Suspicious
Suspect

fa35125ea4d401d91a8b101c94d5ba19

PE Executable
|
MD5: fa35125ea4d401d91a8b101c94d5ba19
|
Size: 7.43 MB
|
application/x-dosexec

Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
fa35125ea4d401d91a8b101c94d5ba19
Sha1
45885cce8115d594dc09be172f9fafd0993a5ba9
Sha256
9866a8ecf5414283d89528597ef7ff590f60e42aa6fc4972f61a083c2b08c1ec
Sha384
30bb9ab39783b8cf5ea67c3efe27d91ec7f2d3a39271728f3955502239af27c02632872329245a6c996317623e2711cc
Sha512
1c6727d1f17e6fed4e7bc74b084d08fa49dda3cd2d27030a7f723821b81d9c5eef5118aa877dcde5c14f8c560dbdedb175d27791b3f7af8f32d4061208c07287
SSDeep
196608:4wwyPSk9swJofd2RGRVoVbK8kcd6l5hxhrKo:4wwyP1zJo12k7m28kAw5hDGo
TLSH
EE760232B603D57AE56202B1987C670A921CBF6007738ADBA3CC7A3D4E755C22F71E56

PeID

Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ 8
Microsoft Visual C++ v6.0 DLL
VC8 -> Microsoft Corporation
File Structure
[Authenticode]_69b1d0f6.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2052
ID:0002
ID:2052
ID:0003
ID:2052
ID:0004
ID:2052
ID:0005
ID:2052
ID:0006
ID:2052
ID:0007
ID:2052
ID:0008
ID:2052
ID:0009
ID:2052
ID:2052-preview.png
ID:000A
ID:2052
ID:000B
ID:2052
ID:000C
ID:2052
ID:000D
ID:2052
RT_RCDATA
ID:0000
[Authenticode]_c2077cec.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_VERSION
ID:0001
ID:1033
RT_GROUP_CURSOR4
ID:0080
ID:2052
RT_VERSION
ID:0001
ID:2052
RT_MANIFEST
ID:0001
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

Authenticode present at 0x712238 size 11832 bytes

Info

PDB Path: D:\Home\noboru\SRC\qaac\vcproject\Release\qaac.pdb

fa35125ea4d401d91a8b101c94d5ba19 (7.43 MB)
File Structure
[Authenticode]_69b1d0f6.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.rsrc
.reloc
Resources
RT_ICON
ID:0001
ID:2052
ID:0002
ID:2052
ID:0003
ID:2052
ID:0004
ID:2052
ID:0005
ID:2052
ID:0006
ID:2052
ID:0007
ID:2052
ID:0008
ID:2052
ID:0009
ID:2052
ID:2052-preview.png
ID:000A
ID:2052
ID:000B
ID:2052
ID:000C
ID:2052
ID:000D
ID:2052
RT_RCDATA
ID:0000
[Authenticode]_c2077cec.p7b
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.data
.rsrc
Resources
RT_VERSION
ID:0001
ID:1033
RT_GROUP_CURSOR4
ID:0080
ID:2052
RT_VERSION
ID:0001
ID:2052
RT_MANIFEST
ID:0001
ID:1033
Characteristics
No malware configuration were found at this point.
You must be signed in to post a comment.
An error has occurred. This application may no longer respond until reloaded. Reload 🗙