valkyrie logo
valkyrie logo
  • Download Threat Hunter Assessment Tool
DASHBOARD
  • Unknown File Hunter Scans
STATISTICS
SETTINGS
  • Summary
  • Static Analysis
  • Dynamic Analysis
  • Precise Detectors
  • File Details
Analyzing...
File Name:   virussign.com_d5d3f33c80a3e3104949c059ae97f9c9.exe
SHA1:   9a71047db73bf8fbe6258d82f5d11e222e034e74
MD5:   d5d3f33c80a3e3104949c059ae97f9c9
First Seen Date:  2025-08-22 12:03:58.395991 ( 2025-08-22 12:03:58.395991 )
Number of Clients Seen:   3
Last Analysis Date:  2025-08-22 12:03:58.395991 ( 2025-08-22 12:03:58.395991 )
Human Expert Analysis Result:   No human expert analysis verdict given to this sample yet.

Analysis Summary

Analysis Type Date Verdict
Signature Based Detection 2025-08-22 12:32:44.865710 Malware
Static Analysis Overall Verdict 2025-08-22 12:03:58.395991 Highly Suspicious
Dynamic Analysis Overall Verdict 2025-08-22 12:03:58.395991 No Threat Found help
Precise Detectors Overall Verdict 2025-08-22 12:03:58.395991 No Match help

Static Analysis

Static Analysis Overall Verdict Result
Highly Suspicious
Detector Result
Optional Header LoaderFlags field is valued illegal Clean
Non-ascii or empty section names detected Clean
Illegal size of optional Header Clean
Packer detection on signature database Unknown help
Based on the sections entropy check! file is possibly packed Suspicious
Timestamp value suspicious Suspicious
Header Checksum is zero! Clean
Enrty point is outside the 1st(.code) section! Binary is possibly packed Clean
Optional Header NumberOfRvaAndSizes field is valued illegal Clean
Anti-vm present Clean
The Size Of Raw data is valued illegal! Binary might crash your disassembler/debugger Suspicious
TLS callback functions array detected Clean

Packer detection on signature database

Microsoft Visual Basic v5.0/v6.0

Dynamic Analysis

Dynamic Analysis Overall Verdict Result
No Threat Found help
Suspicious Behaviors
Creates a child process
Writes to address space of another process
Reads memory of another process

virussign.com_d5d3f33c80a3e3104949c059ae97f9c9.exe tried to connect to some addresses pinned on the map below (click pins for more details):

Behavioral Information

LoadLibrary

OLEAUT32.DLL

SXS.DLL

C:\Windows\system32\vb6chs.dll

C:\Windows\system32\asycfilt.dll

CreateMutex

<NULL>

ReadFile

C:\Unicorn-33387.exe

C:\Unicorn-56879.exe

C:\Unicorn-55623.exe

C:\Unicorn-37013.exe

C:\virussign.com_d5d3f33c80a3e3104949c059ae97f9c9.exe

C:\Unicorn-35757.exe

WriteFile

C:\Unicorn-55623.exe

C:\Unicorn-37013.exe

C:\virussign.com_d5d3f33c80a3e3104949c059ae97f9c9.exe

C:\Unicorn-33387.exe

C:\Unicorn-56879.exe

C:\Unicorn-35757.exe

C:\Unicorn-27256.exe

CreateProcess

C:\\Unicorn-56879.exe

C:\\Unicorn-37013.exe

C:\\Unicorn-35757.exe

C:\\Unicorn-27256.exe

QueryFilePath

C:\Unicorn-37013.exe

C:\Windows\system32\MSVBVM60.DLL

C:\Unicorn-33387.exe

C:\Unicorn-55623.exe

C:\virussign.com_d5d3f33c80a3e3104949c059ae97f9c9.exe

C:\Unicorn-56879.exe

Precise Detectors Analysis Results

Detector Name Date Verdict Reason
Static Precise PUA Detector 1 2025-08-22 12:03:22.314204 No Match help NotDetected
Static Precise PUA Detector 4 2025-08-22 12:03:22.372728 No Match help NotDetected
Static Precise NI Detector 3 2025-08-22 12:03:22.460003 No Match help NotDetected
Static Precise PUA Detector 5 2025-08-22 12:03:22.410091 No Match help NotDetected
Static Precise Trojan Detector 1 2025-08-22 12:03:22.466667 No Match help NotDetected
Static Precise Trojan Detector 3 2025-08-22 12:03:22.454711 No Match help NotDetected
Static Precise PUA Detector 6 2025-08-22 12:03:22.543334 No Match help NotDetected
Static Precise Trojan Detector 12 2025-08-22 12:03:22.561705 No Match help NotDetected
Static Precise Virus Detector 1 2025-08-22 12:03:22.660962 No Match help NotDetected
Static Precise Virus Detector 2 2025-08-22 12:03:22.658135 No Match help NotDetected
Static Precise Trojan Detector 13 2025-08-22 12:03:22.664847 No Match help NotDetected
Static Precise PUA Detector 2 2025-08-22 12:03:22.661897 No Match help NotDetected

Advance Heuristics

No Advanced Heuristic Analysis Result Received

Detector Result

Additional File Information

Vendor Validation

Certificate Validation

PE Headers

Property Value

PE Sections

Name Virtual Address Virtual Size Raw Size Entropy MD5

PE Imports

PE Exports

PE Resources

© Verdict Cloud, Xcitium, Inc. 2025. All rights reserved. v1.49.0-72-ENT
 
 
 
 
Loading...