Suspicious
Suspect

1dea9bcf5ed297e9803b91e6b75fd3f3

VBScript
MD5: 1dea9bcf5ed297e9803b91e6b75fd3f3
Size: 4.86 MB
text/vbscript
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
1dea9bcf5ed297e9803b91e6b75fd3f3
Sha1
4c219a04109734d4a50f591c720fa15c2e951912
Sha256
1ce931d621b70d14bdc90b5dcb8dc8cfce60e027f60eb2ff895c60efeb8ffbe7
Sha384
1ddbf84ef0cff22096932348d8b85891d8108f8e157fef86a482240bd55309e309534921213049b5cea15c142b404e29
Sha512
84e8446ad6970715f9b10332e79847e7105d0280c086fade0d015bac78f30b6b49d15982a2c5badfd4803018b2b1b80a231e2aeadd2477f3599a173c39671b03
SSDeep
49152:LiHDazMZq/LXnxsCCGByl9Ah/uN0D8dfOBVgcjKoeW7Zi5u4KW7r+Da3dtUxnkdE:WHSGrQFpgIKscOi91Ehyo
TLSH
0E264B03E2A541E8C09DC179C30BD637AB76B88A4631B29F1BE81F612F69F506F1D749

PeID

MASM/TASM - sig4 (h)
Microsoft Visual C++ 8.0
Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
File Structure
[Authenticode]_af4df7c7.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.init0
.voltbl2
.text1
.tls2
.data1
.tls3
.cfgb
Resources
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x4A2200 size 787 bytes

Info

PDB Path: hstsvc.pdb

1dea9bcf5ed297e9803b91e6b75fd3f3 (4.86 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙