Summary | ZeroBOX
Generic Malware Malicious Library PE32 PE File DLL
Category Machine Started Completed
ARCHIVE s1_win7_x6403_us June 7, 2024, 5:48 p.m. June 7, 2024, 5:48 p.m.

Archive wpcap.dll @ sandbox.zip

Summary

Size 275.7KB
Type PE32 executable (DLL) (GUI) Intel 80386, for MS Windows
MD5 4633b298d57014627831ccac89a2c50b
SHA1 e5f449766722c5c25fa02b065d22a854b6a32a5b
SHA256 b967e4dce952f9232592e4c1753516081438702a53424005642700522055dbc9
SHA512
29590fa5f72e6a36f2b72fc2a2cca35ee41554e13c9995198e740608975621142395d4b2e057db4314edf95520fd32aae8db066444d8d8db0fd06c391111c6d3
CRC32 05B07351
ssdeep 6144:E4yIm5rC9WNWwKcNBSCiLvK8+jKgZBwIbg2:jyIm59WwpqCuEKIwv2
PDB Path c:\releases\winpcap_4_1_3\winpcap\wpcap\PRJ\Release\x86\wpcap.pdb
Yara
  • Malicious_Library_Zero - Malicious_Library
  • PE_Header_Zero - PE File Signature
  • IsDLL - (no description)
  • IsPE32 - (no description)
  • Generic_Malware_Zero - Generic Malware

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
164.124.101.2 Active Moloch

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path c:\releases\winpcap_4_1_3\winpcap\wpcap\PRJ\Release\x86\wpcap.pdb