MalScore
40/100

mt09.doc

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2708
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 891.81 KB (913213 bytes)
Compile time: 2018-08-16 16:40:57
MD5: 15d326f77238c16dc6ca235605483a88
SHA1: f6371a6a7a81e88cde7758d613cc1ee9758aa90a
SHA256: d8987d23fa045ae5bbe9596fb8e8691895137454bf678e04f6ee19da1858cc61
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 4 .text .sdata .rsrc .reloc
Directories 4 import resource debug relocation
First submission: 2019-09-14 10:00:14
Last submission: 2019-09-14 10:00:14
Filename detected: - mt09.doc (1)
URL file hosting
hXXp://121375515-174065907121865208.preview.editmysite.com/uploads/1/2/1/3/121375515/mt09.docVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 0 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x9ab74 633856 f729a1c66f7f6381c33ccfd272617be2 565488fc01b1d9c7c74ded8f19908304d3022f3c
.sdata 0x9e000 0x85 512 917ff2279e9b25634cd63afc0d465de3 1ac2d5856c5cd0858cb930c38845427c8bb137bb
.rsrc 0xa0000 0x5afe0 372736 12e9b3ad0bfd2f125a55e8ac413b20a4 2fd07abf284a1b724e9232aebd5248510fb40778
.reloc 0xfc000 0xc 512 d41d8cd98f00b204e9800998ecf8427e da39a3ee5e6b4b0d3255bfef95601890afd80709
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven03_64 Seven03_64 VirtualBox 2019-09-14 09:52:23 2019-09-14 09:52:46 23

0 Summary items with data

Files

Nothing to display

Read Files

Nothing to display

Write Files

Nothing to display

Delete Files

Nothing to display

Keys

Nothing to display

Read Keys

Nothing to display

Write Keys

Nothing to display

Delete Keys

Nothing to display

Mutexes

Resolved APIs

Nothing to display

Execute Commands

Nothing to display

Started Services

Nothing to display

Created Services

Nothing to display

#infosec #automation

TheSystem Itself @ 2019-09-14 10:00:15