PUP.JohnTheRipper.A

Analysis Report

General information

Family Name: PUP.JohnTheRipper.A
Signature status: No Signature

Known Samples

MD5: c0fbbe26e5918e7d631d535d92fd356e
SHA1: 7eec20a90c87a75a53e3520e91101779cef459c8
SHA256: B3FF43A0953F8C504F61430F394FBE0C4791667B935A1D1F615EAD702E38B1E1
File Size: 193.54 KB, 193536 bytes
MD5: 4c82f09ec750c80b5092480e89eca3aa
SHA1: 50009d1ab435ae0eadce692863266a3c693a4e2d
SHA256: F900A3123746AC08D9E1C058D68EAC9AD7F06F8A9275DDF07B3C7456A6CC6EE7
File Size: 390.23 KB, 390234 bytes
MD5: 2161d71fd5a5a397faccb408add72187
SHA1: 53f20cf8c6ef97646d58be7e5e2b2fe5d478ff15
SHA256: B38B7FDC531B8658715E449C98423EC99E272A4D8DC35CFC82CB8D1138A86B5B
File Size: 185.34 KB, 185344 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have resources
  • File doesn't have security information
  • File is 32-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
Show More
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Traits

  • HighEntropy
  • No Version Info
  • x86

Block Information

Total Blocks: 19
Potentially Malicious Blocks: 5
Whitelisted Blocks: 5
Unknown Blocks: 9

Visual Map

0 ? ? ? ? 0 x ? ? 0 ? x ? ? 0 x 0 x x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Trending

Most Viewed

Loading...