pov.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 54/72 Related 2779
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 282.00 KB (288768 bytes)
Compile time: 2019-12-03 22:38:30
MD5: 1ca0edfb92ab73b1cf0214b69b23a16b
SHA1: 93918557414d50859bc04e289526d19981e67cad
SHA256: a973665d1e6dbcaf0f4bc5c84f793c94b4237b9753b6cb44449b851cf99912e7
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-12-10 11:33:04
Last submission: 2019-12-10 11:33:04
Filename detected: - pov.exe (1)
URL file hosting
hXXp://[www].teorija.rs/storage/framework/pov.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-12-07 16:02:54 [54/72] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x45cd4 286208 6374caa742703da90d503bb1ddc6906d 09189f71082f825630645b92ec19bc9626558038
.rsrc 0x48000 0x518 1536 958aabfff91909e0243e163484212cd3 7991781a01a880414395d2b9a124d5ae8311e5c0
.reloc 0x4a000 0xc 512 86e7942ffebbaacc1d3d653f824ef32c 472d5adb6a735890db334d7c6477df23eef68ca8
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
USER32.dll
psapi.dll
mscoree.dll
vaultcli.dll
IP Found
0.1.2.3
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-12-10 11:33:05