Suspect
bb44083e5f3970eb8d15a52746c777a8
VB5/6 Executable | MD5: bb44083e5f3970eb8d15a52746c777a8 | Size: 138.42 KB | application/x-dosexec
VB5/6 Executable
MD5: bb44083e5f3970eb8d15a52746c777a8
Size: 138.42 KB
application/x-dosexec
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | bb44083e5f3970eb8d15a52746c777a8
|
| Sha1 | a960c4b6872154569d532353fc742c7425e3269d
|
| Sha256 | f12feaea90f603179cd175ff3f061ddd67959b9adcced1126cc17bad0281baae
|
| Sha384 | f4f52e802f4e7befd9ce002b70cdb40fc8a430ae98f0bac7d783dfbf84d448d39a688c4c6dcc67eedb2e30890b09644e
|
| Sha512 | a5696caffea62cfdbefd926d4362ee957cedf1596ab3ca114c1ad6c0b658ef5a446ad9ee2d0e2c9596c7aaddc6319b5de0106edd01e3b4f5a724f36126f31d25
|
| SSDeep | 1536:UfsEqouTRcG/Mzvgf7xEuvnXNTRdUzwTekUOisZ1yDDajtXbVVw:UVqoCl/YgjxEufVU0TbTyDDalrw
|
| TLSH | CCD339237E50962FE812C5F12C65DA6EBA111E371BE4AE077797BB0924B264375F020F
|
PeID
Microsoft Visual Basic v5.0 - v6.0
File Structure
bb44083e5f3970eb8d15a52746c777a8
Overlay_d1f4c995.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_d1f4c995.bin (15537 bytes) |
bb44083e5f3970eb8d15a52746c777a8 (138.42 KB)
File Structure
bb44083e5f3970eb8d15a52746c777a8
Overlay_d1f4c995.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.