section: name: .text, entropy: 8.00, characteristics: IMAGE_SCN_CNT_CODE|IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE, raw_size: 0x0030e000, virtual_size: 0x0065e000
section: name: .YouSB, entropy: 7.41, characteristics: IMAGE_SCN_CNT_CODE|IMAGE_SCN_MEM_NOT_PAGED|IMAGE_SCN_MEM_EXECUTE|IMAGE_SCN_MEM_READ|IMAGE_SCN_MEM_WRITE, raw_size: 0x0010c000, virtual_size: 0x0010c000
section: name: .YouSB, entropy: 7.98, characteristics: IMAGE_SCN_CNT_INITIALIZED_DATA|IMAGE_SCN_MEM_READ, raw_size: 0x00001000, virtual_size: 0x00001000
Informational: Detected Entropy signature
Informational: Detected Overlay signature
Informational: Detected Taggant Signature
Informational: Detected Rich Signature
Informational: Create a new process
Informational: Communications over HTTP
Warning: Detected take screenshot function
Warning: Run a keylogger
Warning: Affect system registries
Warning: Affect private profile
Warning: Affect hook table
Critical: Detects abnormal behaviors and together with network communications
Critical: Detects malicious behaviors from a small size app
Informational: Detected no presence of any attachment
Critical: maldoc_find_kernel32_base_method_1
Critical: maldoc_getEIP_method_1
Informational: Detected no presence of any image
Informational: Detected the presence of an or several urls
Informational: Looks for big numbers 32:sized
Informational: Look for MD5 constants
Warning: Look for RijnDael AES