Suspicious
Suspect

e0ac8c1a2560fb58a79142f1a6f8c39f

PE Executable
|
MD5: e0ac8c1a2560fb58a79142f1a6f8c39f
|
Size: 675.33 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very low

Hash
Hash Value
MD5
e0ac8c1a2560fb58a79142f1a6f8c39f
Sha1
96b836df49a68bb2fcefe10b5c1c100e3038ef24
Sha256
417c165a04979b22d52eeb3fda53a4b6a699f80c3fc89a69fd408ea0fbad16ac
Sha384
926ab598f4d7bab27dfb5a620c541f9b74eb7e0e206608007857c0ded1646a4c56768e853438e4dafe105aa71dfc0158
Sha512
6fc0c6f5ed375cb4aec31428719f15c78844a104e44ca2700c6a96cd8dd3d814e309b8fc8265aa2b6dc9aa814db13f3a0b0e32bc4527a5d8c7299d22f1492c0c
SSDeep
12288:4WVNP8tWFOXT/M8hw2SeGRjhFUqkIvo+1KuO/ssuqDCaYUAPrUL0avmyJSTWpDKa:4W72T/I1esjHUqDK9/duaXAPGSTuDKR2
TLSH
13E41265661AFD21E8D667F58DA2E3B592B15ECCF003C313C7E9ACA3FD2A20174542D2
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
POSManager.Properties.Resources.resources
vJTF
[NBF]root.Data
[NBF]root.Data-preview.png
whey
[NBF]root.Data
Informations
Name
Value
Module Name

QnOF.exe

Full Name

QnOF.exe

EntryPoint

System.Void POSManager.Program::Main()

Scope Name

QnOF.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

QnOF

Assembly Version

1.0.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

92

Main Method

System.Void POSManager.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void POSManager.MainForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Artefacts
Name
Value
PDB Path

QnOF.pdb

e0ac8c1a2560fb58a79142f1a6f8c39f (675.33 KB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
POSManager.Properties.Resources.resources
vJTF
[NBF]root.Data
[NBF]root.Data-preview.png
whey
[NBF]root.Data
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
PDB Path

QnOF.pdb

e0ac8c1a2560fb58a79142f1a6f8c39f

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙