Suspicious
Suspect

c02c1b8f8b7dc58acd72b0df48d6206b

ZIP Archive
|
MD5: c02c1b8f8b7dc58acd72b0df48d6206b
|
Size: 1.59 MB
|
application/zip

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
c02c1b8f8b7dc58acd72b0df48d6206b
Sha1
325280430f39685259c81c13198d04dec23842c5
Sha256
92ef563707a54ec149cd03d577e3ae065db47efba977eef0adac1d00eacf7c0f
Sha384
795e46ad865418b0a4cad46ee344742580ee61a850778adcd6249a5d4e3289f357e29dc6f4867921b4253a3becada738
Sha512
e274d40fac875aca8c0b1605141c0ae2abae97468bd052448da103ca3731485da434711986df279608d5ddb96b22f4d529596017237852b952cb54e7e7760d71
SSDeep
49152:JXWOmlp6n5R55YgGIezt237xdJMqY7oM/OB:FWOmlk5RUgGIew7xdJpB1
TLSH
A67533BFBC0C850F2D6B8F761DB10243E0AE75A578A2D8FD67E8215544AB07C12974BE
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Resources
RT_VERSION
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.managed
hydrated
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
RT_GROUP_CURSOR4
ID:07D0
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
Artefacts
Name
Value
PDB Path

api-ms-win-crt-convert-l1-1-0.pdb

PDB Path

api-ms-win-crt-environment-l1-1-0.pdb

PDB Path

api-ms-win-crt-filesystem-l1-1-0.pdb

PDB Path

api-ms-win-crt-heap-l1-1-0.pdb

PDB Path

api-ms-win-crt-locale-l1-1-0.pdb

PDB Path

api-ms-win-crt-math-l1-1-0.pdb

PDB Path

api-ms-win-crt-runtime-l1-1-0.pdb

PDB Path

api-ms-win-crt-stdio-l1-1-0.pdb

PDB Path

api-ms-win-crt-string-l1-1-0.pdb

PDB Path

C:\Windows\Microsoft.Va0fc1948#\EnterpriseMgmt\AxImp\System.Security.Principal\WMI\2.pdb

PDB Path

javaw.exe.pdb

PDB Path

D:\a\_work\1\s\\binaries\amd64ret\bin\amd64\\vcruntime140.amd64.pdb

c02c1b8f8b7dc58acd72b0df48d6206b (1.59 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Resources
RT_VERSION
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.rdata
.rsrc
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.managed
hydrated
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:0
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
RT_GROUP_CURSOR4
ID:07D0
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
_RDATA
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
Characteristics
No malware configuration were found at this point.
Artefacts
Name
Value Location
PDB Path

api-ms-win-crt-convert-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-convert-l1-1-0.dll

PDB Path

api-ms-win-crt-environment-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-environment-l1-1-0.dll

PDB Path

api-ms-win-crt-filesystem-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-filesystem-l1-1-0.dll

PDB Path

api-ms-win-crt-heap-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-heap-l1-1-0.dll

PDB Path

api-ms-win-crt-locale-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-locale-l1-1-0.dll

PDB Path

api-ms-win-crt-math-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-math-l1-1-0.dll

PDB Path

api-ms-win-crt-runtime-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-runtime-l1-1-0.dll

PDB Path

api-ms-win-crt-stdio-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-stdio-l1-1-0.dll

PDB Path

api-ms-win-crt-string-l1-1-0.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > api-ms-win-crt-string-l1-1-0.dll

PDB Path

C:\Windows\Microsoft.Va0fc1948#\EnterpriseMgmt\AxImp\System.Security.Principal\WMI\2.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > jli.dll

PDB Path

javaw.exe.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > microservice86btq.exe

PDB Path

D:\a\_work\1\s\\binaries\amd64ret\bin\amd64\\vcruntime140.amd64.pdb

c02c1b8f8b7dc58acd72b0df48d6206b > VCRUNTIME140.dll

You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙