Malicious
Malicious

2294094885d3f9af1d222859c2743791

PE Executable
|
MD5: 2294094885d3f9af1d222859c2743791
|
Size: 2.31 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
2294094885d3f9af1d222859c2743791
Sha1
04e24c1c26a8e449a3c40178545fed9db146782c
Sha256
853c06fcf462269d2345d4a9d2c400ed693391220c50ed7b943b1a2147f74ddf
Sha384
90c328ed652087fe62ef997fa7aa94a5a6fe8495db76648310b70cea41950862c1329fc8f4960e8e18ce6c568e16e0bc
Sha512
d9e43750e769cb77897b64b1a1a5f794db0a9569a20b9a184e063488487e501e7eb1894d8c6145ea56340a700169f604199f51c3bfb4ed5315e9221442220729
SSDeep
49152:KevVc1WneSz3cV1IS81e/ntTc7ht799PQ/lFTjN4:Ke6WDzMV1kCTQ799ELm
TLSH
7EB5335A53D6A5EBFFB157F065E14147833734926B78A2AF26C892344E3B3D46830B0B

PeID

Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
RT_DIALOG
ID:07D1
ID:1033
ID:07D2
ID:1033
ID:07D3
ID:1033
ID:07D4
ID:1033
ID:07D5
ID:1033
ID:07D6
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Transexuales.flv
aut40C6.tmp.tok
Malicious
[Cleaned].au3
Malicious
Consequence
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: wextract.pdb

2294094885d3f9af1d222859c2743791 (2.31 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
RT_DIALOG
ID:07D1
ID:1033
ID:07D2
ID:1033
ID:07D3
ID:1033
ID:07D4
ID:1033
ID:07D5
ID:1033
ID:07D6
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Transexuales.flv
aut40C6.tmp.tok
Malicious
[Cleaned].au3
Malicious
Consequence
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙