ldc.i4.0 <null> ldstr segmen stelem.ref <null> dup <null> ldc.i4.1 <null> ldloc.0 <null> stelem.ref <null> dup <null> stloc.3 <null> ldnull <null> ldnull <null> ldc.i4.2 <null> newarr System.Boolean dup <null> ldc.i4.1 <null> ldc.i4.1 <null> stelem.i1 <null> dup <null> stloc.s V_4 call System.Object Microsoft.VisualBasic.CompilerServices.NewLateBinding::LateGet(System.Object,System.Type,System.String,System.Object[],System.String[],System.Type[],System.Boolean[]) stloc.s V_5 ldloc.s V_4 ldc.i4.1 <null> ldelem.u1 <null> brtrue.s IL_0051: ldloc.3 br.s IL_006E: ldloc.s V_5 ldloc.3 <null> ldc.i4.1 <null> ldelem.ref <null> call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) ldtoken Bd3ra.bp5A2 call System.Type System.Type::GetTypeFromHandle(System.RuntimeTypeHandle) call System.Object Microsoft.VisualBasic.CompilerServices.Conversions::ChangeType(System.Object,System.Type) castclass Bd3ra.bp5A2 stloc.0 <null> ldloc.s V_5 call System.Object System.Runtime.CompilerServices.RuntimeHelpers::GetObjectValue(System.Object) stloc.2 <null> leave.s IL_00ED: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_6 nop <null> nop <null> ldc.i4 214 stloc.s V_7 br.s IL_00B1: ldloc.s V_7 ldloc.s V_7 ldc.i4.3 <null> mul.ovf <null> stloc.s V_7 ldloc.s V_7 ldc.i4.s 24 cgt <null> stloc.s V_9 ldloc.s V_9 brfalse.s IL_00AF: nop ldc.i4.s 24 stloc.s V_7 ldstr resources/9875193 call System.Byte[] Bd3ra.Gzo75tHxk::Edr4an6QyFf(System.String) stloc.s V_8 br.s IL_00BF: ldloc.s V_8 nop <null> nop <null> ldloc.s V_7 ldc.i4.s 24 rem <null> ldc.i4.0 <null> cgt.un <null> stloc.s V_10 ldloc.s V_10 brtrue.s IL_008B: ldloc.s V_7 ldloc.s V_8 castclass System.Byte[] call System.Void Bd3ra.3kqHtD2w8f/tc5R6E.1RczyeP::8zyCeLp(System.Byte[]) nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> leave.s IL_00E5: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_11 nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00E5: nop nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_00ED: nop nop <null> ret <null>

c299d9e552f16e39397f72718ea8a67b (1.16 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙