mscword.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2805
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 288.00 KB (294912 bytes)
Compile time: 2020-07-16 19:16:46
MD5: 4373f1b989912d0121641f23a05b2f62
SHA1: a11deb05354e51c737b263435dcab3fd2e26e90b
SHA256: 4601b57fb9acf7117686773d8616efcac498591a6b650acc9a4f96871e9694b5
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2021-01-21 18:18:07
Last submission: 2021-01-21 18:18:07
Filename detected: - mscword.exe (1)
URL file hosting
hXXps://angelsdetour.com/mscword.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x4757c 292352 3ab36010f102dd83963c388e601d701f 03c0414f443b7e07ce3852cad5f725b226c4015f
.rsrc 0x4a000 0x5fc 1536 510f7bddd83dc25b7ee80c7eac90b313 654b23da9ec0384c21f3efd637f01305de34fe16
.reloc 0x4c000 0xc 512 a150d86e1b669f112d83593a94d56ea2 934aa90d63bae5fdcdbeca1fe0f75d2f9c800808
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
No packers found for this file
File found
FIle type: Library
USER32.dll
mscoree.dll
IP Found
3.1.1.1
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2021-01-21 18:18:09