Suspicious
Suspect

6c0af02f1d2fb03ec479ccfc9cf30f48

AutoIt Compiled Script
|
MD5: 6c0af02f1d2fb03ec479ccfc9cf30f48
|
Size: 1.64 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
6c0af02f1d2fb03ec479ccfc9cf30f48
Sha1
33a5881e85f416e0971efadb53b4733756c700d1
Sha256
285403b51c4897c5aa8ff01c2d5d13d018381454b69b07c6a5bd92312091e1d5
Sha384
7076eaf7cf21c0d72a23da3c36f44a4d2e8c3ea4f4dc9768af2654bda73367dea1d1ac1f9358519d1fb27e4641c24011
Sha512
3e28c02a93cbf044949f054c916a9632b9ae813806f56fb510e3e4e3462f5445ff3574dc4b438344a9f5ab93f4d323447d5311b0d696d7cc40218c24ec86ba29
SSDeep
49152:Xj3lwMwliSTFBtR961od+pa5dXdKmmbg:7OriSTJ61Y8a5dNKlg
TLSH
AA75231E53F07865D5BC237482F5818397727CA21B9431EF67C4A7EE0F62AC0AA34786

PeID

Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
ID:00CD
ID:1033
ID:00CE
ID:1033
ID:00D3
ID:1033
ID:0131
ID:1033
ID:0132
ID:1033
ID:0137
ID:1033
ID:0195
ID:1033
ID:0196
ID:1033
ID:019B
ID:1033
ID:01F9
ID:1033
ID:01FA
ID:1033
ID:01FF
ID:1033
ID:025D
ID:1033
ID:025E
ID:1033
ID:0263
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Quick.adts
Salt.adts
Paintings.adts
Child.adts
Soldier.adts
Contribute
Continuing
Attractions
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: wextract.pdb

6c0af02f1d2fb03ec479ccfc9cf30f48 (1.64 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
ID:00CD
ID:1033
ID:00CE
ID:1033
ID:00D3
ID:1033
ID:0131
ID:1033
ID:0132
ID:1033
ID:0137
ID:1033
ID:0195
ID:1033
ID:0196
ID:1033
ID:019B
ID:1033
ID:01F9
ID:1033
ID:01FA
ID:1033
ID:01FF
ID:1033
ID:025D
ID:1033
ID:025E
ID:1033
ID:0263
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Quick.adts
Salt.adts
Paintings.adts
Child.adts
Soldier.adts
Contribute
Continuing
Attractions
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙