Suspicious
Suspect

f8d069260d2ad3a4674fb7a466b155be

PE Executable
|
MD5: f8d069260d2ad3a4674fb7a466b155be
|
Size: 5.59 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very high

Hash
Hash Value
MD5
f8d069260d2ad3a4674fb7a466b155be
Sha1
bd99bd4f980aa43342beeccdd361d5dab2e9c944
Sha256
fd71d4540fae7d120f1a49e0588a92dd836656a7c727dd79a9601cccfc29e209
Sha384
728489551855013d9dcef4938504e56c2a9b3ab0e0b91a8f81600a95529e2ac03e17270250608023cd71a10ecb3fdb9b
Sha512
fa743a4692a28f407fe7ffbc885293bd9f8b91c683676908bfe042342bb8c54d63ecc34b2868c7408a36f27f12d6c24c8514e30f9835074a0f5f56cfaaf943ac
SSDeep
98304:TdRhXoQ/2AU1nDuycv7XW2XqQq32yeDGWJ6:TdRhX4AanDuycjwQwnW
TLSH
D646231637C58958E57E83B4483888C2A7F1F94BFB29CB2D798D12DD4E017C6A716B23

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
.Net Resources
fj3AwDp04fR.g.resources
fj3AwDp04fR.Resources.resources
743d3b30d74c03.Resources.resources
faa4baf50
[NBF]root.Data
faa4baf51
[NBF]root.Data
faa4baf510
[NBF]root.Data
faa4baf5100
[NBF]root.Data
faa4baf5101
[NBF]root.Data
faa4baf5102
[NBF]root.Data
faa4baf5103
[NBF]root.Data
faa4baf5104
[NBF]root.Data
faa4baf5105
[NBF]root.Data
faa4baf5106
[NBF]root.Data
faa4baf5107
[NBF]root.Data
faa4baf5108
[NBF]root.Data
faa4baf5109
[NBF]root.Data
faa4baf511
[NBF]root.Data
faa4baf5110
[NBF]root.Data
faa4baf5111
[NBF]root.Data
faa4baf5112
[NBF]root.Data
faa4baf5113
[NBF]root.Data
faa4baf5114
[NBF]root.Data
faa4baf5115
[NBF]root.Data
faa4baf5116
[NBF]root.Data
faa4baf5117
[NBF]root.Data
faa4baf5118
[NBF]root.Data
faa4baf5119
[NBF]root.Data
faa4baf512
[NBF]root.Data
faa4baf5120
[NBF]root.Data
faa4baf5121
[NBF]root.Data
faa4baf5122
[NBF]root.Data
faa4baf5123
[NBF]root.Data
faa4baf5124
[NBF]root.Data
faa4baf5125
[NBF]root.Data
faa4baf5126
[NBF]root.Data
faa4baf5127
[NBF]root.Data
faa4baf5128
[NBF]root.Data
faa4baf5129
[NBF]root.Data
faa4baf513
[NBF]root.Data
faa4baf5130
[NBF]root.Data
faa4baf5131
[NBF]root.Data
faa4baf5132
[NBF]root.Data
faa4baf5133
[NBF]root.Data
faa4baf5134
[NBF]root.Data
faa4baf5135
[NBF]root.Data
faa4baf5136
[NBF]root.Data
faa4baf5137
[NBF]root.Data
faa4baf5138
[NBF]root.Data
faa4baf5139
[NBF]root.Data
faa4baf514
[NBF]root.Data
faa4baf5140
[NBF]root.Data
faa4baf5141
[NBF]root.Data
faa4baf5142
[NBF]root.Data
faa4baf5143
[NBF]root.Data
faa4baf5144
[NBF]root.Data
faa4baf5145
[NBF]root.Data
faa4baf5146
[NBF]root.Data
faa4baf5147
[NBF]root.Data
faa4baf5148
[NBF]root.Data
faa4baf5149
[NBF]root.Data
faa4baf515
[NBF]root.Data
faa4baf5150
[NBF]root.Data
faa4baf5151
[NBF]root.Data
faa4baf5152
[NBF]root.Data
faa4baf5153
[NBF]root.Data
faa4baf5154
[NBF]root.Data
faa4baf5155
[NBF]root.Data
faa4baf5156
[NBF]root.Data
faa4baf5157
[NBF]root.Data
faa4baf5158
[NBF]root.Data
faa4baf5159
[NBF]root.Data
faa4baf516
[NBF]root.Data
faa4baf5160
[NBF]root.Data
faa4baf5161
[NBF]root.Data
faa4baf5162
[NBF]root.Data
faa4baf5163
[NBF]root.Data
faa4baf5164
[NBF]root.Data
faa4baf5165
[NBF]root.Data
faa4baf5166
[NBF]root.Data
faa4baf5167
[NBF]root.Data
faa4baf5168
[NBF]root.Data
faa4baf5169
[NBF]root.Data
faa4baf517
[NBF]root.Data
faa4baf5170
[NBF]root.Data
faa4baf5171
[NBF]root.Data
faa4baf5172
[NBF]root.Data
faa4baf5173
[NBF]root.Data
faa4baf5174
[NBF]root.Data
faa4baf5175
[NBF]root.Data
faa4baf5176
[NBF]root.Data
faa4baf5177
[NBF]root.Data
faa4baf5178
[NBF]root.Data
faa4baf5179
[NBF]root.Data
faa4baf518
[NBF]root.Data
faa4baf5180
[NBF]root.Data
faa4baf5181
[NBF]root.Data
faa4baf5182
[NBF]root.Data
faa4baf5183
[NBF]root.Data
faa4baf5184
[NBF]root.Data
faa4baf5185
[NBF]root.Data
faa4baf5186
[NBF]root.Data
faa4baf5187
[NBF]root.Data
faa4baf5188
[NBF]root.Data
faa4baf5189
[NBF]root.Data
faa4baf519
[NBF]root.Data
faa4baf5190
[NBF]root.Data
faa4baf5191
[NBF]root.Data
faa4baf5192
[NBF]root.Data
faa4baf5193
[NBF]root.Data
faa4baf5194
[NBF]root.Data
faa4baf5195
[NBF]root.Data
faa4baf5196
[NBF]root.Data
faa4baf5197
[NBF]root.Data
faa4baf5198
[NBF]root.Data
faa4baf5199
[NBF]root.Data
faa4baf52
[NBF]root.Data
faa4baf520
[NBF]root.Data
faa4baf5200
[NBF]root.Data
faa4baf5201
[NBF]root.Data
faa4baf5202
[NBF]root.Data
faa4baf5203
[NBF]root.Data
faa4baf5204
[NBF]root.Data
faa4baf5205
[NBF]root.Data
faa4baf5206
[NBF]root.Data
faa4baf5207
[NBF]root.Data
faa4baf5208
[NBF]root.Data
faa4baf5209
[NBF]root.Data
faa4baf521
[NBF]root.Data
faa4baf5210
[NBF]root.Data
faa4baf5211
[NBF]root.Data
faa4baf5212
[NBF]root.Data
faa4baf5213
[NBF]root.Data
faa4baf5214
[NBF]root.Data
faa4baf5215
[NBF]root.Data
faa4baf5216
[NBF]root.Data
faa4baf5217
[NBF]root.Data
faa4baf5218
[NBF]root.Data
faa4baf5219
[NBF]root.Data
faa4baf522
[NBF]root.Data
faa4baf5220
[NBF]root.Data
faa4baf5221
[NBF]root.Data
faa4baf5222
[NBF]root.Data
faa4baf5223
[NBF]root.Data
faa4baf5224
[NBF]root.Data
faa4baf5225
[NBF]root.Data
faa4baf5226
[NBF]root.Data
faa4baf5227
[NBF]root.Data
faa4baf5228
[NBF]root.Data
faa4baf5229
[NBF]root.Data
faa4baf523
[NBF]root.Data
faa4baf5230
[NBF]root.Data
faa4baf5231
[NBF]root.Data
faa4baf5232
[NBF]root.Data
faa4baf5233
[NBF]root.Data
faa4baf5234
[NBF]root.Data
faa4baf5235
[NBF]root.Data
faa4baf5236
[NBF]root.Data
faa4baf5237
[NBF]root.Data
faa4baf5238
[NBF]root.Data
faa4baf5239
[NBF]root.Data
faa4baf524
[NBF]root.Data
faa4baf5240
[NBF]root.Data
faa4baf5241
[NBF]root.Data
faa4baf5242
[NBF]root.Data
faa4baf5243
[NBF]root.Data
faa4baf5244
[NBF]root.Data
faa4baf5245
[NBF]root.Data
faa4baf5246
[NBF]root.Data
faa4baf5247
[NBF]root.Data
faa4baf5248
[NBF]root.Data
faa4baf5249
[NBF]root.Data
faa4baf525
[NBF]root.Data
faa4baf5250
[NBF]root.Data
faa4baf5251
[NBF]root.Data
faa4baf5252
[NBF]root.Data
faa4baf5253
[NBF]root.Data
faa4baf5254
[NBF]root.Data
faa4baf5255
[NBF]root.Data
faa4baf5256
[NBF]root.Data
faa4baf5257
[NBF]root.Data
faa4baf5258
[NBF]root.Data
faa4baf5259
[NBF]root.Data
faa4baf526
[NBF]root.Data
faa4baf5260
[NBF]root.Data
faa4baf5261
[NBF]root.Data
faa4baf5262
[NBF]root.Data
faa4baf5263
[NBF]root.Data
faa4baf5264
[NBF]root.Data
faa4baf5265
[NBF]root.Data
faa4baf5266
[NBF]root.Data
faa4baf5267
[NBF]root.Data
faa4baf5268
[NBF]root.Data
faa4baf5269
[NBF]root.Data
faa4baf527
[NBF]root.Data
faa4baf5270
[NBF]root.Data
faa4baf5271
[NBF]root.Data
faa4baf5272
[NBF]root.Data
faa4baf5273
[NBF]root.Data
faa4baf5274
[NBF]root.Data
faa4baf5275
[NBF]root.Data
faa4baf5276
[NBF]root.Data
faa4baf5277
[NBF]root.Data
faa4baf5278
[NBF]root.Data
faa4baf5279
[NBF]root.Data
faa4baf528
[NBF]root.Data
faa4baf5280
[NBF]root.Data
faa4baf5281
[NBF]root.Data
faa4baf5282
[NBF]root.Data
faa4baf529
[NBF]root.Data
faa4baf53
[NBF]root.Data
faa4baf530
[NBF]root.Data
faa4baf531
[NBF]root.Data
faa4baf532
[NBF]root.Data
faa4baf533
[NBF]root.Data
faa4baf534
[NBF]root.Data
faa4baf535
[NBF]root.Data
faa4baf536
[NBF]root.Data
faa4baf537
[NBF]root.Data
faa4baf538
[NBF]root.Data
faa4baf539
[NBF]root.Data
faa4baf54
[NBF]root.Data
faa4baf540
[NBF]root.Data
faa4baf541
[NBF]root.Data
faa4baf542
[NBF]root.Data
faa4baf543
[NBF]root.Data
faa4baf544
[NBF]root.Data
faa4baf545
[NBF]root.Data
faa4baf546
[NBF]root.Data
faa4baf547
[NBF]root.Data
faa4baf548
[NBF]root.Data
faa4baf549
[NBF]root.Data
faa4baf55
[NBF]root.Data
faa4baf550
[NBF]root.Data
faa4baf551
[NBF]root.Data
faa4baf552
[NBF]root.Data
faa4baf553
[NBF]root.Data
faa4baf554
[NBF]root.Data
faa4baf555
[NBF]root.Data
faa4baf556
[NBF]root.Data
faa4baf557
[NBF]root.Data
faa4baf558
[NBF]root.Data
faa4baf559
[NBF]root.Data
faa4baf56
[NBF]root.Data
faa4baf560
[NBF]root.Data
faa4baf561
[NBF]root.Data
faa4baf562
[NBF]root.Data
faa4baf563
[NBF]root.Data
faa4baf564
[NBF]root.Data
faa4baf565
[NBF]root.Data
faa4baf566
[NBF]root.Data
faa4baf567
[NBF]root.Data
faa4baf568
[NBF]root.Data
faa4baf569
[NBF]root.Data
faa4baf57
[NBF]root.Data
faa4baf570
[NBF]root.Data
faa4baf571
[NBF]root.Data
faa4baf572
[NBF]root.Data
faa4baf573
[NBF]root.Data
faa4baf574
[NBF]root.Data
faa4baf575
[NBF]root.Data
faa4baf576
[NBF]root.Data
faa4baf577
[NBF]root.Data
faa4baf578
[NBF]root.Data
faa4baf579
[NBF]root.Data
faa4baf58
[NBF]root.Data
faa4baf580
[NBF]root.Data
faa4baf581
[NBF]root.Data
faa4baf582
[NBF]root.Data
faa4baf583
[NBF]root.Data
faa4baf584
[NBF]root.Data
faa4baf585
[NBF]root.Data
faa4baf586
[NBF]root.Data
faa4baf587
[NBF]root.Data
faa4baf588
[NBF]root.Data
faa4baf589
[NBF]root.Data
faa4baf59
[NBF]root.Data
faa4baf590
[NBF]root.Data
faa4baf591
[NBF]root.Data
faa4baf592
[NBF]root.Data
faa4baf593
[NBF]root.Data
faa4baf594
[NBF]root.Data
faa4baf595
[NBF]root.Data
faa4baf596
[NBF]root.Data
faa4baf597
[NBF]root.Data
faa4baf598
[NBF]root.Data
faa4baf599
[NBF]root.Data
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Module Name

fj3AwDp04fR

Full Name

fj3AwDp04fR

EntryPoint

System.Void fj3AwDp04fR.zr0T6Xo/mt0D_Tp3q4Gs2X.Md8am1Rye::0gsDi8Sy()

Scope Name

fj3AwDp04fR

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

fj3AwDp04fR

Assembly Version

17.4.25.16

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1089

Main Method

System.Void fj3AwDp04fR.zr0T6Xo/mt0D_Tp3q4Gs2X.Md8am1Rye::0gsDi8Sy()

Main IL Instruction Count

39

Main IL

nop <null> nop <null> call System.Reflection.Assembly System.Reflection.Assembly::GetExecutingAssembly() callvirt System.String System.Reflection.Assembly::get_Location() call System.Diagnostics.FileVersionInfo System.Diagnostics.FileVersionInfo::GetVersionInfo(System.String) callvirt System.String System.Diagnostics.FileVersionInfo::get_FileVersion() stloc.0 <null> ldloc.0 <null> call System.Boolean System.String::IsNullOrEmpty(System.String) stloc.3 <null> ldloc.3 <null> brfalse.s IL_0027: ldc.i4.s 100 ldstr 1.6.4.9 stloc.0 <null> ldc.i4.s 100 call System.Void System.Threading.Thread::Sleep(System.Int32) nop <null> ldc.i4.s 26 call System.String System.Environment::GetFolderPath(System.Environment/SpecialFolder) ldstr AppConfig.dat call System.String System.IO.Path::Combine(System.String,System.String) stloc.1 <null> newobj System.Void fj3AwDp04fR.tDi7sd0FB::.ctor() stloc.2 <null> ldloc.2 <null> call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> leave.s IL_0067: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_4 nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_0067: nop nop <null> ret <null>

Module Name

fj3AwDp04fR

Full Name

fj3AwDp04fR

EntryPoint

System.Void fj3AwDp04fR.zr0T6Xo/mt0D_Tp3q4Gs2X.Md8am1Rye::0gsDi8Sy()

Scope Name

fj3AwDp04fR

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

fj3AwDp04fR

Assembly Version

17.4.25.16

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.6

Total Strings

1089

Main Method

System.Void fj3AwDp04fR.zr0T6Xo/mt0D_Tp3q4Gs2X.Md8am1Rye::0gsDi8Sy()

Main IL Instruction Count

39

Main IL

nop <null> nop <null> call System.Reflection.Assembly System.Reflection.Assembly::GetExecutingAssembly() callvirt System.String System.Reflection.Assembly::get_Location() call System.Diagnostics.FileVersionInfo System.Diagnostics.FileVersionInfo::GetVersionInfo(System.String) callvirt System.String System.Diagnostics.FileVersionInfo::get_FileVersion() stloc.0 <null> ldloc.0 <null> call System.Boolean System.String::IsNullOrEmpty(System.String) stloc.3 <null> ldloc.3 <null> brfalse.s IL_0027: ldc.i4.s 100 ldstr 1.6.4.9 stloc.0 <null> ldc.i4.s 100 call System.Void System.Threading.Thread::Sleep(System.Int32) nop <null> ldc.i4.s 26 call System.String System.Environment::GetFolderPath(System.Environment/SpecialFolder) ldstr AppConfig.dat call System.String System.IO.Path::Combine(System.String,System.String) stloc.1 <null> newobj System.Void fj3AwDp04fR.tDi7sd0FB::.ctor() stloc.2 <null> ldloc.2 <null> call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) nop <null> leave.s IL_0067: nop dup <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::SetProjectError(System.Exception) stloc.s V_4 nop <null> ldc.i4.0 <null> call System.Void System.Environment::Exit(System.Int32) nop <null> call System.Void Microsoft.VisualBasic.CompilerServices.ProjectData::ClearProjectError() leave.s IL_0067: nop nop <null> ret <null>

f8d069260d2ad3a4674fb7a466b155be (5.59 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙