Suspicious
Suspect

f171ed47c4f1835205e71f7064c12286

VB5/6 Executable
|
MD5: f171ed47c4f1835205e71f7064c12286
|
Size: 211.81 KB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
f171ed47c4f1835205e71f7064c12286
Sha1
b7ddbc8ccf67fb9698c29a9eacb8a8450df579ba
Sha256
c098864e101fb7710c9200e6531124d1f47111989454be017205e0ac75e9887b
Sha384
378b4f846edb24f46be0fcc0940036c049312d7b087f31f92e291e2c98ac2207777c565b2e7bebae20bffded8ccae133
Sha512
229687f5de7c062f98f9131b34f21eae2c33fd18b9cb62ad9f06a76958cbfdd411ac98b441db818561ca278568ba2ccd8514ed5b19ee80922aa1abda0ad523f8
SSDeep
6144:zvEN2U+T6i5LirrllHy4HUcMQY6wYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYYI:zENN+T5xYrllrU7QY6g
TLSH
7F24E83BEA10602EDB638BF0986662A676366D221FC09C8B5391BB573471743B1F531F

PeID

Microsoft Visual Basic v5.0 - v6.0
Protect Shareware V1.1 -> eCompserv CMS
File Structure
Overlay_d37b665b.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Overlay extracted: Overlay_d37b665b.bin (23389 bytes)

f171ed47c4f1835205e71f7064c12286 (211.81 KB)
File Structure
Overlay_d37b665b.bin
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_ICON
ID:7531
ID:0
RT_GROUP_CURSOR4
ID:0001
ID:0
RT_VERSION
ID:0001
ID:1033
VB6 Structure
VB Header
VB VBAProject Info
VB Object Table
VB VBAProject Info 2
VB Register Info
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙