Malicious
Malicious

c045a48123dddaca1656bb5d389d3509

PE Executable
|
MD5: c045a48123dddaca1656bb5d389d3509
|
Size: 2.85 MB
|
application/x-dosexec

Infection Chain
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
c045a48123dddaca1656bb5d389d3509
Sha1
2a49e3000093ac28d16878d516165dc1cc763cca
Sha256
d955546f64e68c8e9f70b08608b414ee6993dc0ecd8a362a94271160c208b7fe
Sha384
93cd7c92fcb81b933dc3d2ad18671224eadacdd5512cd0b31f833e880be3790b676496c56a78d80c3603ca0bd074fb8a
Sha512
2e5bbf0dcd0cf942b110d2cead7b77b31d4b68504992de4945c7a603baf3a87b3c2d5864b14ce7f554a6d63fb645f3cd9915a4e9338c84abadd98d1270bd8aa7
SSDeep
49152:jTlJujizOh2fm7VHYgV2zrLlLlPmaOaTnLnit:jTlIiz0u4xWllPmi8
TLSH
0FD51282B2B00591FBB887717077045616637DFE9DA91AEF2089F53D4EB72F1403AE1A

PeID

Microsoft Visual C++ 8.0 (DLL)
File Structure
Overlay_8f2cd389.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
RT_DIALOG
ID:07D1
ID:1033
ID:07D2
ID:1033
ID:07D3
ID:1033
ID:07D4
ID:1033
ID:07D5
ID:1033
ID:07D6
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
ID:0
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Refrigerator
aut5830.tmp.tok
Malicious
[Cleaned].au3
Malicious
Dropped.aiff
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_8f2cd389.bin (510 bytes)

Info

PDB Path: wextract.pdb

c045a48123dddaca1656bb5d389d3509 (2.85 MB)
File Structure
Overlay_8f2cd389.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
RT_DIALOG
ID:07D1
ID:1033
ID:07D2
ID:1033
ID:07D3
ID:1033
ID:07D4
ID:1033
ID:07D5
ID:1033
ID:07D6
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
ID:0
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Refrigerator
aut5830.tmp.tok
Malicious
[Cleaned].au3
Malicious
Dropped.aiff
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙