The YellowStar.exe File Analysis

Updated on 2024-09-07 (5 days ago)
Checked by Online Virus Scanner
Online Virus Checkerv.1.0.186.174
DB Version:2024-09-07 00:00:35

The YellowStar.exe Is Suspicious

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.

FileYellowStar.exe
Checked2024-09-06 21:23:03
TypeWin32 EXE
ThreatTrojan Msil
MD5c1a9ff1b1ed32c47c36f88cef28fcc2e
SHA113a5c4de84f5944de09e940bca6bec9a4cf8bd3a
SHA2568c6c5774416679c106e0233814c77aaa2c679a58b010545dcb39abddd9135b79
SHA512122dd40c9329525230621d874b672f1b1ce3907f64c019debe6ccf41b8b3ae766ab5cbacf9940c894c9e5806dbc3ac92c83867f0063aa678a2143b4974ad1050
Imphashf34d5f2d4577ed6d9ceec516c1f5a744
File Size217600 bytes
The YellowStar.exe File Analysis - Download Now

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

  • Start by downloading Gridinsoft Anti-Malware to your computer.
  • Double-click on the gsam-en-install.exe file and follow the on-screen instructions to install the program.
  • Once the installation of Gridinsoft Anti-Malware is complete, the program will open on the Scan screen.
  • Click on the "Standard Scan" button.
  • After the scanning process is finished, click on "Clean Now" to remove any detected threats.
  • If prompted, restart your system to complete the removal process.

File Version Information

Translation0x0000 0x04b0
Comments
CompanyName
FileDescriptionYellow Star
FileVersion1.0.0.0
InternalNameYellowStar.exe
LegalCopyrightCopyright © 2022
LegalTrademarks
OriginalFilenameYellowStar.exe
ProductNameYellow Star
ProductVersion1.0.0.0
Assembly Version1.0.0.0

Portable Executable Info

fb8c20e23d3bebd6cd42e4bc849ed3eb
9e67896c5532ea333c232a4c39d22148
9230f08ec471cccc
Image Base:0x00400000
Entry Point:0x0041f50e
Compilation:2023-03-11 23:58:38
Checksum:0x00000000 (Actual: 0x0003cb21)
OS Version:4.0
PEiD:PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
Sign:The PE file does not contain a certificate table.
Sections:3
Imports: mscoree,
Exports: 0
Resources:10

Sections

Name Virtual Address Virtual Size Raw Size MD5 Entropy
.text 0x00002000 0x0001d514 0x0001d600 26cc1ca063a7f7e94af0c57d68796276 6.32
.rsrc 0x00020000 0x00017768 0x00017800 4ec374453d347ab33ac9759351de0b6d 3.88
.reloc 0x00038000 0x0000000c 0x00000200 a8a68e33e253cd9a6c245fd02e54b8a4 0.10

Leave a comment*

Share your thoughts or insights about this file. Do you align with our conclusion?

*Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Please Wait...

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware