Suspicious
Suspect

fa7ac5c0518dda753e3928e11e97c6ec

PE Executable
|
MD5: fa7ac5c0518dda753e3928e11e97c6ec
|
Size: 623.62 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics

Symbol Ofbuscation Score

Very low

Hash
Hash Value
MD5
fa7ac5c0518dda753e3928e11e97c6ec
Sha1
0c13dce6ab763a9eb5de5114c7753f331fdeb7a2
Sha256
32232a07b736cd0d8e26f355bb8132d736c71bdb01fe2a78e386664cccde6dbd
Sha384
f1cf63190e0933e92b198a6f9188dbbe39627e065bd2dc92212ef01a0a474afaa092cf60930c238a2f8cb4d2dd31c9fd
Sha512
6e837d69fe6a75e25f822498c9d2bd78ef18dbe8b4939808b1e07d31606d79580366c6b4b09b5043bf4305819434139bcbdf8a8765236ab052ee5bc32dce00c1
SSDeep
12288:TWOG2SoXgNhJNzVYVpImkkNUij2ZhOXVs1j5iNttNr5P/kR:K/2dSjzG3IWNkys1je1pa
TLSH
6BD4F14EF934EE01C06E0B32C2536EB48AE68D66F531F26B19C63DD61E7A754C18AD07

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:0
Informations
Name
Value
Module Name

dwiY.exe

Full Name

dwiY.exe

EntryPoint

System.Void DamassaProject.Program::Main()

Scope Name

dwiY.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

dwiY

Assembly Version

1.3.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

2

Main Method

System.Void DamassaProject.Program::Main()

Main IL Instruction Count

37

Main IL

ldsfld System.Byte[] DamassaProject.fmrLogin::Ⴗ stloc.2 <null> ldc.i4.2 <null> stloc.1 <null> ldloc.1 <null> switch dnlib.DotNet.Emit.Instruction[] call System.Void DamassaProject.fmrCadastro::Ⴃ() ldc.i4 189 ldc.i4 190 call System.Void DamassaProject.fmrAdministrador::Ⴗ(System.Char,System.Char) ldc.i4.0 <null> ldc.i4 388 ldc.i4 436 call System.Void DamassaProject.fmrCadastro::Ⴈ(System.Boolean,System.Int32,System.Int16) ldloc.2 <null> ldc.i4 144 ldelem.u1 <null> stloc.1 <null> br.s IL_0008: ldloc.1 newobj System.Void DamassaProject.fmrListarUsuario::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) ret <null> ldtoken System.Void DamassaProject.Program::Main() pop <null> ldsfld System.Int32[] DamassaProject.fmrSplash::Ⴍ ldc.i4 439 ldsfld System.Int32[] DamassaProject.fmrSplash::Ⴍ ldc.i4 439 ldelem.i4 <null> ldsfld System.Int32[] DamassaProject.fmrSplash::Ⴍ ldc.i4 397 ldelem.i4 <null> mul <null> ldc.i4.s 57 and <null> stelem.i4 <null> ret <null>

Module Name

dwiY.exe

Full Name

dwiY.exe

EntryPoint

System.Void DamassaProject.Program::Main()

Scope Name

dwiY.exe

Scope Type

ModuleDef

Kind

Windows

Runtime Version

v4.0.30319

Tables Header Version

512

WinMD Version

<null>

Assembly Name

dwiY

Assembly Version

1.3.0.0

Assembly Culture

<null>

Has PublicKey

False

PublicKey Token

<null>

Target Framework

.NETFramework,Version=v4.5

Total Strings

2

Main Method

System.Void DamassaProject.Program::Main()

Main IL Instruction Count

37

Main IL

ldsfld System.Byte[] DamassaProject.fmrLogin::Ⴗ stloc.2 <null> ldc.i4.2 <null> stloc.1 <null> ldloc.1 <null> switch dnlib.DotNet.Emit.Instruction[] call System.Void DamassaProject.fmrCadastro::Ⴃ() ldc.i4 189 ldc.i4 190 call System.Void DamassaProject.fmrAdministrador::Ⴗ(System.Char,System.Char) ldc.i4.0 <null> ldc.i4 388 ldc.i4 436 call System.Void DamassaProject.fmrCadastro::Ⴈ(System.Boolean,System.Int32,System.Int16) ldloc.2 <null> ldc.i4 144 ldelem.u1 <null> stloc.1 <null> br.s IL_0008: ldloc.1 newobj System.Void DamassaProject.fmrListarUsuario::.ctor() call System.Void System.Windows.Forms.Application::Run(System.Windows.Forms.Form) ret <null> ldtoken System.Void DamassaProject.Program::Main() pop <null> ldsfld System.Int32[] DamassaProject.fmrSplash::Ⴍ ldc.i4 439 ldsfld System.Int32[] DamassaProject.fmrSplash::Ⴍ ldc.i4 439 ldelem.i4 <null> ldsfld System.Int32[] DamassaProject.fmrSplash::Ⴍ ldc.i4 397 ldelem.i4 <null> mul <null> ldc.i4.s 57 and <null> stelem.i4 <null> ret <null>

Artefacts
Name
Value
Embedded Resources

0

Suspicious Type Names (1-2 chars)

0

fa7ac5c0518dda753e3928e11e97c6ec (623.62 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙