Lo.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 46/66 Related 2600
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 413.00 KB (422912 bytes)
Compile time: 2019-10-07 08:30:42
MD5: 509df42ef580852f05b94239418f701f
SHA1: 5a616dcc51a702d75ff45e285468632d9523fbe4
SHA256: a81854c1ce4426d20cf16465a147b0d6eca11ffa3fa6a3773976906eb25eb38d
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-10-12 08:30:05
Last submission: 2019-10-12 08:30:05
Filename detected: - Lo.exe (1)
URL file hosting
hXXp://salght.com/wp-content/Lo.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-11 16:00:41 [46/66] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x323f4 205824 d689d55371da231075534d667364664c 9d23178af2bccc48bc3e232a22629b0913604501
.rsrc 0x36000 0x34a40 216064 5463f47e8bf0c312182a31e306caab11 5f9ca5bcbee71d5410d736d9f6b77f81294c5335
.reloc 0x6c000 0xc 512 cbdeca44159724aa65a954dc72569f7c cd18b6494137939ac6899ccb8350ef32fb878db7
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-10-12 08:30:05