Suspicious
Suspect

eb2dfcb4f8bbded6124ab9553efe0e97

PE Executable
|
MD5: eb2dfcb4f8bbded6124ab9553efe0e97
|
Size: 674.3 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
eb2dfcb4f8bbded6124ab9553efe0e97
Sha1
30522248c171ac1bf0d97f196fecaa2df57b0f4c
Sha256
4aa035616ed50d2ca3d86455ef14e5c306d072b3942d25ce570b519b0cb142d6
Sha384
01c1144df5947912a5f5815c4bbd33a50284b9ffe36e937dc5f8c6827f1b18dbdb24bdb8db2315d8a537b8788b148a7a
Sha512
e941d1523035700a3797d19bc58490e3e75c617bbaf79cca8c48fb9e3c15aab04ca0d17401704f61027611587fbdab802ab52bee967396e8512a1d9b8143b6a4
SSDeep
12288:+y8L0UGRC2B9PbLJwkUeAn4riHS2x/qva06W0xFx2QYKDlrkG/JVlvpO0M39yL:+ym0JR/B9PHJwnR4rJU/qC7WYFJYilr1
TLSH
03E412543745EE21E89A5BF01472E37513BD8F8EB103F3178AEDBDC7BA2A6492419181

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
NetworkMonitor.Properties.Resources.resources
bwdb
[NBF]root.Data
[NBF]root.Data-preview.png
cgi
[NBF]root.Data
Informations
Name
Value
Module Name

JaeN.exe

Full Name

JaeN.exe

EntryPoint

System.Void NetworkMonitor.Program::Main()

Scope Name

JaeN.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

JaeN

Assembly Version

3.7.2.8

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

113

Main Method

System.Void NetworkMonitor.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void NetworkMonitor.Forms.NetworkUtilitiesForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Module Name

JaeN.exe

Full Name

JaeN.exe

EntryPoint

System.Void NetworkMonitor.Program::Main()

Scope Name

JaeN.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

JaeN

Assembly Version

3.7.2.8

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.0

Total Strings

113

Main Method

System.Void NetworkMonitor.Program::Main()

Main IL Instruction Count

10

Main IL

nop <null> call System.Void System.Windows.Forms.Application::EnableVisualStyles() nop <null> ldc.i4.0 <null> call System.Void System.Windows.Forms.Application::SetCompatibleTextRenderingDefault(System.Boolean) nop <null> newobj System.Void NetworkMonitor.Forms.NetworkUtilitiesForm::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> ret <null>

Artefacts
Name
Value
PDB Path

JaeN.pdb

eb2dfcb4f8bbded6124ab9553efe0e97 (674.3 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙