LoginPVTK.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 18/72 Related 2476
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 686.00 KB (702464 bytes)
Compile time: 2018-07-27 10:29:28
MD5: 3170ccef60228ac7db4eda4cdc0a50b8
SHA1: faa581f80dc321ed4dd4a30a676ccec6dfaae3bb
SHA256: fbdfd8d6eabdf987d38f80fcfbd0a74088f09bc48f60c58f251726a324393e33
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 5 RQU[pUk .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-01-22 04:57:06
Last submission: 2019-01-22 04:57:06
Filename detected: - LoginPVTK.exe (1)
URL file hosting
hXXp://kimyen.net/upload/LoginPVTK.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-01-20 21:06:27 [18/72] VirusTotal
PE Sections 3 suspicious
Name VAddress VSize Size MD5 SHA1
RQU[pUk 0x2000 0x9f174 651776 0418177248ae94f3a790b2c25b245e0e b3e6e6c8f1c55475639f37d91dd3d598fe79e705
.text 0xa2000 0xb060 45568 1eb18a2cc7ade05f82a59f91aa8885da 58dbc76d506d54660c4536e97e0a9e379c89d7f8
.rsrc 0xae000 0xad0 3072 9d26e468963eafef51988306e434fe2c f93a14c3239e09cf05f0738cf9f5df9e2994e0c9
.reloc 0xb0000 0xc 512 bb7ed6253917948e1428bb2330be1c86 48f6dda68a146485d1a58fb76ce287b6c764adfe
0xb2000 0x10 512 5b0616fe3c77b03ccd21bbd32569e8dd 010acacfcac29a5047e590960b2448f63448bc88
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
File found
FIle type: Library
mscoree.dll
KERNEL32.dll
IP Found
No IP detected
URL(s)
http://vltool.blogspot.com

#infosec #automation

TheSystem Itself @ 2019-01-22 04:57:08