File: 48c7a0da6261e557e6cd12e81ba8b577492d477d8d21c0bbd8420dc9cb613867

Metadata
File name:2017-11-09-Locky-ransomware-binary-1-of-2.exe
File type:PE32 executable (GUI) Intel 80386, for MS Windows
File size:774144
Analysis date:2018-02-04 11:31:32
MD5:8fb63c10eb2c656dafe47e854906d29b
SHA1:ae45c8e53bbc6e094e12c44bad0da44eb357ca36
SHA256:48c7a0da6261e557e6cd12e81ba8b577492d477d8d21c0bbd8420dc9cb613867
SHA512:N/A
SSDEEP:N/A
IMPHASH:N/A
Authentihash:N/A
Related resources
PE TypePE32
Internal NameHyperTrm
Legal TrademarksHyperTerminal ® is a registered trademark of Hilgraeve, Inc.
CommentsHyperTerminal ® was developed by Hilgraeve, Inc. for Microsoft
File Size756 kB
Machine TypeIntel 386 or later, and compatibles
File OSWindows NT 32-bit
Code Size16384
OS Version5.0
Entry Point0x1620
File Flags Mask0x003f
Linker Version12.0
File SubtypeN/A
Uninitialized Data SizeN/A
File Version5.1.2600.5512
Initialized Data Size770048
File DescriptionHyperTerminal Applet Library
Product Version Number5.1.2600.5512
Product NameMicrosoft® Windows® Operating System
Company NameHilgraeve, Inc.
MIME Typeapplication/octet-stream
Character SetASCII
Language CodeEnglish (U.S.)
File Version Number5.1.2600.5512
File TypeWin32 EXE
Original FilenameHyperTrm.dll
Legal CopyrightCopyright © Hilgraeve, Inc. 2001
SubsystemWindows GUI
Object File TypeDynamic link library
Image Version0.0
File FlagsPrivate build
Subsystem Version5.0
Product Version5.1.2600.5512
Source:
APTNotes
Cyber threat intelligence reports associated with 48c7a0da6261e557e6cd12e81ba8b577492d477d8d21c0bbd8420dc9cb613867.
Loading...
Domains
Domains the malware sample communicates with.
DomainIP
crl3.digicert.comN/A
Hosts
Hosts the malware sample communicates with.
HTTP Requests
HTTP requests the malware sample makes.
AV Detections
AV detection names associated with the malware sample.
Mutants
Mutants created by the malware sample.
Registry keys
Registry keys created by the malware sample.
Comments
User comments about 48c7a0da6261e557e6cd12e81ba8b577492d477d8d21c0bbd8420dc9cb613867.
NOTICE: We have updated our privacy terms and conditions in accordance to GDPR. By using our site, you acknowledge that you have read and understand our Privacy Policy. Your use of ThreatMiner’s Products and Services is subject to these policies and terms.