General
Structural Analysis
Config.0
Yara Rules14
Sync
Community
Summary by MalvaGPT
Characteristics
Symbol Ofbuscation Score
Medium
|
Hash | Hash Value |
|---|---|
| MD5 | f07c4fe3bc742b4036c663470a1b8e55
|
| Sha1 | 7c40a021fcba2deff50d2702105abd89b9ff18e2
|
| Sha256 | 89683b224bb5a144fd44d21c13713a7c8a2108f7869dc6def98f254dff322ece
|
| Sha384 | a0bb3d8fca1e353c55f8ce3693d8f5d60ced0045288940b65d9a2c31e9f28bdda4c198362355cbdecc132e83940d5d91
|
| Sha512 | 3ba63fcc8538d2cf766ea0b4cef6e369ce656f6a00ff8c643fc9d57d2fcc3fc9996ac66a73acce0e15601716186fcc8b84bb8fb8341ffc731e453a20c6973440
|
| SSDeep | 12288:vpy1HcmgFReSiKcq1/qBVVyWJdDpVWb2k1Y0sS7R/R8gHW+kRrUMckR:YFGRe9yW3psbL7RpI+6AD
|
| TLSH | 5EE41240368ED903C4B71BF41A52C27823B99F8CD44ACA9B4FEA6CEFB5EA7105551327
|
File Structure
f07c4fe3bc742b4036c663470a1b8e55
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
.Net Resources
Simple_Windows_Calculator.SimpleCalculator.resources
$this.Icon
[NBF]root.IconData
nr
[NBF]root.Data
CodeViewExaminer.cvv.resources
CodeViewExaminer.Properties.Resources.resources
HalT
[NBF]root.Data
[NBF]root.Data-preview.png
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Module Name | bmjZ.exe |
| Full Name | bmjZ.exe |
| EntryPoint | System.Void Simple_Windows_Calculator.ma::Main() |
| Scope Name | bmjZ.exe |
| Scope Type | ModuleDef |
| Kind | Windows |
| Runtime Version | v4.0.30319 |
| Tables Header Version | 512 |
| WinMD Version | <null> |
| Assembly Name | bmjZ |
| Assembly Version | 0.0.0.0 |
| Assembly Culture | <null> |
| Has PublicKey | False |
| PublicKey Token | <null> |
| Target Framework | .NETFramework,Version=v4.0 |
| Total Strings | 231 |
| Main Method | System.Void Simple_Windows_Calculator.ma::Main() |
| Main IL Instruction Count | 3 |
| Main IL | newobj System.Void Simple_Windows_Calculator.SimpleCalculator::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) ret <null> |
f07c4fe3bc742b4036c663470a1b8e55 (703.49 KB)
File Structure
f07c4fe3bc742b4036c663470a1b8e55
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
.Net Resources
Simple_Windows_Calculator.SimpleCalculator.resources
$this.Icon
[NBF]root.IconData
nr
[NBF]root.Data
CodeViewExaminer.cvv.resources
CodeViewExaminer.Properties.Resources.resources
HalT
[NBF]root.Data
[NBF]root.Data-preview.png
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.