Suspect
bd89e4bf325c1fd2685de8190263d8ec
VB5/6 Executable | MD5: bd89e4bf325c1fd2685de8190263d8ec | Size: 138.44 KB | application/x-dosexec
VB5/6 Executable
MD5: bd89e4bf325c1fd2685de8190263d8ec
Size: 138.44 KB
application/x-dosexec
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | bd89e4bf325c1fd2685de8190263d8ec
|
| Sha1 | db0c65498530e559f7598eae7be1cb9e5a66838b
|
| Sha256 | cc0615a614bf679aa35c911dcfdfde0289c6b7030c69c60641e3527290ae7041
|
| Sha384 | 78222a4fc174e799606674965ac3e6edba0e33a50e42cb28639db86670993187fa985ae4c42fc1f405e9154115e5d43c
|
| Sha512 | 5680fd12d20d70698917e9817be775a52d3cfdb5c7c4081f4c9bb8522f1351c4899aeaca08f140093bbe8a3989ddc14eaa9ab1bd23f06024d653e705359c045f
|
| SSDeep | 1536:UfsEqouTRcG/Mzvgf7xEuvnXNTRdUzwTekUOisZ1yDDajtXbVrb:UVqoCl/YgjxEufVU0TbTyDDalVb
|
| TLSH | 98D3E8137E20242FE411C6F32966D62EBA315E3A1BE1AD537752FB142672243B5F221F
|
PeID
Microsoft Visual Basic v5.0 - v6.0
File Structure
bd89e4bf325c1fd2685de8190263d8ec
Overlay_f1d2ab7b.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_f1d2ab7b.bin (15560 bytes) |
bd89e4bf325c1fd2685de8190263d8ec (138.44 KB)
File Structure
bd89e4bf325c1fd2685de8190263d8ec
Overlay_f1d2ab7b.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.