bm.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 41/68 Related 2476
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 497.00 KB (508928 bytes)
Compile time: 2019-09-06 09:53:25
MD5: 5c811c15e7d32e2791c113cc83a6963e
SHA1: 409d9ed25935851112a0a6a1edea167899f5bf41
SHA256: 7a2c8d50a0be5281036cd672c6bb7685c12b51ba9008ef04a7d4ddcaac76c023
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-09-09 01:15:06
Last submission: 2019-09-09 01:15:06
Filename detected: - bm.exe (1)
URL file hosting
hXXp://lmvadvogados.com.br/wp-content/upgrade/bm.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-09-07 15:12:30 [41/68] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x7b904 506368 e037975457db12957a141596da5e6fba 742d188502cf0f84fbdfc530f0ccdc16ff7c20fb
.rsrc 0x7e000 0x600 1536 b7e6a36b9230ca5cad7d4afcd97969e6 738472277680d2bb72c09ecbbb10c2540ea21eee
.reloc 0x80000 0xc 512 8c28a7b977e495b4b02c26082e7b5641 fe4959c0497a30037cc745229f96578e40dd87c5
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
ModuleSearches.dll
mscoree.dll
IP Found
1.6.9.6
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-09-09 01:15:07