Suspicious
Suspect

cb021ba451c2c7d87025e965ecc8b39f

PE Executable
|
MD5: cb021ba451c2c7d87025e965ecc8b39f
|
Size: 1.71 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Obfuscation Score

Very high

Hash
Hash Value
MD5
cb021ba451c2c7d87025e965ecc8b39f
Sha1
c9255df5ef638d4e3db32db018adce1781234ba6
Sha256
4abd169c2e8280b1e13b34af291b91138473bafd4b996ce020363f52371d77b6
Sha384
f6eb425b51fd9c5eeb325227820487adacd3c846f74844e1864d827114f4d29b0a03c1b1b94cf43e219692e122346e07
Sha512
63acc688444a1b5a8f7504a4a12ce836289ad3abab8a3ef29d2902bca91c11042e81e3d689bf6abcf1cfe8476751db6e299a3463e9d808c206a423b58bc4272e
SSDeep
24576:LVqY5bM9XFHlRUIeB/eG9B6VjqIkcSAF9l:J1ZMnMB/IV+I7X
TLSH
3485022523894778E9BE6B3484FB562093F0BDCBC736D72EA59C60FD0921F599680723

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
Borgarel.gilrani.rex
xHe3r5Cq8kp.Resources.resources
90f13e86e2b766.Resources.resources
3731d9350
[NBF]root.Data
3731d9351
[NBF]root.Data
3731d93510
[NBF]root.Data
3731d93511
[NBF]root.Data
3731d93512
[NBF]root.Data
3731d93513
[NBF]root.Data
3731d93514
[NBF]root.Data
3731d93515
[NBF]root.Data
3731d93516
[NBF]root.Data
3731d93517
[NBF]root.Data
3731d93518
[NBF]root.Data
3731d93519
[NBF]root.Data
3731d9352
[NBF]root.Data
3731d93520
[NBF]root.Data
3731d93521
[NBF]root.Data
3731d93522
[NBF]root.Data
3731d93523
[NBF]root.Data
3731d93524
[NBF]root.Data
3731d93525
[NBF]root.Data
3731d93526
[NBF]root.Data
3731d93527
[NBF]root.Data
3731d93528
[NBF]root.Data
3731d93529
[NBF]root.Data
3731d9353
[NBF]root.Data
3731d93530
[NBF]root.Data
3731d93531
[NBF]root.Data
3731d93532
[NBF]root.Data
3731d93533
[NBF]root.Data
3731d93534
[NBF]root.Data
3731d93535
[NBF]root.Data
3731d93536
[NBF]root.Data
3731d93537
[NBF]root.Data
3731d93538
[NBF]root.Data
3731d93539
[NBF]root.Data
3731d9354
[NBF]root.Data
3731d93540
[NBF]root.Data
3731d93541
[NBF]root.Data
3731d93542
[NBF]root.Data
3731d93543
[NBF]root.Data
3731d93544
[NBF]root.Data
3731d93545
[NBF]root.Data
3731d93546
[NBF]root.Data
3731d93547
[NBF]root.Data
3731d93548
[NBF]root.Data
3731d93549
[NBF]root.Data
3731d9355
[NBF]root.Data
3731d93550
[NBF]root.Data
3731d93551
[NBF]root.Data
3731d93552
[NBF]root.Data
3731d93553
[NBF]root.Data
3731d93554
[NBF]root.Data
3731d93555
[NBF]root.Data
3731d93556
[NBF]root.Data
3731d93557
[NBF]root.Data
3731d93558
[NBF]root.Data
3731d93559
[NBF]root.Data
3731d9356
[NBF]root.Data
3731d93560
[NBF]root.Data
3731d93561
[NBF]root.Data
3731d93562
[NBF]root.Data
3731d93563
[NBF]root.Data
3731d93564
[NBF]root.Data
3731d93565
[NBF]root.Data
3731d9357
[NBF]root.Data
3731d9358
[NBF]root.Data
3731d9359
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

xHe3r5Cq8kp

Full Name

xHe3r5Cq8kp

EntryPoint

System.Void xHe3r5Cq8kp.pj9BS2i_yM4ec::3Xtbxs()

Scope Name

xHe3r5Cq8kp

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

xHe3r5Cq8kp

Assembly Version

9.20.29.292

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

720

Main Method

System.Void xHe3r5Cq8kp.pj9BS2i_yM4ec::3Xtbxs()

Main IL Instruction Count

15

Main IL

nop <null> nop <null> ldstr gilrani.rex call System.Void xHe3r5Cq8kp.2Komk5iNJsn7y9/eYn3A4bxwxE.3acMbJg61msZ::Jg7p0z(System.String) nop <null> leave.s IL_0023: nop call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_0023: nop nop <null> ret <null>

Module Name

xHe3r5Cq8kp

Full Name

xHe3r5Cq8kp

EntryPoint

System.Void xHe3r5Cq8kp.pj9BS2i_yM4ec::3Xtbxs()

Scope Name

xHe3r5Cq8kp

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

xHe3r5Cq8kp

Assembly Version

9.20.29.292

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

720

Main Method

System.Void xHe3r5Cq8kp.pj9BS2i_yM4ec::3Xtbxs()

Main IL Instruction Count

15

Main IL

nop <null> nop <null> ldstr gilrani.rex call System.Void xHe3r5Cq8kp.2Komk5iNJsn7y9/eYn3A4bxwxE.3acMbJg61msZ::Jg7p0z(System.String) nop <null> leave.s IL_0023: nop call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_0023: nop nop <null> ret <null>

cb021ba451c2c7d87025e965ecc8b39f (1.71 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
Borgarel.gilrani.rex
xHe3r5Cq8kp.Resources.resources
90f13e86e2b766.Resources.resources
3731d9350
[NBF]root.Data
3731d9351
[NBF]root.Data
3731d93510
[NBF]root.Data
3731d93511
[NBF]root.Data
3731d93512
[NBF]root.Data
3731d93513
[NBF]root.Data
3731d93514
[NBF]root.Data
3731d93515
[NBF]root.Data
3731d93516
[NBF]root.Data
3731d93517
[NBF]root.Data
3731d93518
[NBF]root.Data
3731d93519
[NBF]root.Data
3731d9352
[NBF]root.Data
3731d93520
[NBF]root.Data
3731d93521
[NBF]root.Data
3731d93522
[NBF]root.Data
3731d93523
[NBF]root.Data
3731d93524
[NBF]root.Data
3731d93525
[NBF]root.Data
3731d93526
[NBF]root.Data
3731d93527
[NBF]root.Data
3731d93528
[NBF]root.Data
3731d93529
[NBF]root.Data
3731d9353
[NBF]root.Data
3731d93530
[NBF]root.Data
3731d93531
[NBF]root.Data
3731d93532
[NBF]root.Data
3731d93533
[NBF]root.Data
3731d93534
[NBF]root.Data
3731d93535
[NBF]root.Data
3731d93536
[NBF]root.Data
3731d93537
[NBF]root.Data
3731d93538
[NBF]root.Data
3731d93539
[NBF]root.Data
3731d9354
[NBF]root.Data
3731d93540
[NBF]root.Data
3731d93541
[NBF]root.Data
3731d93542
[NBF]root.Data
3731d93543
[NBF]root.Data
3731d93544
[NBF]root.Data
3731d93545
[NBF]root.Data
3731d93546
[NBF]root.Data
3731d93547
[NBF]root.Data
3731d93548
[NBF]root.Data
3731d93549
[NBF]root.Data
3731d9355
[NBF]root.Data
3731d93550
[NBF]root.Data
3731d93551
[NBF]root.Data
3731d93552
[NBF]root.Data
3731d93553
[NBF]root.Data
3731d93554
[NBF]root.Data
3731d93555
[NBF]root.Data
3731d93556
[NBF]root.Data
3731d93557
[NBF]root.Data
3731d93558
[NBF]root.Data
3731d93559
[NBF]root.Data
3731d9356
[NBF]root.Data
3731d93560
[NBF]root.Data
3731d93561
[NBF]root.Data
3731d93562
[NBF]root.Data
3731d93563
[NBF]root.Data
3731d93564
[NBF]root.Data
3731d93565
[NBF]root.Data
3731d9357
[NBF]root.Data
3731d9358
[NBF]root.Data
3731d9359
[NBF]root.Data
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙