Suspicious
Suspect

52b7fb5887d5192b3456ef38652b4da0

PE Executable
|
MD5: 52b7fb5887d5192b3456ef38652b4da0
|
Size: 1.59 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
52b7fb5887d5192b3456ef38652b4da0
Sha1
47a68135eb80ea1e12b06cd5b979f93cf6bc6b88
Sha256
8297cd00e6dd7a00a075bcb618e9864632fe1aeca0f15cd630f1e7d665d262b2
Sha384
66f10059a175c9bb8a4ed40ee8b51272b463f0f4c31c18beaa4d9ff6f62b41d0107175b16e34d752c3713d8540191d5f
Sha512
7c01c835d29799dc8c9b9ab32d8786c416d627ebbba8d14725fd0cdd34231985479c463b3e9af1515cc7259e5d757bac817fe7cf37dad361f44ab37696f825c5
SSDeep
24576:wvAx5TS/XHrtNg7jdWvLkc/nlOBTa9PqiH6TKgueoagQWRJWndPh/BnUo0PBi:wvAHWDIOU0XsPqoe
TLSH
8C758D22FCEBF0F1DA66463219B792EF2330F5090735A983D944AB72E4E32D15961B1D

PeID

Microsoft Visual C++ v6.0 DLL
PeStubOEP v1.x
tElock 1.0 (private) -> tE!
tElock 1.0 (private) -> tE!
File Structure
Overlay_bf619eac.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:0
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0005
ID:0
ID:0-preview.png
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_bf619eac.bin (512 bytes)

52b7fb5887d5192b3456ef38652b4da0 (1.59 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙