Suspicious
Suspect

ceebf38ea6c16593c18b3378a0723c3c

AutoIt Compiled Script
|
MD5: ceebf38ea6c16593c18b3378a0723c3c
|
Size: 1.68 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
ceebf38ea6c16593c18b3378a0723c3c
Sha1
b5625d30b22a11783a7d6bce475cf00e05323765
Sha256
188d08217c3b0324a0ac330b653bb40d21c484932affaf6ed3ea52ded82c8809
Sha384
9814e4d3baf5b27a1031b8e81c0ce3a5b27354b18a952fd46d2822cc63b840e2af95033325c83b89cfc14e04ed57dcbe
Sha512
a92c44d457465dd673b5e06f953e39d912e523f066c86782307944b336dae3eb35066a80ebdb0676a8f9224dc11c53c04a57156a1f60ec0a268ddb3d4675e95f
SSDeep
24576:x69fwCMzxfaYL9CKVPnlZ/derEkWZdMyf7I5C2g9d+Iu9FE4jNOCqfSBsN:IdJUIMfVvr/QrEkWZmyfEoaIkEoODK
TLSH
A675335289D0D43FDD600B3075E516D31338FD439A718B973B8799E24BE0AC8AAB537A

PeID

Microsoft Visual C++ 8
UPolyX 0.3 -> delikon
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.idata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:0003
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
ID:00CD
ID:1033
ID:00CE
ID:1033
ID:00D3
ID:1033
ID:0131
ID:1033
ID:0132
ID:1033
ID:0137
ID:1033
ID:0195
ID:1033
ID:0196
ID:1033
ID:019B
ID:1033
ID:01F9
ID:1033
ID:01FA
ID:1033
ID:01FF
ID:1033
ID:025D
ID:1033
ID:025E
ID:1033
ID:0263
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Residential.png
Andrews.png
Footwear.png
Rainbow.png
Shopping.png
Effectively
Harassment
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: wextract.pdb

ceebf38ea6c16593c18b3378a0723c3c (1.68 MB)
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.idata
.rsrc
.reloc
Resources
AVI
ID:0BB9
ID:1033
RT_ICON
ID:0001
ID:1033
ID:1033-preview.png
ID:0002
ID:1033
ID:0003
ID:1033
RT_DIALOG
ID:0069
ID:1033
ID:006A
ID:1033
ID:006F
ID:1033
ID:00CD
ID:1033
ID:00CE
ID:1033
ID:00D3
ID:1033
ID:0131
ID:1033
ID:0132
ID:1033
ID:0137
ID:1033
ID:0195
ID:1033
ID:0196
ID:1033
ID:019B
ID:1033
ID:01F9
ID:1033
ID:01FA
ID:1033
ID:01FF
ID:1033
ID:025D
ID:1033
ID:025E
ID:1033
ID:0263
ID:1033
RT_STRING
ID:003F
ID:1033
ID:004C
ID:1033
ID:004D
ID:1033
ID:0050
ID:1033
ID:0053
ID:1033
ID:0055
ID:1033
RT_RCDATA
ID:0000
ID:1033
RT_GROUP_CURSOR4
ID:0BB8
ID:1033
RT_MANIFEST
ID:0001
ID:1033
Residential.png
Andrews.png
Footwear.png
Rainbow.png
Shopping.png
Effectively
Harassment
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙