Suspicious
Suspect

fddb9102d298d53447498fc146cab0e2

PE Executable
|
MD5: fddb9102d298d53447498fc146cab0e2
|
Size: 12.65 MB
|
application/x-dosexec


Print
Summary by MalvaGPT
Characteristics
Hash
Hash Value
MD5
fddb9102d298d53447498fc146cab0e2
Sha1
6ab819344ba2baa4aadca55c0409aa12117f3ad9
Sha256
b860a6f104957545780d0a684dc08d6594dfa6c1e54f83384c4d7eb1acbf4f70
Sha384
da74f6c99f06a2871d4b2ea2fbe8407c8d95f43f7eab4d978f3ef8bf3b65a60ae21195bd580fdda9c4e889de8ae9d59c
Sha512
1711ea47f7d917ee7ce36c45ace92246e7827ef24a9b9202c682449c56e5e33f1755856cf724d75e360152acf20a110de67bfcf22c8d0764793c2888607f391d
SSDeep
196608:fQke5A05AXFN3delxDtPAFGfcn+hr7oW:fYA0aFsDXcn+B77
TLSH
E3D68E239DD08274F5C651FE86FD3B6AC96D8A05033991C399C83C945B319E63A3EB4B

PeID

MS Visual C++ v7.0 DLL
Microsoft Visual C++ 6.0 DLL (Debug)
Microsoft Visual C++ 7.0 - 8.0
Microsoft Visual C++ v6.0 DLL
Private EXE Protector V2.30-V2.3X -> SetiSoft Team
UPolyX 0.3 -> delikon
Visual C++ 2003 DLL -> Microsoft
Visual C++ 2005 DLL -> Microsoft
File Structure
Structure
DosHeader
PE Header
Optional Header (x86)
Section Headers
.text
.rdata
.data
.unwante
.rsrc
.reloc
Resources
RT_VERSION
ID:0001
ID:1033
RT_MANIFEST
ID:0002
ID:1033
Informations
Name
Value
Info

PE Detect: PeReader OK (file layout)

Info

PDB Path: d:\OpenSourceProjs\wke-master\build\vs2008\Release_Cairo_CFLite\bin\wke.pdb

fddb9102d298d53447498fc146cab0e2 (12.65 MB)
An error has occurred. This application may no longer respond until reloaded. Reload 🗙