Suspicious
Suspect

4c6c3acb318db12b2ad5ff085a367a24

AutoIt Compiled Script
|
MD5: 4c6c3acb318db12b2ad5ff085a367a24
|
Size: 8.6 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
4c6c3acb318db12b2ad5ff085a367a24
Sha1
c294590ede68d906bdf20e0d8715a904b1320e92
Sha256
9915d0cb9587f1b4dc6a30e923a4a40c225ffa9b88a360c0bb3acfec216fd206
Sha384
6f063db50616e7c4118eac2b03a324de9fd28329dc239992edfc7b44b2ebae7cb2992b404cd5091f70318025c358f78a
Sha512
67713b0d6630495ea2456b8a9deaa2384862fcf4985152e6cf3bc97ea213ee61d05b38320b6f4bd5817a1576a9fb68bcaba4a4afc7747a5078cd082b590514e7
SSDeep
98304:Yi3J/ANEvLIxa4nXb1Ru0DNw2eziRdhhbuXzrHKc28R:oNKruJRJdhhKPpZR
TLSH
2686BE10B7984075D9EB163418AF6726A37FFD505BA086CF2650A39E9C313C2AF317A7

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
Private EXE Protector V2.30-V2.3X -> SetiSoft Team
File Structure
Overlay_b4383028.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:0
ID:0005
ID:0
ID:0006
ID:0
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
ID:00CD
ID:1033
ID:00CE
ID:1033
ID:00D3
ID:1033
ID:0131
ID:1033
ID:0132
ID:1033
ID:0137
ID:1033
ID:0195
ID:1033
ID:0196
ID:1033
ID:019B
ID:1033
ID:01F9
ID:1033
ID:01FA
ID:1033
ID:01FF
ID:1033
ID:025D
ID:1033
ID:025E
ID:1033
ID:0263
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0000
ID:0
ID:0BB8
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Goods.pptm
Step.pptm
Discounted.pptm
Filtering.pptm
Hierarchy
Navigator
Installing
Amendments
Veterinary
Newcastle
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_b4383028.bin (6922240 bytes)

Info

PDB Path: wextract.pdb

4c6c3acb318db12b2ad5ff085a367a24 (8.6 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙