winx22.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2790
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 284.00 KB (290816 bytes)
Compile time: 2020-04-21 13:39:48
MD5: 13f9ed56a8ce6e4bb6aa43252bc2733d
SHA1: b14d5076ed0bbe5d60b82e4b424dea1050899100
SHA256: 86432e782ec0089c5cc180a225cf8aff59409c0ef773c0e10e6ddf898b0508bd
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-06-18 22:18:03
Last submission: 2020-06-18 22:18:03
Filename detected: - winx22.exe (1)
URL file hosting
hXXp://zeytinyagisabun.com/winx22.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x43adc 277504 32f2689a29597aa185547f58f0df4b0d 3ae55fb6d3cd440ebee49a7ded04fedbd8ba6191
.rsrc 0x46000 0x2ee8 12288 629ce7f417227d2120000ebbcf486ebf 2ce6a9ec83cc7508eb13001d2ee827b1a1778600
.reloc 0x4a000 0xc 512 0c91e9b8253f1e4bcd0b50e937b88e31 15cf9fa5c12acb41a2e072dbaf69ae8ac20f58b3
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
USER32.dll
DHCPCSVC.dll
KERNEL32.dll
mscoree.dll
WLDAP32.dll
GDI32.dll
IP Found
6.9.0.114
1.4.1.4
URL(s)
http://sawebservice.red-gate.com/
http://www.smartassembly.com/webservices/UploadReportLogin/GetServerURL
http://www.smartassembly.com/webservices/UploadReportLogin/
http://www.smartassembly.com/webservices/Reporting/
http://www.smartassembly.com/webservices/Reporting/UploadReport2

#infosec #automation

TheSystem Itself @ 2020-06-18 22:18:05