Suspicious
Suspect

51e8bfaf638508ffa28440dccdfed1bc

AutoIt Compiled Script
|
MD5: 51e8bfaf638508ffa28440dccdfed1bc
|
Size: 1.82 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
51e8bfaf638508ffa28440dccdfed1bc
Sha1
cdba188d62093acf27df6264f3d88ccdfb80e7fe
Sha256
693b0bd511c863bccf221b0f290d92a6a4cc0c705ae0bc010e917489b5af70e8
Sha384
44a7d0771a6589f0e987955559e68e1336c82ef1104e771223366f3cf8e451901b97e626cc30edf2b61a595a047b3975
Sha512
481548a9538d1bd34c833ca97c11840ac81e409dcb2a15b919858cae70d64fb6d584322d2da73179ee27224a55c5b213f8e6bac01102c350f4b8cd2f7d28ba21
SSDeep
49152:5jzxRN+RM5NIuk4pM9EWc5IfagPsMG2gNktRPml67tw:lHNAM7IrSM9Ez5bMs/2gNke67C
TLSH
3485236386F819F7D4B21F3085B154035A30B8526F7E56AF36899DBC0E61BC067B3B26

PeID

Microsoft Visual C++ 8.0 (DLL)
UPolyX 0.3 -> delikon
File Structure
[Authenticode]_0f7ba765.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
RT_DIALOG
ID:07D1
ID:1033
ID:07D2
ID:1033
ID:07D3
ID:1033
ID:07D4
ID:1033
ID:07D5
ID:1033
ID:07D6
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Chair.msi
Aluminium
Acknowledged
Maintained
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x1BB000 size 9768 bytes

Info

PDB Path: wextract.pdb

51e8bfaf638508ffa28440dccdfed1bc (1.82 MB)
File Structure
[Authenticode]_0f7ba765.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:1033-preview.png
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
RT_DIALOG
ID:07D1
ID:1033
ID:07D2
ID:1033
ID:07D3
ID:1033
ID:07D4
ID:1033
ID:07D5
ID:1033
ID:07D6
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Chair.msi
Aluminium
Acknowledged
Maintained
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙