Suspect
a367c93e2c6b9dd9d57834bf4b251feb
VB5/6 Executable | MD5: a367c93e2c6b9dd9d57834bf4b251feb | Size: 1.29 MB | application/x-dosexec
VB5/6 Executable
MD5: a367c93e2c6b9dd9d57834bf4b251feb
Size: 1.29 MB
application/x-dosexec
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | a367c93e2c6b9dd9d57834bf4b251feb
|
| Sha1 | 6a909c5c69356a702df4527acc96726557d9c071
|
| Sha256 | fea323323c852bd8f4d1f53f7f192f6c69e11a77907f82f63118793a550d7d69
|
| Sha384 | 58a202998c48869d4e7c7a09a0e5fbd7273fb71dcd749c2021d87e59b83f69d42e2ac2dd996e05406e5391b4a810b40f
|
| Sha512 | e79d65a7572fd3be9f5e0f0b1389511ec5d6f803c84dccf8b075c1b9d78e0cf57d367e00a995e9f37582c3351993794980d11196017f6e7714877ca520800da4
|
| SSDeep | 24576:FL3AfeU159IF1mGoCy14I1/8cW5v/0wvO9:N3A9159IFQGo54KkcW58wK
|
| TLSH | 5F5590317FAB2613F1B64534433A29061E61247759B9F0DFA5CAB517BED3C2E388D20A
|
PeID
Microsoft Visual Basic v5.0
Microsoft Visual Basic v5.0
Microsoft Visual Basic v5.0 - v6.0
File Structure
a367c93e2c6b9dd9d57834bf4b251feb
[Authenticode]_dfc6eb5d.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
XXZ
.rdata
.data
.rsrc
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1031
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Authenticode present at 0x138000 size 10448 bytes |
a367c93e2c6b9dd9d57834bf4b251feb (1.29 MB)
File Structure
a367c93e2c6b9dd9d57834bf4b251feb
[Authenticode]_dfc6eb5d.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
XXZ
.rdata
.data
.rsrc
Resources
RT_ICON
ID:0001
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1031
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.