Suspicious
Suspect

6a954f19bd518f7a7eee3f5717206750.Thông[...]iện.exe

PE Executable
|
MD5: 6a954f19bd518f7a7eee3f5717206750
|
Size: 1.03 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
6a954f19bd518f7a7eee3f5717206750
Sha1
9c148f7a205c7af714ee29d599838d043d94df0f
Sha256
cdf8c43cdca0aae5ebae3ae4155f8ec78d84eec31e864c0cc843b99c61d36c1d
Sha384
7b92b69bb4b1774735b8597cb0b39d49056cb0132be7f3449f226225a9433f6bafd538b60930bfcba1d6e31b53dfb5d9
Sha512
86169c1ac25dcf8aa8558b3eb64717a7123c3daa43a4df2c99b431aff65c6b0c4730a8ae04f3ad9002d1064af2de18821d66ef15253cd07920b557ce3f799cde
SSDeep
24576:Oy0U+cUv78GLv9bjRl9UORGqm/ZPIlAodTl5vL5B:B0FcC5JhRBm/i5d55vt
TLSH
EC25F1AC3254B5EFC8A7C6B1CAA4CD75A6617DAB5307820780D718AFB90C987DF141F2

PeID

.NET executable
Microsoft Visual C# / Basic .NET
Microsoft Visual C# / Basic.NET / MS Visual Basic 2005 - ASL
Microsoft Visual C# v7.0 / Basic .NET
Microsoft Visual Studio .NET
UPolyX 0.3 -> delikon
File Structure
6a954f19bd518f7a7eee3f5717206750.Thông báo về việc nhận hàng ____của bưu kiện.exe
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_GROUP_CURSOR4
ID:7F00
ID:0
RT_VERSION
ID:0001
ID:0
6a954f19bd518f7a7eee3f5717206750.Thông báo về việc nhận hàng ____của bưu kiện.exe (1.03 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙