Suspicious
Suspect

db52f9b49d119e4d94e754c77494d617

PE Executable
|
MD5: db52f9b49d119e4d94e754c77494d617
|
Size: 812.86 KB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
db52f9b49d119e4d94e754c77494d617
Sha1
6f509b493a74ad4c7c6c0c5f8bae7adc9a88e539
Sha256
9c4fd10864c9599ee8029d5f0541d8cd996b5b1832ed1b4432873285c0d05a8f
Sha384
0ba4a82603c375aa19bbce109fa8214351a9b84897fe56deec8c640249d7cb8bdaeade4dcdae04c639a3b97a46c20a7a
Sha512
b560709be0e61da2f4553312daf3863180fae445ef528752dbac8037092e0285c14d9e65ec9399064e773579ae1825d301841cb9e2357db4b5d83ece78580580
SSDeep
12288:T4mjxA4qCmwhFFoBCJp6/X72/mCCjZgMX84hSlduBZIw6Ev:T4m1A9bSoBCJu7XZF844hzEv
TLSH
2A05E01AB61D58FDE01AC071825506779A31B4CA0B506AFF81D42A393FAAFF11F3A71D

PeID

Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
File Structure
[Authenticode]_f6abf56b.p7b
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.fptable
.reloc
.rsrc
Resources
RT_ICON
ID:0001
ID:0
ID:0-preview.png
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1031
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0xC4A00 size 7480 bytes

Info

PDB Path: najjaci_sam.pdb

db52f9b49d119e4d94e754c77494d617 (812.86 KB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙