Suspicious
Suspect

89c45793ca41ea31be5c2cae3eecc5e7

VB5/6 Executable
|
MD5: 89c45793ca41ea31be5c2cae3eecc5e7
|
Size: 230.16 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
89c45793ca41ea31be5c2cae3eecc5e7
Sha1
5a9742a090b017047a3f000e5d99550680f3e8a7
Sha256
ab3dbc83eb8d3ce1d82d584dff0af04d0ce17c5510c2d8f00fd22c5d6bb551bc
Sha384
4fe45e4f21221a31384f4561ea9c158b84145d799907b2194dd23922c9f04a58fd4e34bef6030a21f06f80bbde2dc894
Sha512
ce6aeef07b015f43d103a68e8d5289fc70bcb7efe6951b760b86980e77919a33868021f57777c26d47402e70c0e84edc9e6613c7640dee4ce5951cae48a6419d
SSDeep
3072:YvEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6u4Pmug:YvEN2U+T6i5LirrllHy4HUcMQY6i
TLSH
38242A27FE04B02ED492E9F0246661B5B5252E761FD1EC4B6781AF4938B1943B2B530F

PeID

Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
Overlay_e68e17e4.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.cikos
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_e68e17e4.bin (33037 bytes)

89c45793ca41ea31be5c2cae3eecc5e7 (230.16 KB)
File Structure
Overlay_e68e17e4.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.cikos
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙