githubEdit

rabbit.Exe Files Analysis

chevron-rightBasic file informationhashtag
file <file.exe>
strings <file.exe> | less
exiftool <file.exe>
chevron-rightIdentify packerhashtag
die <file.exe>
chevron-rightHash for reputation checkhashtag
circle-info

Search the Hash in Virus total

sha256sum <file.exe>
md5sum <file.exe>
chevron-rightPE metadatahashtag
exiftool <file.exe> | grep -i "original\|internal\|company"
chevron-rightUnpackinghashtag
if packed with UPX
upx -d <file.exe> -o unpacked.exe

Last updated