Threat Database Hacktool Hacktool.Patcher.PA

Hacktool.Patcher.PA

By CagedTech in Hacktool

Threat Scorecard

Popularity Rank: 16,733
Threat Level: 50 % (Medium)
Infected Computers: 43
First Seen: June 27, 2024
Last Seen: April 13, 2026
OS(es) Affected: Windows

Analysis Report

General information

Family Name: Hacktool.Patcher.PA
Signature status: No Signature

Known Samples

MD5: 9af5a3be468990acb294c5984cac96e0
SHA1: 45161b8c15c3ea33f239b64037ad18e353031bb5
SHA256: 153077A2636BBF8F4CC8BFAFD008A9F874F9CF584C375D2B828A85B9D951D730
File Size: 3.72 MB, 3720927 bytes
MD5: 0b80fe1a68a3f9d790a95b7b05048e26
SHA1: 12613efed30e81bce40e105b1b8cd8c83c1f6495
SHA256: 2F2D6E3774BB07D323892A7DB35F5BA7CBAEE2D6329142152F94BEB523B38DA0
File Size: 4.18 MB, 4177572 bytes
MD5: 6644b58227627fbdc0f9d21d370bc2f6
SHA1: 5d01988ecffa021b75dbf815ccb6c31111fae6c0
SHA256: A0B4B30B9CB9217E16DF8C87DE7380A1E5816B263957A2B28CB2A81B99B1F596
File Size: 3.68 MB, 3677085 bytes
MD5: c249334ec737e11578e8cdf5323cd974
SHA1: 1cc4505e6d1cc0cc0a5f431d25b7a652a7e5222e
SHA256: 7419E9119D6B4449EF26A0541628C6094D0712750FAAAF3697CCA471BADEE3F1
File Size: 4.73 MB, 4728161 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have relocations information
  • File doesn't have security information
  • File has been packed
  • File has exports table
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Trong® Corporation
Company Name Adobe Systems, Inc.
Debugger 0
File Description
  • Adobe Flash Player 11.3 r300
  • Flash Player 11
File Version
  • 11.4.402.278
  • 11,3,300,273
Internal Name
  • Adobe Flash Player 11.3
  • Trong® Flash® Player® 11
Legal Copyright
  • Adobe® Flash® Player. Copyright © 1996 Adobe Systems Incorporated. All Rights Reserved. Adobe and Flash are either trademarks or registered trademarks in the United States and/or other countries.
  • © Trong® Corporation. All rights reserved.
Legal Trademarks
  • Adobe Flash Player
  • Trong Flash Player
Original Filename
  • FlashPlayer.exe
  • SAFlashPlayer.exe
Product Name Shockwave Flash
Product Version
  • 11.4.402.278
  • 11,3,300,273
Website wWw.Trong.Tk

File Traits

  • .UPX
  • 2+ executable sections
  • big overlay
  • HighEntropy
  • packed
  • upx
  • UPX!
  • x86

Block Information

Total Blocks: 4
Potentially Malicious Blocks: 2
Whitelisted Blocks: 2
Unknown Blocks: 0

Visual Map

x 0 x 0
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Patcher.PA

Files Modified

File Attributes
c:\users\user\appdata\roaming\macromedia\flash player\#sharedobjects\2ksr3kv5\localhost\ssf2_v9b.sol Synchronize,Write Data
c:\users\user\appdata\roaming\macromedia\flash player\#sharedobjects\2ksr3kv5\localhost\ssf2_v9b.sxx Generic Write,Read Attributes
c:\users\user\appdata\roaming\macromedia\flash player\macromedia.com\support\flashplayer\sys\#local\settings.sol Synchronize,Write Data
c:\users\user\appdata\roaming\macromedia\flash player\macromedia.com\support\flashplayer\sys\#local\settings.sxx Generic Write,Read Attributes
c:\users\user\appdata\roaming\macromedia\flash player\macromedia.com\support\flashplayer\sys\settings.sol Synchronize,Write Data
c:\users\user\appdata\roaming\macromedia\flash player\macromedia.com\support\flashplayer\sys\settings.sxx Generic Write,Read Attributes

Windows API Usage

Category API
Encryption Used
  • CryptAcquireContext
Anti Debug
  • IsDebuggerPresent
User Data Access
  • GetUserObjectInformation
Network Winsock2
  • WSAStartup

Trending

Most Viewed

Loading...