Summary | ZeroBOX
Malicious Packer Malicious Library PE64 PE File DLL
Category Machine Started Completed
ARCHIVE s1_win7_x6401 March 8, 2023, 9:25 a.m. March 8, 2023, 9:25 a.m.

Archive bR2j39T8KXnqkNd.dll @ i3YFqH6uMO3o8pg2Cbx.zip

Summary

Size 531.7MB
Type PE32+ executable (DLL) (console) x86-64 (stripped to external PDB), for MS Windows
MD5 4e7c0febeab7b8257bb5a9a5b41964be
SHA1 e113c92df1a8666abd66330a9eb95c8544137db7
SHA256 c070bf966a8d0e9a473685e67bf3091ddda302eb9a54425727a325554aa35ed4
SHA512
8761395868d23e267bc9f9237698461bede93f8f89c12589662bd996fd1dacab96636998c7e72729f882faac6df12e1640f2e8375c7a66b45668f93f0708c882
CRC32 5AEE2B78
ssdeep 24576:4E4cLCJMj2C8c3wCRSNWiy/eK5xDegO82/gkU8jG:4GLCJMjl8c3wKwKXeZ
Yara
  • Malicious_Library_Zero - Malicious_Library
  • Malicious_Packer_Zero - Malicious Packer
  • IsDLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsPE64 - (no description)

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

section .rodata
resource name VNRKGF
section {u'size_of_data': u'0x0002be00', u'virtual_address': u'0x00082000', u'entropy': 7.859341694371931, u'name': u'.rsrc', u'virtual_size': u'0x0002be00'} entropy 7.85934169437 description A section with a high entropy has been found
entropy 0.2925 description Overall entropy of this PE file is high