Summary | ZeroBOX

GetAdapterInfo.exe

PE32 PE File
Category Machine Started Completed
FILE s1_win7_x6401 Nov. 20, 2024, 9:15 a.m. Nov. 20, 2024, 9:18 a.m.
Size 55.0KB
Type PE32 executable (Windows CE) ARM Thumb, for MS Windows
MD5 e036c5e30a9dace7ee859dc48b6130e0
SHA256 537d79b95fbbeedab6de6116c905e160767cbee3e5babc829b0a292c5ba22998
CRC32 3118D9B3
ssdeep 768:cyIAkAR4uVtZU9rkGyORyJQmd2eOeQjhrxIwhvZe:cyIAkAR4u7rURyQmPOLHhvZe
PDB Path d:\交付\P1310\1 - SoftWare\1 - 开发\1 - Apps\系统控制\网络信息Mac地址\GetAdapterInfo\GetAdapterInfo\STANDARDSDK_500 (ARMV4I)\Debug\GetAdapterInfo.pdb
Yara
  • IsPE32 - (no description)
  • PE_Header_Zero - PE File Signature

Name Response Post-Analysis Lookup
No hosts contacted.
IP Address Status Action
No hosts contacted.

Suricata Alerts

No Suricata Alerts

Suricata TLS

No Suricata TLS

pdb_path d:\交付\P1310\1 - SoftWare\1 - 开发\1 - Apps\系统控制\网络信息Mac地址\GetAdapterInfo\GetAdapterInfo\STANDARDSDK_500 (ARMV4I)\Debug\GetAdapterInfo.pdb
section ..\x00\x00\x18\x1b
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aa58 size 0x00000468
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aa58 size 0x00000468
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aa58 size 0x00000468
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aa58 size 0x00000468
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aa58 size 0x00000468
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aa58 size 0x00000468
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aa58 size 0x00000468
name RT_ICON language LANG_CHINESE filetype GLS_BINARY_LSB_FIRST sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aa58 size 0x00000468
name RT_MENU language LANG_CHINESE filetype data sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000af38 size 0x00000042
name RT_DIALOG language LANG_CHINESE filetype data sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000af8c size 0x00000106
name RT_STRING language LANG_CHINESE filetype data sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000b0ec size 0x0000002a
name RT_STRING language LANG_CHINESE filetype data sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000b0ec size 0x0000002a
name RT_ACCELERATOR language LANG_CHINESE filetype data sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000af7c size 0x00000010
name RT_GROUP_ICON language LANG_CHINESE filetype data sublanguage SUBLANG_CHINESE_SIMPLIFIED offset 0x0000aec0 size 0x00000076
section {u'size_of_data': u'0x00005e00', u'virtual_address': u'0x0000c000', u'entropy': 7.462455027083925, u'name': u'..\\x00\\x00\\x18\\x1b', u'virtual_size': u'0x00006000'} entropy 7.46245502708 description A section with a high entropy has been found
entropy 0.435185185185 description Overall entropy of this PE file is high