261cb218aa0d1a6abd48b9b0f14658b0 Threatbook file behavior analysis report
Document Threat Intelligence IOC Report
No intelligence IOC detected
|
Intelligence decision system
Undetected intelligence determination system
|
Network behavior report
No behavioral characteristics detected
|
Document release report
File release report not detected
|
File process number report
Document behavior signature report
No file behavior report detected
|
Static information
Section name: |
.text |
Virtual address: |
0x00001000 |
Physical address: |
0x00000000 |
Physical size: |
0x00000000 |
Section permissions: |
RWE |
Section name: |
.data |
Virtual address: |
0x0003d000 |
Physical address: |
0x00000000 |
Physical size: |
0x00000000 |
Section permissions: |
RW- |
Section name: |
.rdata |
Virtual address: |
0x0003e000 |
Physical address: |
0x00000000 |
Physical size: |
0x00000000 |
Section permissions: |
R-- |
Section name: |
.bss |
Virtual address: |
0x00041000 |
Physical address: |
0x00000000 |
Physical size: |
0x00000000 |
Section permissions: |
RW- |
Section name: |
.idata |
Virtual address: |
0x00046000 |
Physical address: |
0x00000000 |
Physical size: |
0x00000000 |
Section permissions: |
RW- |
Section name: |
.lol 0 |
Virtual address: |
0x00047000 |
Physical address: |
0x00000000 |
Physical size: |
0x00000000 |
Section permissions: |
R-E |
Section name: |
.NewSec |
Virtual address: |
0x0004e000 |
Physical address: |
0x00000000 |
Physical size: |
0x00000000 |
Section permissions: |
RWE |
Section name: |
.lol 1 |
Virtual address: |
0x0004f000 |
Physical address: |
0x00000400 |
Physical size: |
0x00025200 |
Section permissions: |
RWE |
Section name: |
.rsrc |
Virtual address: |
0x00075000 |
Physical address: |
0x00025600 |
Physical size: |
0x00006800 |
Section permissions: |
RW- |
import_hash: |
3a2003ea545fe942681da9e7683ebb58 |
time_stamp: |
2014-02-27 14:41:59 |
entry_point_section: |
.lol 1 |
image_base: |
0x400000 |
entry_point: |
0x6b787 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x0007526c |
size: |
0x00000668 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x000758d4 |
size: |
0x000002e8 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x00075bbc |
size: |
0x00000128 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x00075ce4 |
size: |
0x00000ea8 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x00076b8c |
size: |
0x000008a8 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x00077434 |
size: |
0x00000568 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x0007799c |
size: |
0x000025a8 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x00079f44 |
size: |
0x000010a8 |
name: |
RT_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x0007afec |
size: |
0x00000468 |
name: |
RT_GROUP_ICON |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x0007b454 |
size: |
0x00000084 |
name: |
RT_VERSION |
language: |
LANG_ENGLISH |
filetype: |
data |
sublanguage: |
SUBLANG_ENGLISH_US |
offset: |
0x0007b4d8 |
size: |
0x000002e0 |
File upload
Please not close this windows,
If you do not have to upload response time, make sure you upload files less than 20M
You can view the results of the last scan or rescan
Please not close this windows,
If you do not have to upload response time, make sure you upload files less than 20M