Suspicious
Suspect

d5aae40dbbf5a34476270091baaa745f

PE Executable
|
MD5: d5aae40dbbf5a34476270091baaa745f
|
Size: 700.93 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
d5aae40dbbf5a34476270091baaa745f
Sha1
e9461c512616098efbb14d7d617e7774e9a2bb37
Sha256
227d7f535bcb6ce158d63d9436429547e9a065b289cf8b0caf8993ddd549190d
Sha384
09da895cd9b180fb2daa1514da5ce21e291af4122964e5351ba558ac9f078b4abe9647a0be54e89b7028f1dab73d4e92
Sha512
b610da00ebd24cd9803507112525c54d486a1ea069ab341aa0a811af6303537f620b3c7353d70117ae110fba2f72f5f93d1b9427fc1dd3ec4322f1ce6044f8d2
SSDeep
12288:IGHWi1syrE1MY+JI2yoEKZQ2hmtx0QagP63KDAAB983mzvK5rmQm9vyiaqojL4eN:IiiH1MYf2yoEihm30QagP6u98Wz2mVCq
TLSH
95E4120126E5C60AE0B61FB40A71C2B91BF6BE8EE931D35B4EE1BEDB73363054551362
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
PrimeNumberGenerator.Forms.MainForm.resources
PrimeNumberGenerator.Properties.Resources.resources
FDff
[NBF]root.Data
[NBF]root.Data-preview.png
crc
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: qoXc.pdb

Module Name

qoXc.exe

Full Name

qoXc.exe

EntryPoint

System.Void PrimeNumberGenerator.Program::Main()

Scope Name

qoXc.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

qoXc

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

187

Main Method

System.Void PrimeNumberGenerator.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void PrimeNumberGenerator.Forms.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

d5aae40dbbf5a34476270091baaa745f (700.93 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙