Suspicious
Suspect

15a1f100b50d89f1cb36fbb0aa47a417

ZIP Archive
|
MD5: 15a1f100b50d89f1cb36fbb0aa47a417
|
Size: 12 MB
|
application/zip


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
15a1f100b50d89f1cb36fbb0aa47a417
Sha1
4ef497a947d5641b29ca6624355e17a840ad4e39
Sha256
c700aea61e06b8c3eb77eb63391433bb37df6da60ea2e6b31d701c159a760dca
Sha384
8e4447f669db60ec9060fe1e700e511b4a0ff2a9207a6905c8db5be0e0e08adb4fdedf2b6c5cd07a25945862e772a6dd
Sha512
bf45b54b9100de9abd9f787e9f1c18c2481b06d584826d136da49ea3cf5756013c2c13995b08ad48b53a1847f4b6fdb25770e7cce4c5faffd06a68ca2fe9b691
SSDeep
196608:wt4aWuiasbfxjeQEx5tO1aIFqTBw/JY7QBU1CSgk08LEaXVAPoSObwdsh8p73qVh:wtsFayo5Qf8GK7QBs0QxWPBGwdshEYh
TLSH
A7C6334B88FD2357EC5B73341161DA4B566FC7A2B002A96B5D0E82E46C83CB89F3E517
File Structure
[Authenticode]_db1a4b1f.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0002
ID:1033
[Authenticode]_4d322fe0.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
[Authenticode]_85e9b278.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
[Authenticode]_4754d1a7.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
[Authenticode]_d59ed1c1.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
[Authenticode]_7b37db2b.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
[Authenticode]_b7239277.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
[Authenticode]_2aebdd56.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:1033-preview.png
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
ID:000C
ID:1033
RT_GROUP_CURSOR4
ID:0001
ID:1033
RT_VERSION
ID:0001
ID:1033
NvDriverDiagnostics.json
[Authenticode]_f0e2f0dd.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.rdata
.rsrc
Resources
RT_VERSION
ID:0001
ID:1033
python313._pth
[Authenticode]_bd9aa738.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
PyRuntim
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
antigravity.pyc
argparse.pyc
base64.pyc
bisect.pyc
calendar.pyc
codecs.pyc
codeop.pyc
colorsys.pyc
compileall.pyc
configparser.pyc
contextlib.pyc
contextvars.pyc
copyreg.pyc
cProfile.pyc
dataclasses.pyc
datetime.pyc
decimal.pyc
difflib.pyc
doctest.pyc
filecmp.pyc
fileinput.pyc
fnmatch.pyc
fractions.pyc
ftplib.pyc
functools.pyc
genericpath.pyc
getopt.pyc
getpass.pyc
gettext.pyc
graphlib.pyc
hashlib.pyc
heapq.pyc
imaplib.pyc
inspect.pyc
ipaddress.pyc
keyword.pyc
linecache.pyc
locale.pyc
mailbox.pyc
mimetypes.pyc
modulefinder.pyc
netrc.pyc
ntpath.pyc
nturl2path.pyc
numbers.pyc
opcode.pyc
operator.pyc
optparse.pyc
pickle.pyc
pickletools.pyc
pkgutil.pyc
platform.pyc
plistlib.pyc
poplib.pyc
posixpath.pyc
pprint.pyc
profile.pyc
pstats.pyc
pyclbr.pyc
pydoc.pyc
py_compile.pyc
queue.pyc
quopri.pyc
random.pyc
reprlib.pyc
rlcompleter.pyc
runpy.pyc
sched.pyc
secrets.pyc
selectors.pyc
shelve.pyc
shlex.pyc
shutil.pyc
signal.pyc
smtplib.pyc
socket.pyc
socketserver.pyc
sre_compile.pyc
sre_constants.pyc
sre_parse.pyc
statistics.pyc
string.pyc
stringprep.pyc
struct.pyc
subprocess.pyc
symtable.pyc
tabnanny.pyc
tarfile.pyc
tempfile.pyc
textwrap.pyc
threading.pyc
timeit.pyc
token.pyc
tokenize.pyc
trace.pyc
traceback.pyc
tracemalloc.pyc
types.pyc
typing.pyc
warnings.pyc
weakref.pyc
webbrowser.pyc
zipapp.pyc
zipimport.pyc
_aix_support.pyc
_android_support.pyc
_apple_support.pyc
_collections_abc.pyc
_colorize.pyc
_compat_pickle.pyc
_compression.pyc
_ios_support.pyc
_markupbase.pyc
_opcode_metadata.pyc
_osx_support.pyc
_pydatetime.pyc
_pydecimal.pyc
_pyio.pyc
_pylong.pyc
_py_abc.pyc
_sitebuiltins.pyc
_strptime.pyc
_threading_local.pyc
_weakrefset.pyc
__future__.pyc
__hello__.pyc
asyncio
base_events.pyc
base_futures.pyc
base_subprocess.pyc
base_tasks.pyc
constants.pyc
coroutines.pyc
events.pyc
exceptions.pyc
format_helpers.pyc
futures.pyc
locks.pyc
mixins.pyc
proactor_events.pyc
protocols.pyc
queues.pyc
runners.pyc
selector_events.pyc
sslproto.pyc
staggered.pyc
streams.pyc
subprocess.pyc
taskgroups.pyc
tasks.pyc
threads.pyc
timeouts.pyc
transports.pyc
trsock.pyc
unix_events.pyc
windows_events.pyc
windows_utils.pyc
__init__.pyc
__main__.pyc
collections
__init__.pyc
concurrent
__init__.pyc
futures
process.pyc
thread.pyc
_base.pyc
__init__.pyc
ctypes
wintypes.pyc
_endian.pyc
__init__.pyc
macholib
dylib.pyc
fetch_macholib
fetch_macholib.bat
framework.pyc
README.ctypes
__init__.pyc
curses
ascii.pyc
has_key.pyc
panel.pyc
textpad.pyc
__init__.pyc
dbm
sqlite3.pyc
__init__.pyc
email
architecture.rst
base64mime.pyc
charset.pyc
contentmanager.pyc
encoders.pyc
errors.pyc
feedparser.pyc
generator.pyc
header.pyc
headerregistry.pyc
iterators.pyc
message.pyc
parser.pyc
policy.pyc
quoprimime.pyc
utils.pyc
_encoded_words.pyc
_header_value_parser.pyc
_parseaddr.pyc
_policybase.pyc
__init__.pyc
mime
application.pyc
audio.pyc
image.pyc
message.pyc
multipart.pyc
nonmultipart.pyc
__init__.pyc
encodings
aliases.pyc
ascii.pyc
base64_codec.pyc
big5hkscs.pyc
bz2_codec.pyc
charmap.pyc
cp037.pyc
cp1006.pyc
cp1026.pyc
cp1125.pyc
cp1140.pyc
cp1250.pyc
cp1251.pyc
cp1252.pyc
cp1253.pyc
cp1254.pyc
cp1255.pyc
cp1256.pyc
cp1257.pyc
cp1258.pyc
cp273.pyc
cp424.pyc
cp437.pyc
cp500.pyc
cp720.pyc
cp737.pyc
cp775.pyc
cp850.pyc
cp852.pyc
cp855.pyc
cp856.pyc
cp857.pyc
cp858.pyc
cp860.pyc
cp861.pyc
cp862.pyc
cp863.pyc
cp864.pyc
cp865.pyc
cp866.pyc
cp869.pyc
cp874.pyc
cp875.pyc
cp932.pyc
cp949.pyc
cp950.pyc
euc_jisx0213.pyc
euc_jis_2004.pyc
euc_jp.pyc
euc_kr.pyc
gb18030.pyc
gb2312.pyc
hex_codec.pyc
hp_roman8.pyc
iso2022_jp.pyc
iso2022_jp_1.pyc
iso2022_jp_2.pyc
iso2022_jp_2004.pyc
iso2022_jp_3.pyc
iso2022_jp_ext.pyc
iso2022_kr.pyc
iso8859_1.pyc
iso8859_10.pyc
iso8859_11.pyc
iso8859_13.pyc
iso8859_14.pyc
iso8859_15.pyc
iso8859_16.pyc
iso8859_2.pyc
iso8859_3.pyc
iso8859_4.pyc
iso8859_5.pyc
iso8859_6.pyc
iso8859_7.pyc
iso8859_8.pyc
iso8859_9.pyc
johab.pyc
koi8_r.pyc
koi8_t.pyc
koi8_u.pyc
kz1048.pyc
latin_1.pyc
mac_arabic.pyc
mac_croatian.pyc
mac_cyrillic.pyc
mac_farsi.pyc
mac_greek.pyc
mac_iceland.pyc
mac_latin2.pyc
mac_roman.pyc
mac_romanian.pyc
mac_turkish.pyc
palmos.pyc
ptcp154.pyc
punycode.pyc
quopri_codec.pyc
raw_unicode_escape.pyc
rot_13.pyc
shift_jis.pyc
shift_jisx0213.pyc
shift_jis_2004.pyc
tis_620.pyc
undefined.pyc
unicode_escape.pyc
utf_16.pyc
utf_16_be.pyc
utf_16_le.pyc
utf_32.pyc
utf_32_be.pyc
utf_32_le.pyc
utf_7.pyc
utf_8.pyc
utf_8_sig.pyc
uu_codec.pyc
zlib_codec.pyc
__init__.pyc
html
entities.pyc
parser.pyc
__init__.pyc
http
client.pyc
cookiejar.pyc
server.pyc
__init__.pyc
importlib
machinery.pyc
readers.pyc
simple.pyc
_bootstrap.pyc
_bootstrap_external.pyc
__init__.pyc
metadata
diagnose.pyc
_adapters.pyc
_collections.pyc
_functools.pyc
_itertools.pyc
_meta.pyc
_text.pyc
__init__.pyc
resources
readers.pyc
simple.pyc
_adapters.pyc
_common.pyc
_functional.pyc
_itertools.pyc
__init__.pyc
json
decoder.pyc
encoder.pyc
scanner.pyc
__init__.pyc
logging
config.pyc
handlers.pyc
__init__.pyc
multiprocessing
connection.pyc
context.pyc
forkserver.pyc
managers.pyc
popen_fork.pyc
popen_forkserver.pyc
popen_spawn_posix.pyc
popen_spawn_win32.pyc
process.pyc
queues.pyc
reduction.pyc
resource_sharer.pyc
resource_tracker.pyc
sharedctypes.pyc
shared_memory.pyc
spawn.pyc
synchronize.pyc
__init__.pyc
dummy
connection.pyc
__init__.pyc
pathlib
_local.pyc
__init__.pyc
pydoc_data
topics.pyc
_pydoc.css
__init__.pyc
re
_casefix.pyc
_compiler.pyc
_constants.pyc
_parser.pyc
__init__.pyc
site-packages
README.txt
sqlite3
dbapi2.pyc
__init__.pyc
__main__.pyc
sysconfig
__init__.pyc
__main__.pyc
tomllib
_parser.pyc
_types.pyc
__init__.pyc
unittest
async_case.pyc
loader.pyc
result.pyc
runner.pyc
signals.pyc
suite.pyc
__init__.pyc
__main__.pyc
urllib
error.pyc
parse.pyc
request.pyc
response.pyc
robotparser.pyc
__init__.pyc
wsgiref
handlers.pyc
headers.pyc
simple_server.pyc
types.pyc
validate.pyc
__init__.pyc
xml
__init__.pyc
dom
domreg.pyc
expatbuilder.pyc
minicompat.pyc
minidom.pyc
NodeFilter.pyc
pulldom.pyc
xmlbuilder.pyc
__init__.pyc
etree
cElementTree.pyc
ElementInclude.pyc
ElementPath.pyc
ElementTree.pyc
__init__.pyc
parsers
expat.pyc
__init__.pyc
sax
expatreader.pyc
handler.pyc
saxutils.pyc
xmlreader.pyc
_exceptions.pyc
__init__.pyc
xmlrpc
client.pyc
server.pyc
__init__.pyc
zipfile
__init__.pyc
__main__.pyc
_path
__init__.pyc
zoneinfo
_common.pyc
_tzpath.pyc
_zoneinfo.pyc
__init__.pyc
_pyrepl
base_eventqueue.pyc
commands.pyc
completing_reader.pyc
console.pyc
curses.pyc
fancy_termios.pyc
historical_reader.pyc
input.pyc
keymap.pyc
pager.pyc
reader.pyc
readline.pyc
simple_interact.pyc
trace.pyc
types.pyc
unix_console.pyc
unix_eventqueue.pyc
utils.pyc
windows_console.pyc
windows_eventqueue.pyc
_minimal_curses.pyc
_threading_handler.pyc
__init__.pyc
__main__.pyc
__phello__
__init__.pyc
ham
__init__.pyc
[Authenticode]_71f8d52a.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
[Authenticode]_fcfc5664.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.idata
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
[Authenticode]_b428b60c.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
Artefacts
Name
Value
URLs in VB Code - #1

https://www.python.org/psf/license/

URLs in VB Code - #2

https://peps.python.org/pep-0263/

URLs in VB Code - #3

http://schemas.microsoft.com/SMI/2016/WindowsSettings

URLs in VB Code - #4

http://www.microsoft.com/pkiops/crl/Microsoft%20ID%20Verified%20CS%20AOC%20CA%2001.crl0

URLs in VB Code - #5

http://www.microsoft.com/pkiops/certs/Microsoft%20ID%20Verified%20CS%20AOC%20CA%2001.crt0

URLs in VB Code - #6

http://oneocsp.microsoft.com/ocsp0f

URLs in VB Code - #7

http://www.microsoft.com/pkiops/Docs/Repository.htm0

URLs in VB Code - #8

http://www.microsoft.com/pkiops/crl/Microsoft%20ID%20Verified%20Code%20Signing%20PCA%202021.crl0

URLs in VB Code - #9

http://www.microsoft.com/pkiops/certs/Microsoft%20ID%20Verified%20Code%20Signing%20PCA%202021.crt0

URLs in VB Code - #10

http://oneocsp.microsoft.com/ocsp0

URLs in VB Code - #11

http://www.microsoft.com/pkiops/crl/Microsoft%20Identity%20Verification%20Root%20Certificate%20Authority%202020.crl0

URLs in VB Code - #12

http://www.microsoft.com/pkiops/certs/Microsoft%20Identity%20Verification%20Root%20Certificate%20Authority%202020.crt0

URLs in VB Code - #13

http://www.microsoft.com/pkiops/crl/Microsoft%20Public%20RSA%20Timestamping%20CA%202020.crl0y

URLs in VB Code - #14

http://www.microsoft.com/pkiops/certs/Microsoft%20Public%20RSA%20Timestamping%20CA%202020.crt0

URLs in VB Code - #1

http://ocert.org/advisories/ocert-2011-003.html

URLs in VB Code - #2

https://www.unicode.org/Public/15.1.0/ucd/DerivedCoreProperties.txt

15a1f100b50d89f1cb36fbb0aa47a417 (12 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙