Suspicious
Suspect

e66180198be0e557e26e57b93c1f68b1

PE Executable
|
MD5: e66180198be0e557e26e57b93c1f68b1
|
Size: 6.21 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
e66180198be0e557e26e57b93c1f68b1
Sha1
5a994b7478de7c081c68835227817a43b0903f38
Sha256
f2b307c985cd781039b54ce7fd7ec58b14f2cb8b55cacd6fa987a291c4082b4f
Sha384
2eb8f2f45d5c0614f1caf2e112d664736c21e393a2ef8dd2003670f13cacd678727d10ecacd45045f096c0a456d8b3e4
Sha512
5cfe8cdce05e5534f80ca5370936f1ffeec6e6ff311de72363fda01858321a145202420de874551581a26aa338765ecced14fa8a63609b1f53fc8c5cf9abb556
SSDeep
98304:2CgOPB3KSfvKTiZQ5SUeg0MpHlrDpQd+BYwPIgvWZCI6BJQisEtCiRTipHYjWIz:xvPBaAT1UegpQd+BDPzuZCI6BXsEtCiL
TLSH
D4563308E7F011F9D1BB91B1CA569A06D7B67C5A0B605BCF13F449AA1F2B2909D3F312

PeID

Microsoft Visual C++ 8.0 (DLL)
Microsoft Visual C++ v6.0 DLL
File Structure
Overlay_cf323600.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.didat
.fptable
.rsrc
.reloc
Resources
PNG
ID:0065
ID:1033
ID:1033-preview.png
ID:0066
ID:1033
ID:1033-preview.png
RT_ICON
ID:0001
ID:1024
RT_DIALOG
ID:0000
ID:1033
RT_STRING
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
ID:000C
ID:1033
ID:000D
ID:1033
ID:000E
ID:1033
ID:000F
ID:1033
ID:0010
ID:1033
ID:0011
ID:1033
RT_GROUP_CURSOR4
ID:0064
ID:1024
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_cf323600.bin (5708473 bytes)

Info

PDB Path: D:\Projects\WinRAR\SFX\build\sfxzip64\Release\sfxzip.pdb

e66180198be0e557e26e57b93c1f68b1 (6.21 MB)
File Structure
Overlay_cf323600.bin
Structure
DosHeader
PE Header
Optional Header (x64)
Section Headers
.text
.rdata
.data
.pdata
.didat
.fptable
.rsrc
.reloc
Resources
PNG
ID:0065
ID:1033
ID:1033-preview.png
ID:0066
ID:1033
ID:1033-preview.png
RT_ICON
ID:0001
ID:1024
RT_DIALOG
ID:0000
ID:1033
RT_STRING
ID:0007
ID:1033
ID:0008
ID:1033
ID:0009
ID:1033
ID:000A
ID:1033
ID:000B
ID:1033
ID:000C
ID:1033
ID:000D
ID:1033
ID:000E
ID:1033
ID:000F
ID:1033
ID:0010
ID:1033
ID:0011
ID:1033
RT_GROUP_CURSOR4
ID:0064
ID:1024
RT_MANIFEST
ID:0001
ID:1033
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙