Suspicious
Suspect

70ffeb09a6b864d30334e1c24939a3f9

VB5/6 Executable
|
MD5: 70ffeb09a6b864d30334e1c24939a3f9
|
Size: 211.98 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
70ffeb09a6b864d30334e1c24939a3f9
Sha1
a1bde279c52532478f29971d5eb8ea6bc1847ce0
Sha256
aa786859d70bbf102c3684cfae16188e474afb2a5f206f7f95d6ae869b78fec7
Sha384
7644c70628382dd891d960530189b2010cb73974d32bd23f82e557b275784dbeb9dd2ee1238200b4351961ddd66958f4
Sha512
63da3b40a68958825c4cfac19e2cfcaf1946068fa802cb4d7dd0f31240a9ab032702425f3753f133f04871fc6b5e872e492159bb5c625822ea0ea8f6f0e5fc24
SSDeep
3072:zvEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6unV:zvEN2U+T6i5LirrllHy4HUcMQY6C
TLSH
3C24D827FE00702EE46796F05466A69AB9376E221B92BC4F6381EF453871903B1F531F

PeID

Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
Overlay_f9e301fd.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_f9e301fd.bin (23565 bytes)

70ffeb09a6b864d30334e1c24939a3f9 (211.98 KB)
File Structure
Overlay_f9e301fd.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙