Suspect
392ed21cd336955dcd43b7f2a16ba6c8
VB5/6 Executable | MD5: 392ed21cd336955dcd43b7f2a16ba6c8 | Size: 211.88 KB | application/x-dosexec
VB5/6 Executable
MD5: 392ed21cd336955dcd43b7f2a16ba6c8
Size: 211.88 KB
application/x-dosexec
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | 392ed21cd336955dcd43b7f2a16ba6c8
|
| Sha1 | 9c73c63ef1ccfc41431368cd5c5a23d0a80d4ff7
|
| Sha256 | 50391f90e83462c736603b6bb5ae26fa5f328c40f2e3b05e696cb7129edf6e34
|
| Sha384 | 1eedd833ca7ea93ca416eb05f0bf1122ce513a32ce25a81b4e47a20219ed340f8bfef9fdffa574cf1a8b669d873621db
|
| Sha512 | 5eac89b3621fe930d7bfe9e17f65861135f2b574052935fa6bfc5a437d4123583f4e3b645e43a0d478f53000be8aef3e409b1e2ada81cd693526b1849a679892
|
| SSDeep | 3072:+vEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6unYlCCCCCCCCCCCCCCCCCCCC4:+vEN2U+T6i5LirrllHy4HUcMQY6rq
|
| TLSH | 4D24F82BEE44702ED9A3D5F05927B1A67A222E320B91EC0B66D1AF457871117F0F931F
|
PeID
Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
392ed21cd336955dcd43b7f2a16ba6c8
Overlay_90b0fe23.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_90b0fe23.bin (23468 bytes) |
392ed21cd336955dcd43b7f2a16ba6c8 (211.88 KB)
File Structure
392ed21cd336955dcd43b7f2a16ba6c8
Overlay_90b0fe23.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.