General
Structural Analysis
Config.0
Yara Rules0
Sync
Community
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | 42629e0a9b3fc7cc85e0e5e0dc6012cc
|
| Sha1 | ff89f8ae72147eb8afdfc7ee28e6c001ab539d3d
|
| Sha256 | 65d0b67b5dbea62cda2adeda51d058d39d489091744fc6a66d2ea9c6878e4e21
|
| Sha384 | b3947fc14ad311c544dfb488bb1fd0bd615d1ed318f2c0c67f1682e6b20f96b6f2dd744ce9dd17a5c6a1dbcbae067e56
|
| Sha512 | 133448ff96aaa51934b382b4336e539ad827de2ccd67c4a0fe8ab8386a89e9d8962275f8bc8cb12e6be7f30777722f2525059b1cadb2c714167d5bfe539564d5
|
| SSDeep | 49152:ymg4k+Fa4QT4lCnBSDmB+ObKAUkRLqopS1o/dvRpApzuMc/i+f49AL7xmIRTWWH4:9CNT4lCnBSDi+SKIRIoOEH4BqKMV
|
| TLSH | 85D58C1A366881B9D077C13CC9878A87E7B274154F219BCF12A443AE2F67BE54D3E721
|
PeID
MASM/TASM - sig4 (h)
Microsoft Visual C++ v6.0 DLL
Microsoft v12.00 64bit C++ DLL - sign ASL ( 64 bit )
File Structure
42629e0a9b3fc7cc85e0e5e0dc6012cc
[Authenticode]_b46cd316.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
RT_ANICURSOR
ID:03A3
ID:1024
RT_MANIFEST
ID:0001
ID:0
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x283000 size 19576 bytes |
| Info | PDB Path: C:\dvs\p4\build\sw\rel\gpu_drv\r565\r565_87\drivers\common\GameSessionTelemetryPlugin\_out\wddm2_amd64_release\NvGSTPlugin.pdb |
42629e0a9b3fc7cc85e0e5e0dc6012cc (2.89 MB)
File Structure
42629e0a9b3fc7cc85e0e5e0dc6012cc
[Authenticode]_b46cd316.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
RT_ANICURSOR
ID:03A3
ID:1024
RT_MANIFEST
ID:0001
ID:0
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.