PUP.Keygen.IE

Analysis Report

General information

Family Name: PUP.Keygen.IE
Packers: UPX
Signature status: No Signature

Known Samples

MD5: 4c9f3cba924bee2bebf3f9db99d03bd3
SHA1: bc4de025b735c4ccc6febd98601014e536cf3427
SHA256: 1C30000A74B4109B21A2E8CAD1BFE9B5FA64F4361AA6B6332A63C5554C1CD00C
File Size: 98.82 KB, 98816 bytes
MD5: c3fd52514b730c5acfb00dd40060e623
SHA1: 061cf0ac97dffee4733e620e186610c05c6b7a5b
SHA256: F55BB816438C2761A2D0B5550299DB948BFCD5F64CA4989F517050643B0C16A9
File Size: 50.18 KB, 50176 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has been packed
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
Show More
  • File is Native application (NOT .NET application)
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

File Traits

  • 2+ executable sections
  • No Version Info
  • packed
  • x86

Block Information

Total Blocks: 197
Potentially Malicious Blocks: 1
Whitelisted Blocks: 193
Unknown Blocks: 3

Visual Map

0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 ? 0 ? ? 0 x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Similar Families

  • Agent.DGFB
  • Autorun.KA
  • KillMBR.XE

Windows API Usage

Category API
Anti Debug
  • IsDebuggerPresent
User Data Access
  • GetUserName
  • GetUserObjectInformation

Trending

Most Viewed

Loading...