Suspicious
Suspect

379f8617e3a4bac75967865fd515e16d

PE Executable
|
MD5: 379f8617e3a4bac75967865fd515e16d
|
Size: 654.09 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
379f8617e3a4bac75967865fd515e16d
Sha1
5749dc730db3da44b692fe65cb01bbc7861ea612
Sha256
8ea0a4e1ebaa2134dbf13284db36b0edf8ffb728c99d3f2ea00e481b64ae84a5
Sha384
03a4df38f21cb8d99ea617948e695192301a84eb5c8aed9fa598c0a6326ceb720299fcc892a41d0300e3dc62deb56dec
Sha512
e995acb22f9c4893d7c029df6a215fbabd6f684cbb4bbde624ea3a5732134789b0c74e8ff6c02baa311d9d3ee1f32b87035f03bc7adb618e7021913651ee3933
SSDeep
12288:rSQecZh1oPTS2HRO4iY43yZKiA+9tQspiJ:0cZgLHw4ZBZ4+iJ
TLSH
EBD432DF6ABCE0CCD4517AFDD584EC018B68799C7690008E1686EB17FC6AB438F1E589

PeID

Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
File Structure
[Authenticode]_79c4bc8a.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.idata
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
RT_MENU
ID:0003
ID:1033
RT_DIALOG
ID:0000
ID:1033
RT_STRING
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
ID:000C
ID:1033
ID:000D
ID:1033
ID:000E
ID:1033
ID:000F
ID:1033
ID:0010
ID:1033
RT_ACCELERATOR
ID:0150
ID:1033
ID:0151
ID:1033
ID:0152
ID:1033
ID:0153
ID:1033
ID:0154
ID:1033
ID:0155
ID:1033
RT_GROUP_CURSOR4
ID:0002
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x9D400 size 9992 bytes

Info

PDB Path: t

379f8617e3a4bac75967865fd515e16d (654.09 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙