Suspect
c178304c021ecdfcbfdba3f4b490faba
VB5/6 Executable | MD5: c178304c021ecdfcbfdba3f4b490faba | Size: 138.37 KB | application/x-dosexec
VB5/6 Executable
MD5: c178304c021ecdfcbfdba3f4b490faba
Size: 138.37 KB
application/x-dosexec
Summary by MalvaGPT
Characteristics
|
Hash | Hash Value |
|---|---|
| MD5 | c178304c021ecdfcbfdba3f4b490faba
|
| Sha1 | 3d3002dbb47148af34beff324f52c2b4b7fa3b15
|
| Sha256 | 9d0fff9d5977f9230d1e0e7e67cab0ebfa44ff3d53c2051ac02d725efffb4fa0
|
| Sha384 | e450c289d21e1685566b69ec5f09a201eeb3a62c1f706942053018d81127f53b8615e0128b1abda0d30ab73aa88f2567
|
| Sha512 | 413241e76f1615723209c8b9fca1bbc7ad1f80dbab17ff334a2e3e2d5486b0bccf1caf6130e30ee02e375b5be4f02a3bd3a39391c78bc2aeb5f3be67d1c6a530
|
| SSDeep | 1536:UfsEqouTRcG/Mzvgf7xEuvnXNTRdUzwTekUOisZ1yDDajtXbVJNLN:UVqoCl/YgjxEufVU0TbTyDDalFLN
|
| TLSH | 44D30B23AD60587ED81185F02898EA1FBA665F351B91BC477399BB1836B1203B7F131F
|
PeID
Microsoft Visual Basic v5.0 - v6.0
File Structure
c178304c021ecdfcbfdba3f4b490faba
Overlay_bf80f54f.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
|
Name0 | Value |
|---|---|
| Info | PE Detect: PeReader OK (file layout) |
| Info | Overlay extracted: Overlay_bf80f54f.bin (15490 bytes) |
c178304c021ecdfcbfdba3f4b490faba (138.37 KB)
File Structure
c178304c021ecdfcbfdba3f4b490faba
Overlay_bf80f54f.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
You need a premium account to access this feature.
You must be signed in to post a comment.