PUP.PCOptimizer.A

Analysis Report

General information

Family Name: PUP.PCOptimizer.A
Signature status: No Signature

Known Samples

MD5: b6572dc9b2c461ac4e484941fea59bae
SHA1: 84cb46c14655be630f590672bd0ae5b2c20a37a1
SHA256: 2DA9DC5D6EC88502E2B7F540A7DB0F7A78EAC26B19952BC5A6F6C99978F74FF9
File Size: 4.34 MB, 4341466 bytes
MD5: 745903233d56d5738fc5e397766f4c22
SHA1: 2708f8b7a3255da2d81b45828cb11a520f04a58e
SHA256: 6304F6E38981712CE7FF80540148C8A638FF0A8EC243D2D723C8AEB382087674
File Size: 4.46 MB, 4461616 bytes
MD5: 16ca23f3fbf438497606fa6f1351c905
SHA1: b8e6b07bc36f620dc035b9efebc7067d12ffbd8d
SHA256: 48201420009DE8342E9E685D2211EDC05F666065D8D076381C66182189A6E252
File Size: 4.38 MB, 4383739 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have relocations information
  • File doesn't have security information
  • File has exports table
  • File has TLS information
  • File is 32-bit executable
  • File is either console or GUI application
  • File is GUI application (IMAGE_SUBSYSTEM_WINDOWS_GUI)
Show More
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name Microsoft
File Version 1.00
Internal Name
  • TJprojMain
  • Win
Original Filename
  • TJprojMain.exe
  • Win.exe
Product Name
  • Project1
  • Win
Product Version 1.00

Digital Signatures

Signer Root Status
Super PC Tools Limited UTN-USERFirst-Object Root Not Trusted

File Traits

  • 2+ executable sections
  • HighEntropy
  • MPRESS
  • MPRESS Win32
  • Native MPRESS x86
  • No Version Info
  • ntdll
  • packed
  • x86

Windows API Usage

Category API
Other Suspicious
  • SetWindowsHookEx

Trending

Most Viewed

Loading...