Suspicious
Suspect

AudioCapture.dll

PE Executable
|
MD5: 7629af8099b76f85d37b3802041503ee
|
Size: 89.42 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
7629af8099b76f85d37b3802041503ee
Sha1
f40a5efcb9dee679de22658c6f95c7e9c0f2f0c0
Sha256
2cc8ebea55c06981625397b04575ed0eaad9bb9f9dc896355c011a62febe49b5
Sha384
79708aed68b20b944754f67d97e00201d61ad5be0d8e7e043af6df51db531904e9065dd95fafdec0271ffcc7c3a39897
Sha512
c209714ffdb0b95595583976340f2eb901eb9895f2f420afc4ca3c12744432e52fbedfd857b56cb347d4475df7678bd42d43f221208a108384e1df5aaf7d19e4
SSDeep
768:ZrOxYZwDgyfoVD/Ksdl0R8rKZEmU2ffE7CdmW1B1jvmhxccp2UvHNORpPePtJPv4:ZrOxDJs/Ksdl0R1dBmhFJERpPyJPvuXR
TLSH
F7936C203880C037F59748BBC9FAD6594A7E79544F6591DF7BC806A98F227D29F38207

PeID

MS Visual C++ v7.0 DLL
Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ v6.0 DLL
Visual C++ 2003 DLL -> Microsoft
Visual C++ 2005 DLL -> Microsoft
File Structure
[Authenticode]_b8d8c152.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_STRING
ID:1000
ID:2048
RT_VERSION
ID:0001
ID:2048
RT_MANIFEST
ID:0002
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x14400 size 6472 bytes

Info

PDB Path: E:\nsmsrc\nsm\1201\1201\AudioCapture\Release\AudioCapture.pdb

AudioCapture.dll (89.42 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙