Malicious
0b40d805fc4c036dc75417c57ec00603
PE Executable | MD5: 0b40d805fc4c036dc75417c57ec00603 | Size: 1.99 MB | application/x-dosexec
PE Executable
MD5: 0b40d805fc4c036dc75417c57ec00603
Size: 1.99 MB
application/x-dosexec
Infection Chain
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | 0b40d805fc4c036dc75417c57ec00603
|
| Sha1 | 7287dcdc7836ca8b663e4293c89b6aed0089450b
|
| Sha256 | 1c074e6cca22af63fdeb3e770be60c7410250cc02dfe4cbc508484c88fab1559
|
| Sha384 | d32ea8cfd2e1f30956881f9f34d78505b897df63d484e60e0130567ad8244078b14e2be79af058730fd792e312d5489d
|
| Sha512 | f837a03f5dae6b73ef88b04d8b164dcc6de353ae5270a5ba6eff68298903fdbc21a261cf24c7cca2e1eceb5fde33b2cab7bad4c3761129f9deeab193f6a6c3fb
|
| SSDeep | 49152:3vTHEDelEBfeb5U0hI8/bJVFPXZ7ShJOsx0Yr7PavuDWthJD:3Li05U05rFpShp6c7PavuDaJD
|
| TLSH | 499533C8BFE0D7AEC9A6E330AD7612B15B752CC5842111A6A38835BE6D33161FC4D35E
|
PeID
Microsoft Visual C++ v6.0 DLL
UPolyX 0.3 -> delikon
File Structure
0b40d805fc4c036dc75417c57ec00603
Malicious
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.tls
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
ID:1033
nsis-entry-2
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
ID:1033-preview.png
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_MANIFEST
ID:0001
ID:1033
0b40d805fc4c036dc75417c57ec00603 (1.99 MB)
File Structure
0b40d805fc4c036dc75417c57ec00603
Malicious
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.tls
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
ID:1033
nsis-entry-2
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
ID:1033-preview.png
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.