Suspicious
Suspect

5c534ece45f3999364dcb6a4d0f4df33

PE Executable
|
MD5: 5c534ece45f3999364dcb6a4d0f4df33
|
Size: 436.1 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
5c534ece45f3999364dcb6a4d0f4df33
Sha1
dd7f08cf28ec363324112ce9647549622ec18961
Sha256
04c53eb6c67558ecfb59da6f38498776405570a4f1a99f61934a53173a40a36a
Sha384
049f928d06ac643c38be7e876edf20e77a4e89ae970bbcfa08af4f861a9aa9da60d55f9ddfb43d3976d5d664e03f524e
Sha512
0732e20912bb4cf09c5f1b010bf64040cace14c55aad01ae133012bcfbe47efdea95955bdc394116f2807cab951cb502531020f819c750882a1791ce9c2d77f3
SSDeep
6144:fQ606xV8H+lc7SGd7UP6Vk8YT1D2rxj85F75hvMMutRZYj2sEWIYlw7ZwjTtxrl2:UecGGRUok8lkkMKZ1spIYe7ZgTTl2
TLSH
E994F1023782E54BCDEC0AB445AF92EF4E76AE7769868A53F2C0F75E7C752C57918200

PeID

Installer Nullsoft PiMP Stub v.3.0.x - A.S.L
Microsoft Visual C++ v6.0 DLL
File Structure
[NSIS Installer] @ #00031408
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_DIALOG
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
Jarosite.Und
Rejsegodtgrelsen202.adj
Befouls.Squ
sightworthy.mis
[SETUP_DECOMPILED.NSI]
Overlay_c98082eb.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_BITMAP
ID:006E
ID:1033
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
RT_DIALOG
ID:0067
ID:1033
ID:0068
ID:1033
ID:0069
ID:1033
ID:006A
ID:1033
ID:006B
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_c98082eb.bin (234373 bytes)

5c534ece45f3999364dcb6a4d0f4df33 (436.1 KB)
File Structure
[NSIS Installer] @ #00031408
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_DIALOG
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
Jarosite.Und
Rejsegodtgrelsen202.adj
Befouls.Squ
sightworthy.mis
[SETUP_DECOMPILED.NSI]
Overlay_c98082eb.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_BITMAP
ID:006E
ID:1033
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
ID:0008
ID:1033
RT_DIALOG
ID:0067
ID:1033
ID:0068
ID:1033
ID:0069
ID:1033
ID:006A
ID:1033
ID:006B
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙