Suspicious
Suspect

f12a02c02e6bb3be15828affcf394157

PE Executable
|
MD5: f12a02c02e6bb3be15828affcf394157
|
Size: 1.03 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Medium

Hash
Hash Value
MD5
f12a02c02e6bb3be15828affcf394157
Sha1
f16f0475224f90e7c5a791c33abb13f24ed52925
Sha256
bddd195fcb9d1a1bc5fb86692d88b34557bebd7a5e537a4556bad195af6cff53
Sha384
38c47a952509ee8fb5e0b974803869fc69b0147227f570bd4296a9cef8f167ba33c7b31c56f3f32d72619f56cfa72adb
Sha512
54d9a152c5f34732ddc9e1f4810a82608d6d7bd35aca2ccfb399e8e5a2029f323a3704a136f60e8aef083fd623142998117fa5c4ad3ce582330d5384650b1a41
SSDeep
24576:n3qtDjkf5/ipxetC3sJFpWSdG7/1QB4xMu2fFFWz3K49D0J/VyQ0Vqp:n805apx33sJyOG79QapujK9QJ/r
TLSH
A0252319D7B51A0ADEB996BF9C532288C7F851A1B393FF176490529242237CE5D033E3

PeID

Microsoft Visual C++ DLL
Microsoft Visual C++ v6.0
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
{ad3af138-6efd-4614-87dc-49a795484839}
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

Xngxslrt.exe

Full Name

Xngxslrt.exe

EntryPoint

System.Void .::()

Scope Name

Xngxslrt.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

Xngxslrt

Assembly Version

1.0.3365.2762

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

31

Main Method

System.Void .::()

Main IL Instruction Count

13

Main IL

br.s IL_0009: newobj System.Void .::.ctor() br.s IL_0010: call System.Byte[] .::(.) br.s IL_0017: call System.Byte[] .::(System.Byte[]) br.s IL_001E: call System.Void .::(System.Byte[]) ret <null> newobj System.Void .::.ctor() br.s IL_0002: br.s IL_0010 call System.Byte[] .::(.) br.s IL_0004: br.s IL_0017 call System.Byte[] .::(System.Byte[]) br.s IL_0006: br.s IL_001E call System.Void .::(System.Byte[]) br.s IL_0008: ret

f12a02c02e6bb3be15828affcf394157 (1.03 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rsrc
Resources
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
.Net Resources
{ad3af138-6efd-4614-87dc-49a795484839}
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙