General
Structural Analysis
Config.0
Yara Rules99+
Sync
Community
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | 70ffeb09a6b864d30334e1c24939a3f9
|
| Sha1 | a1bde279c52532478f29971d5eb8ea6bc1847ce0
|
| Sha256 | aa786859d70bbf102c3684cfae16188e474afb2a5f206f7f95d6ae869b78fec7
|
| Sha384 | 7644c70628382dd891d960530189b2010cb73974d32bd23f82e557b275784dbeb9dd2ee1238200b4351961ddd66958f4
|
| Sha512 | 63da3b40a68958825c4cfac19e2cfcaf1946068fa802cb4d7dd0f31240a9ab032702425f3753f133f04871fc6b5e872e492159bb5c625822ea0ea8f6f0e5fc24
|
| SSDeep | 3072:zvEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6unV:zvEN2U+T6i5LirrllHy4HUcMQY6C
|
| TLSH | 3C24D827FE00702EE46796F05466A69AB9376E221B92BC4F6381EF453871903B1F531F
|
PeID
Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
70ffeb09a6b864d30334e1c24939a3f9
Overlay_f9e301fd.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_f9e301fd.bin (23565 bytes) |
70ffeb09a6b864d30334e1c24939a3f9 (211.98 KB)
File Structure
70ffeb09a6b864d30334e1c24939a3f9
Overlay_f9e301fd.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.