MalScore
86/100

linkscry.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2790
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 491.84 KB (503642 bytes)
Compile time: 2020-02-24 21:52:10
MD5: 2d791dc6ddeda07c981e3d8e62d2ddd2
SHA1: 5c960ab04a0a1a21699902d2838aec3675557906
SHA256: d2d237ef050d6d86a65e93df876f9980910b6ec5c24bf927a7a0525c15d44124
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-04-12 00:57:13
Last submission: 2020-04-12 00:57:13
Filename detected: - linkscry.exe (1)
URL file hosting
hXXp://[www].ethnomedicine.cn/wp-content/plugins/mjcegcd/links/linkscry.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 0 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xd7f4 55296 2283fec00b184d5c0af188663fcbcc7c f3f6b496b1ebc3f81b19907f4f4aebecdd81a655
.rsrc 0x10000 0x773a6 488448 0858caf2fa26db9c853bdec50400964f 4f267d7799aae14dd633b28b30fb85dfccf1c6f8
.reloc 0x88000 0xc 512 d41d8cd98f00b204e9800998ecf8427e da39a3ee5e6b4b0d3255bfef95601890afd80709
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
KERNEL32.dll
mscoree.dll
IP Found
No IP detected
URL(s)
http://example.com
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven03b_64 Seven03b_64 VirtualBox 2020-04-12 00:50:38 2020-04-12 00:51:03 25

4 Behaviors detected by system signatures

Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven03b_64 Seven03b_64 VirtualBox 2020-04-12 00:50:38 2020-04-12 00:51:03 25

0 Summary items with data

Files

Nothing to display

Read Files

Nothing to display

Write Files

Nothing to display

Delete Files

Nothing to display

Keys

Nothing to display

Read Keys

Nothing to display

Write Keys

Nothing to display

Delete Keys

Nothing to display

Mutexes

Resolved APIs

Nothing to display

Execute Commands

Nothing to display

Started Services

Nothing to display

Created Services

Nothing to display

#infosec #automation

TheSystem Itself @ 2020-04-12 00:57:15