go.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 29/68 Related 2135
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 667.50 KB (683520 bytes)
Compile time: 2018-10-23 06:51:29
MD5: 31a7c7d51105d7ace6d6d7b62ce39346
SHA1: 2a703b29a2921a658c3ace7e5eb633e56a778c8f
SHA256: 4d5d5fbf0e69641b2e636961aa0c66426360c6182dfea1205df2ac935c36c3b4
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2018-10-24 17:06:09
Last submission: 2018-10-24 17:06:09
Filename detected: - go.exe (1)
URL file hosting
hXXp://lockoutindia.com/zhh/go.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2018-10-23 18:40:12 [29/68] VirusTotal
PE Sections 3 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x4ba04 310272 7367538f81f06fb7d1cd3200667485f2 1650d1bb56ab02189493650c25bdd96bce7f5ece
.rsrc 0x4e000 0x5ad52 372224 975acce51994fbdb1f2a8284ad897602 13fb7259a4f26d7fb39a6626ae9402d4875e9943
.reloc 0xaa000 0xc 512 ee9150fcf6409f27be1ce13ce59216ea aca882ac24ceb3dad08f55bf8e0a1e22df458b3c
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
9.5.0.1
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2018-10-24 17:06:24