PUP.Keygen.D

Analysis Report

General information

Family Name: PUP.Keygen.D
Signature status: No Signature

Known Samples

MD5: 99f50575828d22607b56508ab43185f5
SHA1: f85455d0f0bd6516144f7f2b9dc3ef8dea8d5826
SHA256: 2600298C889866D62AE6D5C404006FB5DDC1C25B91F92DE306E1ECD3D07142B7
File Size: 1.17 MB, 1170944 bytes
MD5: 42313230ee19f04192bd0c2c7c378d9b
SHA1: 3493c4d7e4310c186ea3e829cbb8ca14fc0248b4
SHA256: 52D860F9A95C6577A5BD59C8DDEAB3A887515890E4E0DB39762AEA1C3E80E46A
File Size: 468.23 KB, 468234 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
  • File is not packed
Show More
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
File Version 1.00
Internal Name TJprojMain
Original Filename TJprojMain.exe
Product Name Project1
Product Version 1.00

File Traits

  • .adata
  • 2+ executable sections
  • ASPack v2.12
  • HighEntropy
  • No Version Info
  • packed
  • WriteProcessMemory
  • x86

Block Information

Similar Families

  • Keygen.D
  • Keygen.G

Windows API Usage

Category API
Other Suspicious
  • SetWindowsHookEx

Related Posts

Trending

Most Viewed

Loading...