Suspicious
Suspect

50d5cbf38b67eab98eca1e7cdc81b72e

PE Executable
MD5: 50d5cbf38b67eab98eca1e7cdc81b72e
Size: 2.57 MB
application/x-dosexec
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
50d5cbf38b67eab98eca1e7cdc81b72e
Sha1
0250f7c5d1938db42b4b0424c90da0bb4aa2a046
Sha256
a44ec3a4e3c5a2076d2bcf75bebd01f2e596bdca44dbfec85ebfb933b7a8d865
Sha384
04a82d6a6cf60db10eb9bd3be213a2bf151feb0f16c772fd871678871c021531ec761724638158fa9301448f7445ed32
Sha512
4cefd16a92b7ecf3a58119b4ca176759a6ab8a55ee091198529a5c3369d20cfe21fb3b51f093bb16a71aa7407094793455427482946306f26ffbfead5a89528f
SSDeep
24576:GcSRpdqGHTWoMqZK+0WdAwls629LU4aqz3YeRvA2Bele5IK2ml4rdDJ+iSdfuunQ:GcSRjryoMx+JeZ7fz3a8isiH
TLSH
9DC54A03ECA209E9C0AA633189B79296BB35BC491F3223D72E90B7782F767D05D35754

PeID

HQR data file
Microsoft Visual C++ v6.0 DLL
tElock 1.0 (private) -> tE!
tElock 1.0 (private) -> tE!
File Structure
[Authenticode]_bfe6ef20.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
ID:1033-preview.png
ID:0004
ID:1033
ID:1033-preview.png
ID:0005
ID:1033
ID:1033-preview.png
RT_GROUP_CURSOR4
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x272000 size 2440 bytes

50d5cbf38b67eab98eca1e7cdc81b72e (2.57 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙