Suspicious
Suspect

1aa04f395aaa12484b509fa3f1731bcb

PE Executable
|
MD5: 1aa04f395aaa12484b509fa3f1731bcb
|
Size: 373.46 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
1aa04f395aaa12484b509fa3f1731bcb
Sha1
ac519a1fe1d2b1fb8f7c8bd85b43505f569055d9
Sha256
b303d73e3c93e65c66ce7d1dc9c97fd39fb71d490b91588e59b2a677e17c3cdd
Sha384
795b78d6129b35cec9c61fa841708c9debf214945ced7ba3cc5876c6f5bef5eb7e05758865db4cf2d0b82da0f04eee7c
Sha512
93ca942dc86f752cdc77dd598ab3b4f5d357aae2c7a35523d48fb67996fbf2cf8e263c73d0a500cc044844fdfe637bc37a99f7b8b81aa5759933473f2a620982
SSDeep
6144:uB+pgU1Kl8Ga/j4jO3mvABRp0mP+YCgv/UihJrdsgbKdYgu/oTU0h8d9:ugn7hCuUiRs3E/oT/h4
TLSH
34848C512266DC63E39492B4415AE77E8A71FA8A2D31C33726F1ED9FB618F323C18351

PeID

Installer Nullsoft PiMP Stub v.3.0.x - A.S.L
Microsoft Visual C++ v6.0 DLL
File Structure
[Authenticode]_61f3b28c.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:1033-preview.png
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x5A8B0 size 2592 bytes

1aa04f395aaa12484b509fa3f1731bcb (373.46 KB)
File Structure
[Authenticode]_61f3b28c.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:1033-preview.png
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙