Suspicious
Suspect

99add7b4ac342fd7821d9c494aa4a9a8

AutoIt Compiled Script
|
MD5: 99add7b4ac342fd7821d9c494aa4a9a8
|
Size: 6.3 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
99add7b4ac342fd7821d9c494aa4a9a8
Sha1
91b4d6be823d8bf9b76a6ff3a6b4f8ae6d265a46
Sha256
4a4f79286b9e850bbff6d5c6a7a3ef5b382f241791ade08296d4ee294bda0bb9
Sha384
af66c62ae8fabb4799e4e32b9c72c09d793b6fbfab149e00b4270729e7e2b197e46f2eff84669cb05d5696195ab23ced
Sha512
d133530ecb1853ce694872b983a3087194b17cffe763e2d27b492c2bc9465138a321a77ea66d1a5efe0955b9565161d55786648a623b6af100a79e942cfe22ae
SSDeep
49152:mOjweyFvApgAy4Bpr5tyRMBgzDYqQeDhWWQDFi:74oWi5PyRMIMUhW5hi
TLSH
F2560AF29358EFF07D2F3A399E2A0536016E38A2413CB28772DCE019757B4F552DAA54

PeID

Microsoft Visual C++ 8.0 (DLL)
File Structure
[Authenticode]_7c5e0772.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
RT_DIALOG
ID:07D1
ID:1033
ID:07D2
ID:1033
ID:07D3
ID:1033
ID:07D4
ID:1033
ID:07D5
ID:1033
ID:07D6
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:1033
Recorded.aif
Allowed.aif
Explanation
Republicans
Affiliation
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x600008 size 10672 bytes

Info

PDB Path: wextract.pdb

99add7b4ac342fd7821d9c494aa4a9a8 (6.3 MB)
File Structure
[Authenticode]_7c5e0772.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
RT_DIALOG
ID:07D1
ID:1033
ID:07D2
ID:1033
ID:07D3
ID:1033
ID:07D4
ID:1033
ID:07D5
ID:1033
ID:07D6
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_VERSION
ID:0001
ID:0
RT_MANIFEST
ID:0001
ID:1033
Recorded.aif
Allowed.aif
Explanation
Republicans
Affiliation
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙