help.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 50/70 Related 2708
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 140.50 KB (143872 bytes)
Compile time: 2019-07-29 12:59:59
MD5: 5f41ec27825870637f45ad2191a5f508
SHA1: 5bfcd302134a7e1f71bfc3b09e547d1c0eccbc42
SHA256: 723883566aa12d98076e72c282c79eac4862451a5753115de7626670cdb9592e
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 4 .text .sdata .rsrc .reloc
Directories 4 import resource debug relocation
First submission: 2019-09-08 06:36:04
Last submission: 2019-09-08 06:36:04
Filename detected: - help.exe (1)
URL file hosting
hXXp://sgpf.eu/support/microsoft/help.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-09-07 16:03:16 [50/70] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x1f894 129536 b1df5d15a1d7dd6d3b5a4c4b7ddb053e fae211ad17770469faaebe36a62ee5d5e0d6c94a
.sdata 0x22000 0x138 512 238d25c8c22ea23cc3d09b57fb746eff 222777a957f145e954e935534c0dace824159177
.rsrc 0x24000 0x2e40 12288 fede88ba178cd4d8f6705b19f19caf23 107d29eed3723515c5181b13b7ba80925ef7e63a
.reloc 0x28000 0xc 512 49e042f5d7399b9b7a8a0d5d6415b013 f1df23731957d883e7e8000faf02ffc1a1503d76
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-09-08 06:36:05