Suspicious
Suspect

8a68ac1d7ad8f61847b8cdf1147a98ed

AutoIt Compiled Script
|
MD5: 8a68ac1d7ad8f61847b8cdf1147a98ed
|
Size: 1.12 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
8a68ac1d7ad8f61847b8cdf1147a98ed
Sha1
9fc5bd3489014fb3f48a255dad56e250c58447fe
Sha256
768c750aed3843832c11003b6d1984ba2c30cf7932cd68bddf7e614de08d09da
Sha384
f5edb3f92c525b4fc5c40e3fbda5b58231aa20054f1faed438a2883d0228efc5a33002e0c2a479bedd9d8f3c27419ede
Sha512
961fa32d56c80d40928f449dd0cba2f281bfcd85de25e5bd72c4a1aa01bfe9a26d00e66bf045e2a5db9318b9bca2a88fc921c241ea4db9a843e7e43d89e574b2
SSDeep
24576:qVDb9otDDmzmReWf25NtqsgrNhNrYKw+CqOcP4AQpG6DKyYWjH3nG:q7oJDmmRdtNhN8YCqOEj6Ky2
TLSH
383523DA8C35C1E1F8424BF679FAA6879FE73C3955026695A3683D343130E806B78357

PeID

Microsoft Visual C++ v6.0 DLL
Nullsoft PiMP Stub -> SFX
File Structure
Overlay_5fc4c43b.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_5fc4c43b.bin (1065847 bytes)

8a68ac1d7ad8f61847b8cdf1147a98ed (1.12 MB)
File Structure
Overlay_5fc4c43b.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙