Sample: f833bb86dd349b4c82beef4a43e558de

Note: if you are new to ThreatMiner, check out the how-to page to find out how you can get the most out of this portal.

Metadata
File name:N/A
File type:PE32 executable (GUI) Intel 80386, for MS Windows
File size:549752
Analysis date:N/A
MD5:f833bb86dd349b4c82beef4a43e558de
SHA1:4574e128f5bb5e1abc79fd60bf888129190096a5
SHA256:1b54655f19e00b7fba703628cb093ff7152e6eba513bdd973f86a72f7d88817b
SHA512:N/A
SSDEEP:N/A
IMPHASH:N/A
Authentihash:N/A
Related resources
PE TypePE32
Internal NameCGLPTNT.SYS
File Size537 kB
Machine TypeIntel 386 or later, and compatibles
File OSWindows NT 32-bit
Code Size494592
OS Version4.0
Entry Point0x10a0
File Flags Mask0x003f
Linker Version2.25
File Subtype7
Uninitialized Data SizeN/A
File Version1.10
Initialized Data Size49664
File DescriptionGhisler Parallel Driver
Product Version Number4.50.0.0
Product NameWindows Commander 32 bit
Company NameC. Ghisler & Co.
MIME Typeapplication/octet-stream
Character SetWindows, Latin2 (Eastern European)
Language CodeRussian
File Version Number1.10.0.0
File TypeWin32 EXE
Original FilenameCGLPTNT.SYS
Legal CopyrightCopyright (C) Christian Ghisler, C. Ghisler & Co., 2000
SubsystemWindows GUI
Object File TypeDriver
Image Version0.0
File Flags(none)
Subsystem Version5.0
Product Version4.50
Source:
APTNotes
Cyber threat intelligence reports associated with f833bb86dd349b4c82beef4a43e558de.
Loading...
Domains
Domains the malware sample communicates with.
Hosts
Hosts the malware sample communicates with.
HTTP Requests
HTTP requests the malware sample makes.
Registry keys
Registry keys created by the malware sample.
Comments
User comments about f833bb86dd349b4c82beef4a43e558de.
NOTICE: We have updated our privacy terms and conditions in accordance to GDPR. By using our site, you acknowledge that you have read and understand our Privacy Policy. Your use of ThreatMiner’s Products and Services is subject to these policies and terms.