Suspicious
Suspect

d2894a452a69cd574591dd927e38f105

PE Executable
MD5: d2894a452a69cd574591dd927e38f105
Size: 3.22 MB
application/x-dosexec
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
d2894a452a69cd574591dd927e38f105
Sha1
ea19b2afb22abede82c1e2fb8c00eee4a2230c06
Sha256
1bee14b1afc29e401d0f8f6e559cab82d2b40c6fde24e38bcaf70631795fac21
Sha384
d2ad28205f312190da13e6595b355db10f6d94caadb8cc2e668c7cde777560fdf0d1b53623cad5b55cda975b11d3fb5c
Sha512
7a474906d1568590621b9e8e5da791bf2af53bf9a972b1c9defe1cb2fd306692cca7accd2ceb8ea1382f47d80bd1578da57a90a7d71730c7901cafd844cd7471
SSDeep
98304:3f5wcbhKfSxJvZb+Gey3FaeW0Z24tRuY4cLDw:3f5wcbhKfSxJvZb+GJ3FaeW0Z24tRuYU
TLSH
75E52C2ED6A9C2F8C7BAC0348A1F4133F5B1781A971897C75028C6726EFB6C56E39714

PeID

Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
Pe123 v2006.4.4-4.12
UPolyX 0.3 -> delikon
File Structure
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.data
.rdata
.pdata
.reloc
.rsrc
Resources
PNG
ID:0000
ID:2052
ID:2052-preview.png
ID:008C
ID:2052
ID:2052-preview.png
ID:0095
ID:2052
ID:2052-preview.png
ID:0096
ID:2052
ID:2052-preview.png
ID:0097
ID:2052
ID:2052-preview.png
ID:0098
ID:2052
ID:2052-preview.png
UI
ID:00CA
resources
themes
default
MainWnd
BlackShadow.png
BlackShadow.png-preview.png
MainWnd.xml
WhiteShadow.png
WhiteShadow.png-preview.png
RT_ICON
ID:0004
ID:1033
ID:1033-preview.png
ID:0011
ID:1033
ID:1033-preview.png
RT_DIALOG
ID:0083
ID:2052
ID:0087
ID:2052
ID:008B
ID:2052
ID:0091
ID:2052
ID:0092
ID:2052
ID:0095
ID:2052
RT_STRING
ID:0009
ID:2052
ID:000A
ID:2052
ID:000B
ID:2052
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

d2894a452a69cd574591dd927e38f105 (3.22 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙