Suspicious
Suspect

c415344da156818b5fbc5e531a1bf80e

PE Executable
|
MD5: c415344da156818b5fbc5e531a1bf80e
|
Size: 25.31 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
c415344da156818b5fbc5e531a1bf80e
Sha1
12eb55f2bdba06c4a488192aec6487346545e87c
Sha256
3b2107d95c3261840a86ae3b07666326289e631cb04246a300699469766c3918
Sha384
566ee53d0c808717f5715e0045b67fe5ba440402d7e6099abf96022cf0c77f72051891358ef829ba69907c6419c038c0
Sha512
14182dbb8eed6d3081f8fc483341c023a44ea4d501a728a8b293d937a494247aa539ac7496cc9ef27df859729a32d6eb2b77498d86ef419893ae5675b24c292a
SSDeep
786432:Dgg3U9h7VB6xd7V6dNaTL2qELZba5mfUs7D:Dgych7LS7VoUL2llaSD
TLSH
814733DBCB22A1A7D41047B1E36423AE279ED9180654F98183D4CB6EFE5534BCCB9F81

PeID

Microsoft Visual C++ v6.0 DLL
File Structure
[NSIS Installer] @ #0000CC08
modern-wizard.bmp
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_DIALOG
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
.reloc
Resources
RT_DIALOG
ID:0065
ID:1033
ID:006C
ID:1033
ID:006E
ID:1033
RT_VERSION
ID:0000
ID:2057
[SETUP_DECOMPILED.NSI]
Overlay_02247020.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_02247020.bin (25257829 bytes)

c415344da156818b5fbc5e531a1bf80e (25.31 MB)
File Structure
[NSIS Installer] @ #0000CC08
modern-wizard.bmp
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_DIALOG
ID:0001
ID:1033
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.reloc
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
.reloc
Resources
RT_DIALOG
ID:0065
ID:1033
ID:006C
ID:1033
ID:006E
ID:1033
RT_VERSION
ID:0000
ID:2057
[SETUP_DECOMPILED.NSI]
Overlay_02247020.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.ndata
.rsrc
Resources
RT_ICON
ID:0001
ID:1033
ID:0002
ID:1033
ID:0003
ID:1033
ID:0004
ID:1033
ID:0005
ID:1033
ID:0006
ID:1033
ID:0007
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
RT_GROUP_CURSOR4
ID:0067
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙