Suspicious
Suspect

0b7c792c0b2b388b39aa4e5973587c21

VB5/6 Executable
|
MD5: 0b7c792c0b2b388b39aa4e5973587c21
|
Size: 230.13 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
0b7c792c0b2b388b39aa4e5973587c21
Sha1
1a985cd9ad7033add78b9d191ed40c02900b8d97
Sha256
7a5bb8aea9de93a93318b7df1e85628af9b4231b09338ade7866887d4e6d9f98
Sha384
0f69da0aa27bce4a340c811241187c1500ef6810f0b3f4ed68a6a9e8b2c73057e270a4f8f4c92a0dd38c4645d67ea23d
Sha512
af62dacbee2b11c3be28756b3fe4f0994e4e220a6d087232e12f927063e287ac788c74095c1cf120c49ec6f84c0c65ae1187cf809c5f0a97df19ce6ec13a2694
SSDeep
3072:9vEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6u4PmufI:9vEN2U+T6i5LirrllHy4HUcMQY6VI
TLSH
28240A1BAD00701FE497D5F118666AA6B6212D315BE6CC0B27C1AF5638F1923B2F531F

PeID

Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
Overlay_40286b47.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.cikos
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_40286b47.bin (33009 bytes)

0b7c792c0b2b388b39aa4e5973587c21 (230.13 KB)
File Structure
Overlay_40286b47.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.cikos
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙