PUP.PortTunnel

Analysis Report

General information

Family Name: PUP.PortTunnel
Signature status: No Signature

Known Samples

MD5: 3b5a3bd54814d409107b7acc900c352c
SHA1: 98d3116c2247ddd383e36d86bf64ae6f350c3cda
SHA256: FA40FF78D95F3141A56D71600DAC62BFE201EF67E5F302129C4F4C7FB7F28C67
File Size: 58.58 KB, 58576 bytes

Windows Portable Executable Attributes

  • File doesn't have "Rich" header
  • File doesn't have debug information
  • File doesn't have exports table
  • File doesn't have security information
  • File is 32-bit executable
  • File is console application (IMAGE_SUBSYSTEM_WINDOWS_CUI)
  • File is either console or GUI application
  • File is Native application (NOT .NET application)
  • File is not packed
  • IMAGE_FILE_DLL is not set inside PE header (Executable)
Show More
  • IMAGE_FILE_EXECUTABLE_IMAGE is set inside PE header (Executable Image)

File Icons

Windows PE Version Information

Name Value
Company Name SteelBytes
File Description JPEG & PNG Stripper
File Version 1.3.2.16
Legal Copyright Copyright (C) 2004-2005 SteelBytes
Original Filename Stripper.exe
Product Name JPEG & PNG Stripper
Product Version 1.3.2.16

File Traits

  • HighEntropy
  • x86

Block Information

Total Blocks: 4
Potentially Malicious Blocks: 2
Whitelisted Blocks: 0
Unknown Blocks: 2

Visual Map

? ? x x
0 - Probable Safe Block
? - Unknown Block
x - Potentially Malicious Block

Trending

Most Viewed

Loading...