frr.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 54/71 Related 2734
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 284.00 KB (290816 bytes)
Compile time: 2019-11-27 21:27:48
MD5: 10d9dcc97e2cb6893cf7ca41488e154f
SHA1: b41639598bcd73e3533158f8691d1326dcff4df5
SHA256: 833cd859c699ea76257be3b0e9e5ab3f83198f86ecddd7dec5018b63b775dc20
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-12-04 22:21:03
Last submission: 2019-12-04 22:21:03
Filename detected: - frr.exe (1)
URL file hosting
hXXp://[www].teorija.rs/vendor/league/frr.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-12-04 16:24:25 [54/71] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x464b4 288256 7e61178827a6fa4a4d8ecfac4a58da11 61f4102e070455dc2ffb9ca0c526483b0ee74921
.rsrc 0x4a000 0x520 1536 838cfc2916364c38b5293d285ea0c3db 488b684e4aa8b8c46ff302ebea492e03f9b9b113
.reloc 0x4c000 0xc 512 f1596b1649bad063d4f565de532b9edc e5716276d8d3fa01aa92736bb07a2652498c4dab
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
mscoree.dll
psapi.dll
USER32.dll
vaultcli.dll
IP Found
0.1.2.3
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-12-04 22:21:04