fr.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 48/68 Related 2777
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 136.50 KB (139776 bytes)
Compile time: 2019-11-19 23:09:28
MD5: 35757bcb4ea329bb4091f13c08890b5d
SHA1: 071e81a9112d0abb467de15110326aad28eef7fb
SHA256: cfc6be807622eee92d19f4c79fbea4b8df263211c719ed828dfb0e28e5a13ae0
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 2 .text .reloc
Directories 2 import relocation
First submission: 2019-11-21 19:21:03
Last submission: 2019-11-22 03:33:03
Filename detected: - frr.exe (1)
- fr.exe (1)
URL file hosting
hXXp://[www].teorija.rs/storage/app/frr.exeVirusTotal
hXXp://[www].teorija.rs/storage/app/fr.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-21 08:34:48 [48/68] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x21d44 138752 1c0e0b1101d31c276689e1f242c5036b 3a38610478fe4f6898bed769666970ffea34c3d4
.reloc 0x24000 0xc 512 e6d8c254136c56decaa95b311e6caade 86742b14ce62a8cf27ccfd1356c7286076638913
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
32.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-21 19:22:05