lav.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 42/71 Related 2714
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 124.50 KB (127488 bytes)
Compile time: 2019-11-04 00:45:22
MD5: 1e75e1699136ce9903657fde0e375237
SHA1: efca63c7208753f7599774d6cc77ac5f294dd2d0
SHA256: ef886b4f433a603dfc4c7512a6f62188a8e5d6f0058b2481628195802f9de0ea
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 2 .text .reloc
Directories 2 import relocation
First submission: 2019-11-11 01:12:03
Last submission: 2019-11-11 01:12:03
Filename detected: - lav.exe (1)
URL file hosting
hXXp://fargroup.ir/images/lav.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-04 19:21:06 [42/71] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x1ed74 126464 507acd5eeddcc8748c93d0dabe02f2e3 5ca3a47453ec798422e7911c2ccd57276881991a
.reloc 0x22000 0xc 512 bc8c00721b660979b3e03fb240d7c442 b1b8e5823587ae203c909914adfa4352506fa187
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
32.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-11 01:12:05