VirusShare_946977d0c0599a7f88f72838bcdd2257
PE
Verdict: BENIGN
Objectives
-
IsDebuggerPresent×2 -
QueryPerformanceCounter
-
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 -
48 -
B8 4D 5A 00 00 -
binary.section_count = 6.00 -
pe.import_dll_count = 9.00
-
pe.debug_timestamp_consistent = 1.00 -
pe.has_export_timestamp = 0.00 -
pe.timestamp = 1635200862.00
Micro-behaviors
-
DNSAPI.dll
-
LocalAlloc -
LocalFree
Metadata
-
C:\Users\computer\source\repos\ConsoleApplication1\x64\Release\ConsoleApplication1.pdb×3 -
<requestedExecutionLevel level='asInvoker' uiAccess='false' />×2 -
.rsrc (size: 512) -
VirusShare_946977d0c0599a7f88f72838bcdd2257 -
binary.overall_entropy = 3.02 -
pe.has_checksum = 0.00 -
pe.has_rich_header = 1.00 -
pe.size_of_image = 28672.00
-
binary.import_count = 44.00×4 -
binary.func_count = 31.00×2 -
binary.avg_complexity = 6.00 -
binary.avg_string_entropy = 3.13 -
binary.import_density = 11.00 -
binary.overall_entropy = 3.02
-
binary.has_signature = 0.00
-
.reloc×2 -
.data -
.data (size: 512) -
.pdata -
.rdata -
.rdata (entropy: 3.95) -
.rsrc -
.text
-
asInvoker -
pe.has_iltcg = 1.00 -
pe.has_pogo = 1.00 -
{"requested_execution_level":"asInvoker","ui_access":false}
-
api-ms-win-crt-heap-l1-1-0.dll
-
api-ms-win-crt-locale-l1-1-0.dll
-
api-ms-win-crt-math-l1-1-0.dll
-
api-ms-win-crt-runtime-l1-1-0.dll
-
api-ms-win-crt-stdio-l1-1-0.dll
-
api-ms-win-crt-utility-l1-1-0.dll
-
DNSAPI.dll
-
KERNEL32.dll
-
VCRUNTIME140.dll
-
true×3 -
pe.timestamp = 1635200862.00
20 of 42 traits shown
Objectives
-
IsDebuggerPresent×2 -
QueryPerformanceCounter
-
00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 00 -
48 -
B8 4D 5A 00 00 -
binary.section_count = 6.00 -
pe.import_dll_count = 9.00
-
pe.debug_timestamp_consistent = 1.00 -
pe.has_export_timestamp = 0.00 -
pe.timestamp = 1635200862.00
Micro-behaviors
-
DNSAPI.dll
-
LocalAlloc -
LocalFree
Metadata
-
C:\Users\computer\source\repos\ConsoleApplication1\x64\Release\ConsoleApplication1.pdb×3 -
<requestedExecutionLevel level='asInvoker' uiAccess='false' />×2 -
.rsrc (size: 512) -
VirusShare_946977d0c0599a7f88f72838bcdd2257 -
binary.overall_entropy = 3.02 -
pe.has_checksum = 0.00 -
pe.has_rich_header = 1.00 -
pe.size_of_image = 28672.00
-
binary.import_count = 44.00×4 -
binary.func_count = 31.00×2 -
binary.avg_complexity = 6.00 -
binary.avg_string_entropy = 3.13 -
binary.import_density = 11.00 -
binary.overall_entropy = 3.02
-
binary.has_signature = 0.00
-
.reloc×2 -
.data -
.data (size: 512) -
.pdata -
.rdata -
.rdata (entropy: 3.95) -
.rsrc -
.text
-
asInvoker -
pe.has_iltcg = 1.00 -
pe.has_pogo = 1.00 -
{"requested_execution_level":"asInvoker","ui_access":false}
-
api-ms-win-crt-heap-l1-1-0.dll
-
api-ms-win-crt-locale-l1-1-0.dll
-
api-ms-win-crt-math-l1-1-0.dll
-
api-ms-win-crt-runtime-l1-1-0.dll
-
api-ms-win-crt-stdio-l1-1-0.dll
-
api-ms-win-crt-utility-l1-1-0.dll
-
DNSAPI.dll
-
KERNEL32.dll
-
VCRUNTIME140.dll
-
true×3 -
pe.timestamp = 1635200862.00
20 of 42 traits shown
Identity
| SHA-256 | 863fbb179206fc0e401696cccd0e584f71ec64f6134f18dd4c95d56dd2a4cd7c |
|---|---|
| Filename | VirusShare_946977d0c0599a7f88f72838bcdd2257 |
Timeline
| First seen | 12 May 2026 19:04 UTC |
|---|---|
| Last analyzed | 17 May 2026 09:10 UTC |
Not seeing what you expected? Let us know