Summary | ZeroBOX

document.exe

PE32 PE File DLL
Category Machine Started Completed
FILE s1_win7_x3201 May 26, 2021, 10:29 a.m. May 26, 2021, 10:30 a.m.
Size 171.5KB
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 ff030ccb88227fc44d495468a2cc8992
SHA256 bb354a94362831d0c38718307e65a0d83baa5443b8750154afa68951c32426c2
CRC32 12E5F2C3
ssdeep 3072:r6A3/0n2RB7qAPI6wnX9kWRx5lUgMSmgEogJmPIpalYWX2:rJ3/02bWAANnX97LUgR+ogJRoYa
Yara
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE32 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

section .crt
section {u'size_of_data': u'0x00016000', u'virtual_address': u'0x00001000', u'entropy': 7.181071077412934, u'name': u'.text', u'virtual_size': u'0x00015f4e'} entropy 7.18107107741 description A section with a high entropy has been found
section {u'size_of_data': u'0x00010e00', u'virtual_address': u'0x00017000', u'entropy': 7.836444528377693, u'name': u'.rdata', u'virtual_size': u'0x00010da4'} entropy 7.83644452838 description A section with a high entropy has been found
section {u'size_of_data': u'0x00002800', u'virtual_address': u'0x00028000', u'entropy': 7.201816617083845, u'name': u'.crt', u'virtual_size': u'0x00004360'} entropy 7.20181661708 description A section with a high entropy has been found
entropy 0.970674486804 description Overall entropy of this PE file is high