File: 394bbccbb3305e8475300a9649047316

Metadata
File name:N/A
File type:PE32 executable (GUI) Intel 80386, for MS Windows
File size:230400
Analysis date:N/A
MD5:394bbccbb3305e8475300a9649047316
SHA1:1d6862b863e3a5dee4426093ffb87e1b7759e6c3
SHA256:cb91f27dd3a443c338387aaf9c08cd139a8bca260403ac97ff3d4e996f6945ab
SHA512:N/A
SSDEEP:N/A
IMPHASH:N/A
Authentihash:N/A
Related resources
PE TypePE32
Internal Namentkrpamp.exe
File Size225 kB
Machine TypeIntel 386 or later, and compatibles
File OSWindows NT 32-bit
Code Size20480
OS Version4.0
Entry Point0x388fd
File Flags Mask0x003f
Linker Version6.0
File SubtypeN/A
Uninitialized Data SizeN/A
File Version5.2.3790.4566 (srv03_sp2_qfe.090805-1438)
Initialized Data Size176128
File DescriptionNT Kernel & System
Product Version Number5.2.3790.4566
Product NameMicrosoft(R) Windows(R) Operating System
Company NameMicrosoft Corporation
MIME Typeapplication/octet-stream
Character SetUnicode
Language CodeChinese (Simplified)
File Version Number5.2.3790.4566
File TypeWin32 EXE
Original Filenamentkrpamp.exe
Legal Copyright(C) Microsoft Corporation. All rights reserved.
SubsystemWindows GUI
Object File TypeExecutable application
Image Version0.0
File Flags(none)
Subsystem Version4.0
Product Version5.2.3790.4566
Source:
APTNotes
Cyber threat intelligence reports associated with 394bbccbb3305e8475300a9649047316.
Loading...
Domains
Domains the malware sample communicates with.
Hosts
Hosts the malware sample communicates with.
HTTP Requests
HTTP requests the malware sample makes.
Registry keys
Registry keys created by the malware sample.
Comments
User comments about 394bbccbb3305e8475300a9649047316.
NOTICE: We have updated our privacy terms and conditions in accordance to GDPR. By using our site, you acknowledge that you have read and understand our Privacy Policy. Your use of ThreatMiner’s Products and Services is subject to these policies and terms.