Suspicious
Suspect

7b879af607b60e09ca19ae3a96e0b7e2

PE Executable
|
MD5: 7b879af607b60e09ca19ae3a96e0b7e2
|
Size: 6.15 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
7b879af607b60e09ca19ae3a96e0b7e2
Sha1
9a7ff1a7532f9def3913e5a521bae911c8687974
Sha256
e62a2be6fc7eaacd37f0a0dc5b5d67be66c8b16e630a9836d3e92c8656b721a1
Sha384
23794a8e5ac26b772e254f92c394f512d95a9913113993d66d2284a2a8cd9b19bb6911f406bd8b3f30a3d83cc3119171
Sha512
3ab73d000393f86252c75907c48bac48c2165ef7194157c6093a487972e596e4145042300a8361abd42de7c1bb7cd8282fd7907cf8c67a28364985b6696cf5a9
SSDeep
49152:r3RQCoOPdlGkaROzqknIGWq2CKb7h2egrOzqk3IGWqjfLsNjimFZzws/OUs:re4OmHwshs
TLSH
20564A567D908BB4D0D9A234D4A251A2B661BC081B3677D31F533E3BEE3A7C09A36F14

PeID

HQR data file
Microsoft Visual C++ v6.0 DLL
tElock 1.0 (private) -> tE!
tElock 1.0 (private) -> tE!
File Structure
[Authenticode]_2f105d27.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
RT_GROUP_CURSOR4
ID:0000
ID:0
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x5DDC08 size 2264 bytes

7b879af607b60e09ca19ae3a96e0b7e2 (6.15 MB)
File Structure
[Authenticode]_2f105d27.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.xdata
.idata
.reloc
.symtab
.rsrc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
ID:0002
ID:0
ID:0003
ID:0
ID:0004
ID:0
RT_GROUP_CURSOR4
ID:0000
ID:0
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙