Suspicious
Suspect

dba3554611202e11ba425dc822e5fd94

PE Executable
|
MD5: dba3554611202e11ba425dc822e5fd94
|
Size: 1.16 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
dba3554611202e11ba425dc822e5fd94
Sha1
37bc0907ee0b92e1bfb1150cca956be504dd43e1
Sha256
f73d18e26ab65daf7d47eb8418fc31cf3251de98026fc8bab89fdfe162039412
Sha384
dd23bad6072ca5a0d5f92409294eb2273583a85c1c111c3fa856745fe54aba491aa946500d1767de168cd611a0ea8dce
Sha512
e85b124a7ec7c7676e5470703f7c551355e331a1848a5491a93a3f9e6c1f2f0cd7a444def486ba1a9f224745f37ca7b1673d21107bf6c870aef45c823e0ff1d7
SSDeep
24576:9dTRhESXnNs9eTJiS+g7HJNC1Gt9NIWLnkdjMzivUEPcwrl:P9riSRjjC1G7NXnkiOvUEEYl
TLSH
B53502D03A76771ADE211A31E969EEB506F91E787012BEF259DD3B4B35AC110AD0CF02
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
Salvo.MenuForm.resources
Salvo.Properties.Resources.resources
Catwomann
[NBF]root.Data
[NBF]root.Data-preview.png
Ispt
[NBF]root.Data
[NBF]root.Data-preview.png
V6
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: wDET.pdb

Module Name

wDET.exe

Full Name

wDET.exe

EntryPoint

System.Void Salvo.Program::Main()

Scope Name

wDET.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

wDET

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

129

Main Method

System.Void Salvo.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void Salvo.MenuForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

dba3554611202e11ba425dc822e5fd94 (1.16 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
Salvo.MenuForm.resources
Salvo.Properties.Resources.resources
Catwomann
[NBF]root.Data
[NBF]root.Data-preview.png
Ispt
[NBF]root.Data
[NBF]root.Data-preview.png
V6
[NBF]root.Data
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙