MalScore
66/100

svshost.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2096
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 1578.62 KB (1616506 bytes)
Compile time: 2019-04-08 08:26:11
MD5: 1137352b9630eeb1fc19db6f8d08cde9
SHA1: 60378fc939b203c4562026312df09da4aeb3c13c
SHA256: 4f34e9dfc44142d65df596a8312479786d138cf3f2c1640ac1d141196a3d4ead
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-05-15 15:57:13
Last submission: 2019-05-15 15:57:13
Filename detected: - svshost.exe (1)
URL file hosting
hXXp://devblog-dofus.org/svshost.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 0 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x1194f4 1152512 62aff5dc781078e46ce559157def2182 8ba75d4961f952ea32ad5943ceb79ab57a5ddcc4
.rsrc 0x11c000 0x42e9ba 4385280 1e44eddcacf58f065c82f092984d3635 eeb6a273ff6b5bd53dbf35b9aadfb938059804a9
.reloc 0x54c000 0xc 512 d41d8cd98f00b204e9800998ecf8427e da39a3ee5e6b4b0d3255bfef95601890afd80709
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
USER32.dll
IP Found
No IP detected
URL(s)
No URL found
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05b_64 Seven05b_64 VirtualBox 2019-05-15 15:43:44 2019-05-15 15:44:10 26

2 Behaviors detected by system signatures

Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05b_64 Seven05b_64 VirtualBox 2019-05-15 15:43:44 2019-05-15 15:44:10 26

0 Summary items with data

Files

Nothing to display

Read Files

Nothing to display

Write Files

Nothing to display

Delete Files

Nothing to display

Keys

Nothing to display

Read Keys

Nothing to display

Write Keys

Nothing to display

Delete Keys

Nothing to display

Mutexes

Resolved APIs

Nothing to display

Execute Commands

Nothing to display

Started Services

Nothing to display

Created Services

Nothing to display

#infosec #automation

TheSystem Itself @ 2019-05-15 15:57:14