Gridinsoft Logo
File Icon

Detection.exe PUP Caypnamer Analysis

Technical Analysis

File Name Detection.exe
File Type
PE32+ executable (GUI) x86-64, for MS Windows
Scanner Version 1.0.150.174
Database Version 2023-12-03 22:01:28 UTC

PUP.Win64.Caypnamer.dd!c

Malware family: Caypnamer

N/A
Detection Rate
4,908,736
File Size (bytes)
2023-12-03
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
e08e960c74e958d3eb7bce224691f245
SHA1
0c73e0103c338c3c0a78c803024395bc085d538b
SHA256
e659dd70e5cf718e072231602ce07c811c0aaa56067e30034195a4c455b5aaaf
SHA512
b3cd2d2fcffa8ccd44011d08f4e9eed6688870db6caf3fca13e257d8cde749705a13e77218dd64d11d2ff0303eed30f7ac99a9561a90fda99852fd6300a07452
ImpHash
d6313786fb14fa2545d78caba831924b

PE Analysis

Basic Information

Icon
Hash: 21524a4bacc57e9307212d6931061936
Fuzzy: 9cf72ae1635f7d79fd63f78f7271b4f6
dHash: 0d0f0e969e0e4f48
Image Base 0x140000000
Entry Point 0x140220284
Compilation Time 2023-11-08 16:25:15
Checksum 0x004b7a1f (Actual: 0x004b7a1f)
OS Version 6.0
PEiD Signatures PE32+ executable (GUI) x86-64, for MS Windows
Digital Signature OK
Imports 22 libraries
Exports 5 functions
Resources 47 Resources
Sections 7 Sections

Digital Signatures

DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1 Husdawg, LLC (US)
DigiCert Trusted Root G4 DigiCert Inc (US)
DigiCert Trusted Root G4 DigiCert, Inc. (US)

Version Information

CompanyName Husdawg, LLC
FileDescription System Requirements Lab Detection
FileVersion 6,5,15
InternalName SRL Detection
LegalCopyright (c) Husdawg, LLC. All rights reserved.
OriginalFilename detection.exe
ProductName System Requirements Lab Detection
ProductVersion 6,5,15
Translation 0x0409 0x04b0

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy Characteristics MD5
.text 0x00001000 2,548,180 bytes 2,548,224 bytes 6.39 (Normal) IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ 29CEF290E0CFB1B965600ADE57D162EB
.rdata 0x00270000 688,960 bytes 689,152 bytes 4.86 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ FC7D60CC02EDC6BDF00AD6A4ADAEFD7E
.data 0x00319000 70,008 bytes 37,888 bytes 4.13 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE F9A281724C6B71D320D257E8ED479C7F
.pdata 0x0032b000 104,976 bytes 105,472 bytes 6.16 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ FD001F6960DBC5272269B515F46461F1
_RDATA 0x00345000 348 bytes 512 bytes 3.34 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 8C77415B2E24ABD0B0CCCB929CA8B54A
.rsrc 0x00346000 1,456,912 bytes 1,457,152 bytes 2.67 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ 42FB3195540C87AC6CC8644FF4AE294C
.reloc 0x004aa000 63,428 bytes 63,488 bytes 5.44 (Normal) IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_DISCARDABLE|IMAGE_SCN_MEM_READ 9A0808CECD27E33478E96FC0A72733F5

Resource Analysis

Total Resources: 47 (1,454,756 bytes)
Resource Type Count Total Size Percentage
AFX_DIALOG_LAYOUT 2 4 bytes
0%
RT_BITMAP 8 1,136,476 bytes
78.1%
RT_ICON 9 306,600 bytes
21.1%
RT_DIALOG 2 576 bytes
0%
RT_STRING 23 9,588 bytes
0.7%
RT_GROUP_ICON 1 132 bytes
0%
RT_VERSION 1 832 bytes
0.1%
RT_MANIFEST 1 548 bytes
0%

Certificate Chain Analysis

Certificate #1
Subject Husdawg, LLC
Husdawg, LLC
US
Issuer DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1
Serial Number 16729438201687260082810212785270802802
Certificate #2
Subject DigiCert Trusted Root G4
DigiCert Inc
US
Issuer DigiCert Trusted Root G4
Serial Number 7451500558977370777930084869016614236
Certificate #3
Subject DigiCert Trusted G4 Code Signing RSA4096 SHA384 2021 CA1
DigiCert, Inc.
US
Issuer DigiCert Trusted Root G4
Serial Number 11533403529598586876501374841704918745
Certificate Verification Status

OK

PUP.Win64.Caypnamer.dd!c Removal

Gridinsoft has the capability to identify and eliminate PUP.Win64.Caypnamer.dd!c without requiring further user intervention.

Download Anti-Malware

Removal Instructions

Follow these steps to completely remove the threat from your system

  1. 1
    Get Gridinsoft Anti-Malware — it's a quick 2 MB download that won't slow down your PC.
  2. 2
    Run the installer gsam-en-install.exe. The setup takes about 2 minutes and doesn't require a restart.
  3. 3
    The app launches right after installation. You'll see the main dashboard with the scan button front and center.
  4. 4
    Hit "Standard Scan" — this checks all the spots where malware typically hides: temp folders, browser data, startup programs, and system directories.
  5. 5
    Once the scan finds this threat, click "Clean Now". The removal usually happens instantly, though some stubborn infections may need a reboot.
  6. 6
    If you see a restart prompt, go ahead and reboot. This clears any malware that was running in memory and ensures your system starts fresh.
Important: Before You Start
Quick tip: unplug from the internet before scanning. Some malware phones home for instructions or downloads extra payloads when it senses trouble. If the infection is severe, boot into Safe Mode first — it limits what can run and makes cleanup easier.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.

Gridinsoft Portal
Signed in via Gridinsoft Portal · View profile
Your Score for

Gridinsoft Anti-Malware

Stay Malware-Free: Keep Your PC Protected with Gridinsoft Anti-Malware

Gridinsoft Anti-Malware offers just that—peace of mind with a robust, user-friendly solution that’s constantly updated to combat the latest threats. Designed by cybersecurity experts, it provides real-time protection and effortless malware removal. It’s not just about detecting threats; it's about enhancing your digital life with uninterrupted security. Give it a try and experience what it feels like to browse worry-free!

Gridinsoft Anti-Malware