Threat Database Hacktool PUP.Keygen.VA

PUP.Keygen.VA

Analysis Report

General information

Family Name: PUP.Keygen.VA
Signature status: No Signature

Known Samples

MD5: 68d2a03c75ddee7c853031f6070a270f
SHA1: 333f493269227626a118e8ed24ce61de91e7834c
SHA256: 9F6D829E07E073009894C3CD0D4185A32DFC5B8CD9CCA4D18D9982DFE419B93A
File Size: 5.63 KB, 5632 bytes
MD5: 3c385314c942fe275f31bae0f47f58ba
SHA1: 16464a5330e6ba410fb0669c58ae76e53e7579b7
SHA256: 52D1AA0520A68A618CEDF0D9A154E5847174DFE2080DBF6BFE7B54DE865857E8
File Size: 372.04 KB, 372044 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has been packed
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is Native application (NOT .NET application)
Show More
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

File Traits

  • 2+ executable sections
  • HighEntropy
  • No Version Info
  • packed
  • Upack
  • UPack (Dwing)
  • UPack (Generic)
  • x86

Files Modified

File Attributes
\device\namedpipe\gmdasllogger Generic Write,Read Attributes

Windows API Usage

Category API
Anti Debug
  • IsDebuggerPresent
User Data Access
  • GetUserObjectInformation
Keyboard Access
  • GetKeyState

Related Posts

Trending

Most Viewed

Loading...