Suspicious
Suspect

2bb811fc23f0556e3b852ab9fb84cbc2

PE Executable
|
MD5: 2bb811fc23f0556e3b852ab9fb84cbc2
|
Size: 3.36 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
2bb811fc23f0556e3b852ab9fb84cbc2
Sha1
fac29c245ec691675d6e95774e1f46a4057627d3
Sha256
ed8bd59c514a257fd97b34500a3aa6c177878272e468aeea3c8ddfa64f244312
Sha384
2f25e0012264e55e0c29b562c858c056ee4d2c69acf2d91f43a93c17208e17806fc562e16cc0b8c1b0f4b9e7a0728e46
Sha512
59a16714f858769a25cb1e79e465dba8a3f3314a5629aa40ec797ae98dece629865c6336efae05ab42ae64126c9a2134a3e37786a988b9e070c2b045cc200cb6
SSDeep
98304:FQwF3T3R1F15Ge53Gb9g3N85lO2dXEJVr:SwNPvEyqBbXEJh
TLSH
A3F53301B6C114B3E07319B38E7A9B01597D7C201BA5CDDFA7821E2DAD716C0E63AB76

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.didat
.rsrc
.reloc
Resources
RT_BITMAP
ID:0065
ID:1024
RT_ICON
ID:0001
ID:1024
ID:0002
ID:1024
ID:0003
ID:1024
ID:0004
ID:1024
RT_DIALOG
ID:0000
ID:1033
RT_STRING
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
ID:000C
ID:1033
ID:000D
ID:1033
ID:000E
ID:1033
ID:000F
ID:1033
ID:0010
ID:1033
RT_GROUP_CURSOR4
ID:0064
ID:1024
RT_MANIFEST
ID:0001
ID:1033
Artefacts
Name
Value
PDB Path

D:\Projects\WinRAR\sfx\build\sfxrar32\Release\sfxrar.pdb

2bb811fc23f0556e3b852ab9fb84cbc2 (3.36 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙