Suspicious
Suspect

137d67de364e555908a28e5023def984

VB5/6 Executable
|
MD5: 137d67de364e555908a28e5023def984
|
Size: 211.75 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
137d67de364e555908a28e5023def984
Sha1
f6fd1dc06dd8cd91c2cb5cdfe1bf8ad59e5c02fa
Sha256
506c4069d7ea94b6df063c86dcb3abab4b1ea682b7284f7d050c6a558d70b7e1
Sha384
220f71ea90dccfacf63c8857e6c7e387356fad37f690706d76c81b49fe5d3eb757f941681271dfe9b027bcbb39e4fed6
Sha512
40a3867d881e58bfeb20dbc1d97d9e923fbd3a5fe2031661d3e564e68d1f2a3a0890139605c7d70480ccb35f01ab83dd1f5f114434085c3b1690670e827a7803
SSDeep
3072:5vEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6unh:5vEN2U+T6i5LirrllHy4HUcMQY68
TLSH
5B24E91FFA05702EE89386F118667566B7222E250BC0EC4B57D1AF9638B2513B5F930F

PeID

Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
Overlay_706dbb3f.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_706dbb3f.bin (23334 bytes)

137d67de364e555908a28e5023def984 (211.75 KB)
File Structure
Overlay_706dbb3f.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙