Suspicious
Suspect

5377b90a65cef26fcfd075a0ee2b9822

PE Executable
MD5: 5377b90a65cef26fcfd075a0ee2b9822
Size: 420.77 KB
application/x-dosexec
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
5377b90a65cef26fcfd075a0ee2b9822
Sha1
5019d6cfd60cb67191f009f781f772a074b1ce89
Sha256
2a97e8ffb5cfbbccd8e2c812fb6f86769ec014692f9bd598ad446c096630d577
Sha384
d5fe6fd252f3ab090efefdcb6c3f7cdefb47fc3a8243df3827b2621682475130a03825b2cf2424ca6bfa9057a784dff0
Sha512
77769605229f21aafb7276d9dc2e70d3fe1c3bc9b8f441d504e8a5407f4eea74b38118f572e3a9fbbe21fef21e1884083bd9d2fbba7d1658344d7a2640340f52
SSDeep
6144:ihgvqWVHEi02wuz2aXG2lNLuZYpV6wmOjfNoZYX/3PfcKrKywXJhm:i2S2HlwKXG2PaoQLOJHdGyqJU
TLSH
80948D2AF3A41DF8F82AE178C9565512EA31FC55076096EB33A096252F733D02E3FB51

PeID

Microsoft Visual C++ v6.0 DLL
Private EXE Protector V2.30-V2.3X -> SetiSoft Team
File Structure
Overlay_f7fabfdb.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.00cfg
.tls
.voltbl
_RDATA
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
RT_DIALOG
ID:0065
ID:1033
RT_STRING
ID:003F
ID:1033
RT_RCDATA
ID:0456
ID:0
RT_GROUP_CURSOR4
ID:03EB
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
ID:0011
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_f7fabfdb.bin (10656 bytes)

Info

PDB Path: updater.pdb

5377b90a65cef26fcfd075a0ee2b9822 (420.77 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙