Suspicious
Suspect

c6d4dfd5a78ea94032ea7a925a970522

VB5/6 Executable
|
MD5: c6d4dfd5a78ea94032ea7a925a970522
|
Size: 211.97 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
c6d4dfd5a78ea94032ea7a925a970522
Sha1
bafb262bb0d4e2b8617ff02b9ba4db194792a677
Sha256
66be0846dcb4800ca0b6dfa1f58165d4f4834f12f827e2a96efd77f0f844a74a
Sha384
85894b9af71338194269fc9d8f6b6503a84205b3b98ffbbf019f033c2f24edffb50895a947339cd4b2108a9fc02b14ec
Sha512
bd7913e4021821f028e81238747b0fe6ef90f4c267cb741ff7658aec98639e75fa6d4d58a146da49fb3701145827c8f97ea68ee9f2e6b13eae69362170981653
SSDeep
3072:+vEfVUzSLhIVbV6i5LirrlZrHyrUHUckoMQ2RN6und:+vEN2U+T6i5LirrllHy4HUcMQY6A
TLSH
1724F92BBA44701FE96389F0946273AAB6312E351BD1AD8F2BC19F453476603B5B131F

PeID

Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
Overlay_3bc564e9.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_3bc564e9.bin (23552 bytes)

c6d4dfd5a78ea94032ea7a925a970522 (211.97 KB)
File Structure
Overlay_3bc564e9.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙