Suspicious 80% Download

VirusShare_a08b09b2de3fd6c35a52e7f65af9dc14

Embedded PE with nonstandard sections

Authenticode chain CN: VideoLANSigned by VideoLAN
SHA-25671894211306db050bb957f81e85ec7e6b1edd8569b4ae9e3eff14c83c81d368d

Evidence

Embedded PE binary at file offset 0x662a (~81920 bytes) 0x65ea–0x66ba
⋯3 more rows
0x661a63643d63645f66756e630a7669737561cd=cd_func.visua
0x662a4d5a90000300000004000000ffff0000MZ..............
0x663ab8000000000000004000000000000000........@.......
0x664a00000000000000000000000000000000................
⋯7 more rows

Keyboard shortcuts on this page: j for the next sample, k for the previous one, x to go back to the feed, d to download the original bytes, r to re-queue the sample for analysis.