Suspicious
Suspect

db103c5a49a11baf578807abdd16b976

PE Executable
|
MD5: db103c5a49a11baf578807abdd16b976
|
Size: 1.04 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Low

Hash
Hash Value
MD5
db103c5a49a11baf578807abdd16b976
Sha1
5adb3c0b50ef6cc9a4b9811a779d64cab2182bce
Sha256
8b91d1572631d84c5f844303768824f864830722a6f67afec38d9f3f1ed25123
Sha384
3c889cbd4c7fc294584b8fe51978ca709a50f88bd208182aa8e714552216243026f3f763b2d6ad1157b7d32939e75fc1
Sha512
8cfa58993635fa0d66194eb8e321f70d103ba391e32bf81c25a40f3fd173b93cca2cabc4ae809d7852dc23b14449e7beeb4f58d640c6dca37093255af0948a6b
SSDeep
24576:b9S0xaK8AKJuKl1BeHw9BhPBbIaitJeM0tFcrSnA9:Y1KyjeILct0t4
TLSH
3E251260461BEE07C5A60B7288A2F3F8A3796E9DF121D31B5AECBDF73D263013554252
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
NumberGuess.MainForm.resources
NumberGuess.Properties.Resources.resources
dzBw
[NBF]root.Data
[NBF]root.Data-preview.png
gap
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: mTzw.pdb

Module Name

mTzw.exe

Full Name

mTzw.exe

EntryPoint

System.Void NumberGuess.Program::Main()

Scope Name

mTzw.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

mTzw

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

102

Main Method

System.Void NumberGuess.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void NumberGuess.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

db103c5a49a11baf578807abdd16b976 (1.04 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
NumberGuess.MainForm.resources
NumberGuess.Properties.Resources.resources
dzBw
[NBF]root.Data
[NBF]root.Data-preview.png
gap
[NBF]root.Data
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙