Category | Machine | Started | Completed |
---|---|---|---|
FILE | s1_win7_x6403_us | April 20, 2023, 9:36 a.m. | April 20, 2023, 9:44 a.m. |
-
s.exe "C:\Users\test22\AppData\Local\Temp\s.exe"
652
Name | Response | Post-Analysis Lookup |
---|---|---|
No hosts contacted. |
IP Address | Status | Action |
---|---|---|
41.185.97.216 | Active | Moloch |
Suricata Alerts
No Suricata Alerts
Suricata TLS
No Suricata TLS
pdb_path | C:\tocacagaweyovu-dujazidumexux\mosecajidofin zo.pdb |
resource name | AFX_DIALOG_LAYOUT |
resource name | NIR |
resource name | VAXI |
resource name | YEYUJE |
section | {u'size_of_data': u'0x00023800', u'virtual_address': u'0x00001000', u'entropy': 7.68044248543337, u'name': u'.text', u'virtual_size': u'0x000236b2'} | entropy | 7.68044248543 | description | A section with a high entropy has been found | |||||||||
entropy | 0.605543710021 | description | Overall entropy of this PE file is high |
host | 41.185.97.216 |