Suspicious
Suspect

bb4a64539ca35ac43cd98c316ef409de

AutoIt Compiled Script
|
MD5: bb4a64539ca35ac43cd98c316ef409de
|
Size: 1.1 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
bb4a64539ca35ac43cd98c316ef409de
Sha1
b389be02ca4db24f4dd7ca5146a6a28975f1dde6
Sha256
d91fe8b3fa9a25a1ea150e318a454184c43c624052115d8e678f9b77cfc08c36
Sha384
76885005ee2067ea7cf0a16b3763283fb5f2768270dcad02cb06c6678fe5226d31c088e36ec1674146086a88f279177e
Sha512
f817747e6ee6abea5bfcb8d21d90dda81a3b6ac2f24395b3dfa6902d395415d0a9143b2bd20faf90c49fd6f79a69fffa998c610ad8621f0846876e905fac46b9
SSDeep
24576:HzZj0+KKn7uCIQE5jzGzTiTEp7qQMSqEP4IdnqSCay:Hh0G7jIQojSwEp7qQ3hnTM
TLSH
2A3533882775E186DAB8073110705EA4EEBAF970C6E6DF0D6679B8B8FC33C4445A1B53

PeID

Microsoft Visual C++ v6.0 DLL
Nullsoft PiMP Stub -> SFX
File Structure
Tracks.adt
Liable.adt
Competition.adt
Collection.adt
Knowing.adt
Business.adt
Leisure.adt
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
[SETUP_DECOMPILED.NSI]
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:0003
ID:1033
ID:1033-preview.png
ID:0004
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
bb4a64539ca35ac43cd98c316ef409de (1.1 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙