userclient.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 23/70 Related 1
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386, for MS Windows
File size: 819.00 KB (838656 bytes)
Compile time: 1991-12-10 12:41:04
MD5: 576c0c07c41bfbc4465bf6ccc4ad5fec
SHA1: 899a29e70a71b37b4ead9de1e81c5e81a1e237e2
SHA256: 87a0fd07f8dc0a72fbd4507200fcb1cba64fcc5f61cf76a8f4c8b9f8b0f04908
Import hash: 37318a411aa7deac901859830abc41b3
Sections 8 CODE DATA BSS .idata .tls .rdata .reloc .rsrc
Directories 4 import resource tls relocation
First submission: 2019-12-03 08:42:06
Last submission: 2019-12-03 08:42:06
Filename detected: - userclient.exe (1)
URL file hosting
hXXp://dubem.top/userclient/userclient.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-29 10:09:10 [23/70] VirusTotal
PE Sections 4 suspicious
Name VAddress VSize Size MD5 SHA1
CODE 0x1000 0x8cad0 576512 53497ea6b17d2c30a890398d59b6129a 27763817a48a43e8a1d28ad05eeb232d8e981a8f
DATA 0x8e000 0x11dc 4608 0470f9ee808baeb3556a9b6764cb7c9f fc0fb1ef20db267dbc4bc99852a1c2efd129dad7
BSS 0x90000 0xce9 0 d41d8cd98f00b204e9800998ecf8427e da39a3ee5e6b4b0d3255bfef95601890afd80709
.idata 0x91000 0x2400 9216 e06b7c82648f1e063655c28cb8a13bb0 7afcecc55bc1792057ba38deba70ee66e3f923a7
.tls 0x94000 0x10 0 d41d8cd98f00b204e9800998ecf8427e da39a3ee5e6b4b0d3255bfef95601890afd80709
.rdata 0x95000 0x18 512 fee615ac2b41f98cf70e90657e1b4b02 4ecd96fcc5c8aca70a750ca36428897bf7f00b7f
.reloc 0x96000 0x6c18 28160 c638737c7cb076f18cdf00b537a65b06 23594edb712572fc01d0c1b4739325222a1bb314
.rsrc 0x9d000 0x35288 218112 903afe125a610b016dd3903bfcf31bcf 217f399ed3c41a4b9b1d645df81fca554c779604
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Borland Delphi 3.0 (???)
Borland Delphi 4.0
Borland Delphi v3.0
Borland Delphi v6.0 - v7.0
BobSoft Mini Delphi -> BoB / BobSoft
File found
FIle type: Library
Mapi32.dll
USER32.dll
comctl32.dll
ADVAPI32.dll
OLEPRO32.DLL
IMM32.dll
GDI32.dll
OLEAUT32.dll
ole32.dll
KERNEL32.dll
comdlg32.dll
vcltest3.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-12-03 08:42:08