File Name | Detection (k33).exe |
File Type |
PE32+ executable (GUI) x86-64, for MS Windows
|
Scanner Version | 1.0.217.174 |
Database Version | 2025-05-26 22:00:16 UTC |
Malware family: Caypnamer
Hash Type | Value | Action |
---|---|---|
MD5 |
9cad55e3c9e292a848bfc1738416ddd2
|
|
SHA1 |
23932def3fcfa50b25b0e4b4db349d450ed26136
|
|
SHA256 |
6e6f54e4ea6faa22a6ab1d939f02e3125a1dae71cfe057921e05a88b283f392d
|
|
SHA512 |
dd7cadab0b257d26d01ea023c3c1c9d1fe1f99504162c4bc47d3e874f2b5273580f1e6efad4960d698fa1769e84f978891ea0abb2c4e90b8de3014cbb5ec3b14
|
|
ImpHash |
9f394ac12a86b069dfe28b572c88714f
|
Icon |
Hash: 21524a4bacc57e9307212d6931061936
Fuzzy: 9cf72ae1635f7d79fd63f78f7271b4f6 dHash: 0d0f0e969e0e4f48 |
Image Base | 0x140000000 |
Entry Point | 0x14022332c |
Compilation Time | 2025-01-14 18:02:59 |
Checksum | 0x004e6372 (Actual: 0x004e6372) |
OS Version | 6.0 |
PEiD Signatures |
PE32+ executable (GUI) x86-64, for MS Windows
|
Digital Signature | OK |
Imports | 22 libraries |
Exports | 5 functions |
Resources | 47 Resources |
Sections | 7 Sections |
CompanyName | Husdawg, LLC |
FileDescription | System Requirements Lab Detection |
FileVersion | 6,5,24 |
InternalName | SRL Detection |
LegalCopyright | (c) Husdawg, LLC. All rights reserved. |
OriginalFilename | detection.exe |
ProductName | System Requirements Lab Detection |
ProductVersion | 6,5,24 |
Translation | 0x0409 0x04b0 |
Name | Virtual Address | Virtual Size | Raw Size | Entropy | Characteristics | MD5 |
---|---|---|---|---|---|---|
.text |
0x00001000 |
2,563,316 bytes | 2,563,584 bytes | 6.39 (Normal) |
IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ
|
89886A0BB537FBA949FE02D3F5393C0E |
.rdata |
0x00273000 |
692,312 bytes | 692,736 bytes | 4.86 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
BBCD318B9932FB559EB5D361263D5E02 |
.data |
0x0031d000 |
70,088 bytes | 37,888 bytes | 4.13 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE
|
3137A052F2A6996E066938FB81958FB1 |
.pdata |
0x0032f000 |
105,372 bytes | 105,472 bytes | 6.22 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
92C5DE984ABCC6BADE274A3465E787D5 |
_RDATA |
0x00349000 |
500 bytes | 512 bytes | 4.24 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
8F56CD2BC47E109FCE47DCBA0BA126E7 |
.rsrc |
0x0034a000 |
1,627,520 bytes | 1,627,648 bytes | 2.69 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ
|
BB1C71F95483E2952E6524DD849F23B8 |
.reloc |
0x004d8000 |
63,432 bytes | 63,488 bytes | 5.44 (Normal) |
IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ
|
64FE78979873524B87EF7EEEC3ED488D |
Resource Type | Count | Total Size | Percentage |
---|---|---|---|
AFX_DIALOG_LAYOUT | 2 | 4 bytes | |
RT_BITMAP | 8 | 1,307,036 bytes | |
RT_ICON | 9 | 306,600 bytes | |
RT_DIALOG | 2 | 620 bytes | |
RT_STRING | 23 | 9,588 bytes | |
RT_GROUP_ICON | 1 | 132 bytes | |
RT_VERSION | 1 | 832 bytes | |
RT_MANIFEST | 1 | 548 bytes |
This file is not digitally signed.
⚠ This file either lacks a digital signature or the certificate chain could not be verified
Exercise caution when executing unsigned files from unknown sources
OK
Gridinsoft has the capability to identify and eliminate PUP.Win64.Caypnamer.dd!c without requiring further user intervention.
Download Anti-MalwareFollow these steps to completely remove the threat from your system