By using Saferwall you consent to our Terms of Service and Privacy Policy and allow us to share your submission with the security community. Learn more

Summary

Analyse score

0/ 14

No antivirus venders flagged
this file as malicious

Signature

File is not signed

Last scanned

First submission

File type

sys

sys

Basic properties

CRC32

0x742e0bcc

MD5

d41ca753236e6cf92fc2994198b747f9

Magic

PE32+ executable (DLL) (console) x86-64, for MS Windows

SHA1

1953f5a562d036ee82207c71d09e242e7cee7b1d

SHA256

0e6afbf35aacb45d7632fa4c262f7fa70bad762d1ade2f83cfdcf133c37f764b

SHA512

8eeaee9dab81bcfc14ba0d6efd6a73cbf87d6b62778f9badabb45714b520ebf2e60bdb7563b925f38d8ad42cb5efc41a0440747a2df653bc836bab67fbe39a14

SSDeep

768:uvIDGix5UKUQ5Pscf6utGsBplZua/HOx:uADuKUWsNCBpxu

Size

37.50KB

Packer
  • PE+(64): compiler: Microsoft Visual C++(-)[-]
  • PE+(64): linker: Microsoft Linker(14.28**)[DLL64,console]
TrID
  • 44.4% (.EXE) Win64 Executable (generic) (10523/12/4)
  • 21.3% (.EXE) Win16 NE executable (generic) (5038/12/1)
  • 8.7% (.ICL) Windows Icons Library (generic) (2059/9)
  • 8.5% (.EXE) OS/2 Executable (generic) (2029/13)
  • 8.4% (.EXE) Generic Win/DOS Executable (2002/3)
Tags

ExifTool File Metadata

CodeSize

23.50KB

EntryPoint

0x5624

ExifToolVersionNumber

12.76

FileSize

38 kB

FileType

Win64 DLL

FileTypeExtension

dll

ImageFileCharacteristics

Executable, Large address aware, DLL

ImageVersion

0.0

InitializedDataSize

14.50KB

LinkerVersion

14.28

MachineType

AMD AMD64

MimeType

application/octet-stream

OsVersion

6.0

PeType

PE32+

Subsystem

Windows command line

SubsystemVersion

6.0

UninitializedDataSize

0

Warning

Error processing PE data dictionary

Submissions

Published Name Source Country
Kangaroo.dll web
N/A