PUP.MSIL.Patcher.X

Analysis Report

General information

Family Name: PUP.MSIL.Patcher.X
Signature status: No Signature

Known Samples

MD5: b3868665f3b9cf67401a98d9e37053fe
SHA1: e2164b03041e69c632340dc23333cbfd904d30d2
SHA256: A1915EF3272AD9962ACFF8E6781AF8245F01E33FC485A8AB93F1785FF356F61A
File Size: 672.77 KB, 672768 bytes
MD5: c882d4f2b7a6871640f09735dd9854f8
SHA1: 6907f691c7411d73af3a2c338bc7da42da9b810f
SHA256: 21DDA13CED24AECD894990A7399259C67C1144A7C5AD09864EBCC943AA15DCE4
File Size: 672.77 KB, 672768 bytes
MD5: f577e085b687aaee9c9e47ec97af0ba3
SHA1: 2d9810fa2dd9367eef22a98093ae2fb08079585a
SHA256: 688C57429E69340B3A33EA1CD31CFD6C30CEB4E6FD8B4A400043789C98F79745
File Size: 941.06 KB, 941056 bytes
MD5: b9d4c8e556170aae853f0b95f606a660
SHA1: a01ee237b6168e59a768b17fdb02dfa968f3a171
SHA256: 183E69D25D551291EA85297C0407265E5B42D8FD2B08A40E857148A6C1784AA6
File Size: 672.77 KB, 672768 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have exports table
  • File doesn't have security information
  • File is .NET application
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Assembly Version
  • 1.0.6.0
  • 1.0.1.0
Comments
  • Aplikacja służąca do weryfikacji integralności plików klienta gry.
  • Game client file integrity verification tool.
Company Name
  • AvalonMT2
  • PandoraMT2
File Description
  • AvalonMT2 - Patcher
  • PandoraMT2 - Patcher
File Version
  • 1.0.6.0
  • 1.0.1
Internal Name patcher.exe
Legal Copyright
  • Copyright © 2024
  • Copyright © 2025
  • Copyright © 2026, PandoraMT2
Legal Trademarks
  • AvalonMT2
  • PandoraMT2
Original Filename patcher.exe
Product Name
  • AvalonMT2 - Patcher
  • PandoraMT2 - Patcher
Product Version
  • 1.0.6
  • 1.0.1

File Traits

  • .NET
  • HighEntropy
  • x86

Block Information

Total Blocks: 25
Potentially Malicious Blocks: 0
Whitelisted Blocks: 13
Unknown Blocks: 12

Visual Map

0 0 ? 0 0 ? ? 0 ? ? ? ? ? ? 0 ? 0 0 0 0 0 0 ? 0 ?
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Windows API Usage

Category API
User Data Access
  • GetComputerNameEx
  • GetUserDefaultLocaleName
  • GetUserObjectInformation
Encryption Used
  • BCryptOpenAlgorithmProvider
Anti Debug
  • IsDebuggerPresent
  • NtQuerySystemInformation

Trending

Most Viewed

Loading...