Suspicious
Suspect

6126e03fe2708f515757f50f7bc76a5a

PE Executable
|
MD5: 6126e03fe2708f515757f50f7bc76a5a
|
Size: 3.79 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
6126e03fe2708f515757f50f7bc76a5a
Sha1
a446a2def6501c5f29bc0d8625b464ba6641ce68
Sha256
fa8fa223dc52b0a99a96d0bb11683b6beb8a9b48b388ba738fce69e8ce2a34d5
Sha384
6f8ab21b2a38b54294c06727c635fbd5ae9556052264100eb6738ae53b7fb14a76d0e864a95135bb5e80e214b9d88d1a
Sha512
19ddb0eca9bd7d4168e666afe17da645661afb2ec12191168ac3bf58c10ce7ee70b82125020daafc140d6821c5877b5a17dc3f4e41874cbe9a076af0089735f8
SSDeep
98304:+8TOZYxEbDxBCKCj29XWAGJ1Ho2gSuhG:+8TOZYxgHCKCj29/g9HuhG
TLSH
2C069E5BB8F0C6B9E155D239466561717AA1BC180F3233D32FD0BA642F77BD2297A308

PeID

HQR data file
Microsoft Visual C++ v6.0 DLL
Private EXE Protector V2.30-V2.3X -> SetiSoft Team
tElock 1.0 (private) -> tE!
tElock 1.0 (private) -> tE!
File Structure
7z-stream @ 0x00251A18.7z
enlarge200
store
bg.png-preview.png
btn_cancel_hover40.png
btn_cancel_hover40.png-preview.png
btn_cancel_hover48.png
btn_cancel_hover48.png-preview.png
btn_cancel_normal40.png
btn_cancel_normal40.png-preview.png
btn_cancel_normal48.png
btn_cancel_normal48.png-preview.png
btn_cancel_push40.png
btn_cancel_push40.png-preview.png
btn_cancel_push48.png
btn_cancel_push48.png-preview.png
btn_sure_hover40.png
btn_sure_hover40.png-preview.png
btn_sure_hover48.png
btn_sure_hover48.png-preview.png
btn_sure_hover_shadow.png
btn_sure_hover_shadow.png-preview.png
btn_sure_normal40.png
btn_sure_normal40.png-preview.png
btn_sure_normal48.png
btn_sure_normal48.png-preview.png
btn_sure_normal_shadow.png
btn_sure_normal_shadow.png-preview.png
btn_sure_push40.png
btn_sure_push40.png-preview.png
btn_sure_push48.png
btn_sure_push48.png-preview.png
btn_sure_push_shadow.png
btn_sure_push_shadow.png-preview.png
close_hover.png
close_hover.png-preview.png
close_normal.png
close_normal.png-preview.png
min_hover.png
min_hover.png-preview.png
min_normal.png
min_normal.png-preview.png
pack_off_hover.png
pack_off_hover.png-preview.png
pack_off_normal.png
pack_off_normal.png-preview.png
pack_up_hover.png
pack_up_hover.png-preview.png
pack_up_normal.png
pack_up_normal.png-preview.png
progress_bg.png
progress_bg.png-preview.png
progress_fg.png
progress_fg.png-preview.png
radio_hover.png
radio_hover.png-preview.png
radio_normal.png
radio_normal.png-preview.png
radio_selected_hover.png
radio_selected_hover.png-preview.png
radio_selected_normal.png
radio_selected_normal.png-preview.png
mainframe.xml
multi_language.tsv
store
bg.png-preview.png
browser_hover.png
browser_hover.png-preview.png
browser_normal.png
browser_normal.png-preview.png
browser_pushed.png
browser_pushed.png-preview.png
btn_cancel_hover40.png
btn_cancel_hover40.png-preview.png
btn_cancel_hover48.png
btn_cancel_hover48.png-preview.png
btn_cancel_normal40.png
btn_cancel_normal40.png-preview.png
btn_cancel_normal48.png
btn_cancel_normal48.png-preview.png
btn_cancel_push40.png
btn_cancel_push40.png-preview.png
btn_cancel_push48.png
btn_cancel_push48.png-preview.png
btn_sure_hover40.png
btn_sure_hover40.png-preview.png
btn_sure_hover48.png
btn_sure_hover48.png-preview.png
btn_sure_hover_shadow.png
btn_sure_hover_shadow.png-preview.png
btn_sure_normal40.png
btn_sure_normal40.png-preview.png
btn_sure_normal48.png
btn_sure_normal48.png-preview.png
btn_sure_normal_shadow.png
btn_sure_normal_shadow.png-preview.png
btn_sure_push40.png
btn_sure_push40.png-preview.png
btn_sure_push48.png
btn_sure_push48.png-preview.png
btn_sure_push_shadow.png
btn_sure_push_shadow.png-preview.png
close_hover.png
close_hover.png-preview.png
close_normal.png
close_normal.png-preview.png
edit_border_focus.png
edit_border_focus.png-preview.png
edit_border_normal.png
edit_border_normal.png-preview.png
messagebox_bg.png
messagebox_bg.png-preview.png
min_hover.png
min_hover.png-preview.png
min_normal.png
min_normal.png-preview.png
pack_off_hover.png
pack_off_hover.png-preview.png
pack_off_normal.png
pack_off_normal.png-preview.png
pack_up_hover.png
pack_up_hover.png-preview.png
pack_up_normal.png
pack_up_normal.png-preview.png
progress_bg.png
progress_bg.png-preview.png
progress_fg.png
progress_fg.png-preview.png
radio_hover.png
radio_hover.png-preview.png
radio_normal.png
radio_normal.png-preview.png
radio_selected_hover.png
radio_selected_hover.png-preview.png
radio_selected_normal.png
radio_selected_normal.png-preview.png
xml_messagebox_help.xml
xml_messagebox_noicon.xml
xml_messagebox_protocol.xml
[Authenticode]_a4a779d0.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
ZIPRES
ID:0081
RT_ICON
ID:0001
ID:0
ID:0-preview.png
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
ID:0005
ID:0
ID:0006
ID:0
ID:0007
ID:0
ID:0008
ID:0
ID:0009
ID:0
ID:000A
ID:0
ID:000B
ID:0
ID:000C
ID:0
ID:000D
ID:0
ID:000E
ID:0
ID:000F
ID:0
ID:0010
ID:0
ID:0011
ID:0
ID:0012
ID:0
ID:0013
ID:0
ID:0014
ID:0
RT_MENU
ID:006D
ID:2052
RT_DIALOG
ID:0067
ID:2052
RT_STRING
ID:0007
ID:2052
RT_ACCELERATOR
ID:006D
ID:2052
RT_GROUP_CURSOR4
ID:0000
ID:0
ID:006B
ID:0
ID:006C
ID:0
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x398800 size 20968 bytes

6126e03fe2708f515757f50f7bc76a5a (3.79 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙