chigocry.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 52/70 Related 2476
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 767.50 KB (785920 bytes)
Compile time: 2019-07-12 21:28:13
MD5: 498e18b69f3ff51d8648b5472909f289
SHA1: 59bc1e4dcc995dee15d8729e7935c2b062ea620d
SHA256: 6c6581b2182519af552243685894117f7af1a97599ad1f0d23f25aac98a1a36c
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-09-07 04:27:03
Last submission: 2019-09-07 12:36:03
Filename detected: - chigocry.exe (2)
URL file hosting
hXXps://borgosanrocco.com/templates/beez5/language/sd/chigo/chigocry.exeVirusTotal
hXXp://borgosanrocco.com/templates/beez5/language/sd/chigo/chigocry.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-09-04 23:30:07 [52/70] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x1dc04 122368 7e20e03734477df5fa978598f23d249a 204f65bd9aedd1ca3e33b285416bcab9d32cb9af
.rsrc 0x20000 0xa1b64 662528 0858fdcdf580834c28209a2a7c2c9c4a 89d31a523f23619b73a80abd39461bb3a4818868
.reloc 0xc2000 0xc 512 b25a8b6ad12dcdf0f5abc34ecfc640d6 f95f2ee3a8dbc7db2938a3590287cf44bd6d8356
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-09-07 04:27:05