valkyrie logo
valkyrie logo
  • Download Threat Hunter Assessment Tool
DASHBOARD
  • Unknown File Hunter Scans
STATISTICS
SETTINGS
  • Summary
  • Static Analysis
  • Dynamic Analysis
  • Precise Detectors
  • File Details
Analyzing...
File Name:   virussign.com_7513c58ef2290d5cd71b062f6c740cc8.exe
SHA1:   16a08269ce4285838c416a1e4bc21bf727622a8a
MD5:   7513c58ef2290d5cd71b062f6c740cc8
First Seen Date:  2026-04-03 21:31:14.608140 ( 2026-04-03 21:31:14.608140 )
Number of Clients Seen:   3
Last Analysis Date:  2026-04-03 21:31:14.608140 ( 2026-04-03 21:31:14.608140 )
Human Expert Analysis Result:   No human expert analysis verdict given to this sample yet.

Analysis Summary

Analysis Type Date Verdict
Signature Based Detection 2026-04-08 02:41:35.373250 Malware
Static Analysis Overall Verdict 2026-04-03 21:31:14.608140 No Threat Found help
Dynamic Analysis Overall Verdict 2026-04-03 21:31:14.608140 No Threat Found help
Precise Detectors Overall Verdict 2026-04-03 21:31:14.608140 No Match help

Static Analysis

Static Analysis Overall Verdict Result
No Threat Found help
Detector Result
Optional Header LoaderFlags field is valued illegal Clean
Non-ascii or empty section names detected Clean
Illegal size of optional Header Clean
Packer detection on signature database Unknown help
Based on the sections entropy check! file is possibly packed Clean
Timestamp value suspicious Clean
Header Checksum is zero! Suspicious
Enrty point is outside the 1st(.code) section! Binary is possibly packed Clean
Optional Header NumberOfRvaAndSizes field is valued illegal Clean
Anti-vm present Suspicious
The Size Of Raw data is valued illegal! Binary might crash your disassembler/debugger Clean
TLS callback functions array detected Clean

Dynamic Analysis

Dynamic Analysis Overall Verdict Result
No Threat Found help
Suspicious Behaviors
Opens a file in a system directory

virussign.com_7513c58ef2290d5cd71b062f6c740cc8.exe tried to connect to some addresses pinned on the map below (click pins for more details):

Behavioral Information

WriteFile

C:\\autostart.txt

LoadLibrary

api-ms-win-core-synch-l1-2-0

kernel32

api-ms-win-core-fibers-l1-1-1

api-ms-win-core-localization-l1-2-1

api-ms-win-core-string-l1-1-0

api-ms-win-core-datetime-l1-1-1

api-ms-win-core-localization-obsolete-l1-2-0

ADVAPI32.dll

QueryFilePath

C:\virussign.com_7513c58ef2290d5cd71b062f6c740cc8.exe

C:\Windows\syswow64\USER32.dll

ReadFile

C:\Windows\Fonts\staticcache.dat

OpenRegistryKey

\REGISTRY\MACHINE\SOFTWARE\M

Precise Detectors Analysis Results

Detector Name Date Verdict Reason
Static Precise PUA Detector 1 2026-04-03 21:30:37.734439 No Match help NotDetected
Static Precise PUA Detector 4 2026-04-03 21:30:37.800378 No Match help NotDetected
Static Precise NI Detector 3 2026-04-03 21:30:37.810886 No Match help NotDetected
Static Precise PUA Detector 5 2026-04-03 21:30:37.862305 No Match help NotDetected
Static Precise Trojan Detector 1 2026-04-03 21:30:37.860099 No Match help NotDetected
Static Precise Trojan Detector 3 2026-04-03 21:30:37.859382 No Match help NotDetected
Static Precise PUA Detector 6 2026-04-03 21:30:37.925001 No Match help NotDetected
Static Precise Trojan Detector 12 2026-04-03 21:30:37.962139 No Match help NotDetected
Static Precise Virus Detector 1 2026-04-03 21:30:38.003291 No Match help NotDetected
Static Precise Virus Detector 2 2026-04-03 21:30:38.004290 No Match help NotDetected
Static Precise NI Detector 1 2026-04-03 21:30:38.017955 No Match help NotDetected
Static Precise NI Detector 2 2026-04-03 21:30:38.069276 No Match help NotDetected
Static Precise Trojan Detector 13 2026-04-03 21:30:38.064877 No Match help NotDetected
Static Precise PUA Detector 2 2026-04-03 21:30:38.070670 No Match help NotDetected

Advance Heuristics

No Advanced Heuristic Analysis Result Received

Detector Result

Additional File Information

Vendor Validation

Certificate Validation

PE Headers

Property Value

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy MD5

PE Imports

PE Exports

PE Resources

© Verdict Cloud, Xcitium, Inc. 2026. All rights reserved. v1.49.0-72-ENT
 
 
 
 
Loading...