Summary | ZeroBOX

new_image.jpg.exe

Generic Malware Antivirus .NET DLL PE File DLL PE32
Category Machine Started Completed
FILE s1_win7_x6401 Nov. 3, 2023, 6:05 p.m. Nov. 3, 2023, 6:05 p.m.
Size 71.5KB
Type PE32 executable (DLL) (console) Intel 80386 Mono/.Net assembly, for MS Windows
MD5 6dab97885e747392758ea655733f6c35
SHA256 146eb9ad1c8deeac3589472760eda2775311ac65fb2bf0cfbaebc2977af8f2ec
CRC32 E6D18B17
ssdeep 1536:Yb+wjaUtC6LsO8kPnBa/9b+mh3eJG53G73mxdvdS:y+wmD6IORPnBa/9b+mh32GhNvw
PDB Path F:\Arquivos\Crypter bypass all and vbs e js 13-16-2023 original png\New Private Panell Src 3.0 PASTE.EE\New Private Panell Src 3.0\Rump C# 3.0 Fix New\ClassLibrary1\obj\Debug\Fiber.pdb
Yara
  • Is_DotNET_DLL - (no description)
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Antivirus - Contains references to security software
  • Generic_Malware_Zero - Generic Malware

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path F:\Arquivos\Crypter bypass all and vbs e js 13-16-2023 original png\New Private Panell Src 3.0 PASTE.EE\New Private Panell Src 3.0\Rump C# 3.0 Fix New\ClassLibrary1\obj\Debug\Fiber.pdb
section {u'size_of_data': u'0x00011600', u'virtual_address': u'0x00002000', u'entropy': 6.9348656283393195, u'name': u'.text', u'virtual_size': u'0x00011528'} entropy 6.93486562834 description A section with a high entropy has been found
entropy 0.978873239437 description Overall entropy of this PE file is high