By using Saferwall you consent to our Terms of Service and Privacy Policy and allow us to share your submission with the security community. Learn more

Summary

Analyse score

9/ 14

9 antivirus venders flagged
this file as malicious

Signature

File is not signed

Last scanned

First submission

File type

sys

sys

Basic properties

CRC32

0xaa75ddb5

MD5

71ab237ee7580f16e746d8b616572323

Magic

PE32+ executable (DLL) (console) x86-64, for MS Windows

SHA1

8c47b05c2ebde224e5b872fcfc51e497b0f136a9

SHA256

e085f3631a3083aa397a77ce9b3f6701b00d228ec62281d74cfb647f6067cf2c

SHA512

3d61b47426245704bfce27856a54d2b17b63c3496da0b05735dbc852b3eca1009a15e42196e5cec83a33937a899fd7a449795d201fad6f0678d59a2b7ce60ebc

SSDeep

6144:ToNbNfdLcBMZ6C3GAh7KTmb4+h8nw9SSIGMcuKjwLkZoyetPe/:6bpx6MZAAM3+d9kcuKjfoyl

Size

252.00KB

Packer
  • PE+(64): compiler: Microsoft Visual C/C++(2010 SP1)[-]
  • PE+(64): linker: Microsoft Linker(10.0)[DLL64,console]
TrID
  • 38.3% (.EXE) Win16 NE executable (generic) (5038/12/1)
  • 15.6% (.ICL) Windows Icons Library (generic) (2059/9)
  • 15.4% (.EXE) OS/2 Executable (generic) (2029/13)
  • 15.2% (.EXE) Generic Win/DOS Executable (2002/3)
  • 15.2% (.EXE) DOS Executable Generic (2000/1)
Tags

ExifTool File Metadata

CodeSize

31.50KB

EntryPoint

0x2567

ExifToolVersionNumber

12.49

FileSize

258 kB

FileType

Win64 DLL

FileTypeExtension

dll

ImageFileCharacteristics

Executable, Large address aware, DLL

ImageVersion

0.0

InitializedDataSize

281.00KB

LinkerVersion

10.0

MachineType

AMD AMD64

MimeType

application/octet-stream

OsVersion

5.2

PeType

PE32+

Subsystem

Windows command line

SubsystemVersion

5.2

UninitializedDataSize

0

Submissions

Published Name Source Country
libStef2.bin web
Morocco