PUP.FakeTool

Analysis Report

General information

Family Name: PUP.FakeTool
Signature status: No Signature

Known Samples

MD5: a487e5170b90c32882d867b432f61dcd
SHA1: 82a017e89a4cf75520d12846ec4da1e5358f148f
SHA256: BE4137D1E3FE70BC2521C412EC097300963EC370931B7C4265D4708EF5DFB0F9
File Size: 383.49 KB, 383488 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have security information
  • File is .NET application
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Assembly Version v6.1
Comments PayPal Money Adder v6.1
Company Name julianscott167@gmail.com
File Description Money Adder
File Version v6.1
Internal Name PayPal Money Adder.exe
Legal Copyright Copyright © 2021 Julian Scott
Legal Trademarks julianscott167@gmail.com
Original Filename PayPal Money Adder.exe
Product Name PayPal Money Adder v6.1
Product Version v6.1

File Traits

  • .NET
  • HighEntropy
  • NewLateBinding
  • x86

Block Information

Total Blocks: 59
Potentially Malicious Blocks: 0
Whitelisted Blocks: 47
Unknown Blocks: 12

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 0 0 ? ? ? ? 0 ? 0 0 0 ? ? ? ? ? 0 ?
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • MSIL.CryptionBot.C
  • MSIL.CryptionBot.F
  • MSIL.Filecoder.DS
  • MSIL.Filecoder.XF
  • MSIL.Gamehack.YR
Show More
  • MSIL.Krypt.MBW

Windows API Usage

Category API
User Data Access
  • GetComputerNameEx
  • GetUserDefaultLocaleName
  • GetUserObjectInformation
Encryption Used
  • BCryptOpenAlgorithmProvider
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation
Network Info Queried
  • GetAdaptersAddresses
  • GetNetworkParams

Trending

Most Viewed

Loading...