Suspicious
Suspect

4e550ed2f0ded3cd042bb1ada81e36bc

VB5/6 Executable
|
MD5: 4e550ed2f0ded3cd042bb1ada81e36bc
|
Size: 211.89 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
4e550ed2f0ded3cd042bb1ada81e36bc
Sha1
10eed86f155a87451b19fdc6d07b4ef567e3e915
Sha256
b6549952e58bfb46347587744b0d6b0d01ef95ab26de209ae4bb6e8e1121cd49
Sha384
5bf988a52a6471acd5b653f9e76778cb296f19d6e7041b92ddbb5c9e2c9f143544c71af4ba47070838a547cdaddf5828
Sha512
4ae8b6137b39be967b8baff9e98951338185aca5f97c1d9cab664e8e4cb0470196bd7d09f4feeab13569475d9c57b9b6a0b3cfc455b436aab17b432160cf881f
SSDeep
3072:zvEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6un3:zvEN2U+T6i5LirrllHy4HUcMQY6G
TLSH
5724F92BFE40B16EE95396F0642660A67A222D320F91AC0B23D16F4A7471E53F5F171F

PeID

Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
Overlay_ad99c043.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_ad99c043.bin (23474 bytes)

4e550ed2f0ded3cd042bb1ada81e36bc (211.89 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙