%3f%3f%3f%3f.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2805
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 14.00 KB (14336 bytes)
Compile time: 2018-01-26 23:26:39
MD5: 2adfc56ece3bc1e09b0b6a8d019944bf
SHA1: 4c6d71df589aa00e835bac260c115e623e5cc217
SHA256: f0ed88c2acc141ae677f7b1b99840a43cf593557dfec56d35b70b14f52521c2f
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 4 import resource debug relocation
First submission: 2021-01-24 09:06:07
Last submission: 2021-01-24 09:06:07
Filename detected: - %3f%3f%3f%3f.exe (1)
URL file hosting
hXXp://web.eng.ubu.ac.th/~seminar/research/Research.2557/%3f%3f%3f%3f.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x2ccc 11776 5f276facf7c544ecadd2cd26626911d9 3924f96e40f30505cea459985c16801ffb45686a
.rsrc 0x6000 0x5a4 1536 73bd1798ce0e8e7b4c62e0f9f990c094 98d0716adaec2fe025f6edb11ec00d78724dd16e
.reloc 0x8000 0xc 512 658905ad537379efc9d674fdc42ca684 66ac1bbce25fc07131c92ab29fa19f6b3d92d7ce
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
8.8.1.2
8.8.8.1
URL(s)
https://pastebin.com/raw/NTu3FZup

#infosec #automation

TheSystem Itself @ 2021-01-24 09:06:08