emm.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 38/69 Related 2635
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 737.00 KB (754688 bytes)
Compile time: 1993-03-03 09:07:41
MD5: 65d3130346f13eec2ee510ba5a67d13d
SHA1: 80d94b8d077b17cbb72d093413c51a5192966b7c
SHA256: c517cd0dae1eaea3abb85f550e2b0301b478190ab4036dee02e2bfbf22f04916
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-09-08 18:24:05
Last submission: 2019-09-08 18:24:05
Filename detected: - emm.exe (1)
URL file hosting
hXXp://old-hita-2276.babyblue.jp/old/emm.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-09-06 11:37:30 [38/69] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xa6f04 684032 e67822cdffbf2c2ebb484f7ec9f1d8ee 675c240742c403199535db42253efd83bd2a7338
.rsrc 0xaa000 0x10e74 69632 3cabe43adf5c6ef081bab33d2788a820 09911a914ef733bb2f5850a896b463ea1196c57b
.reloc 0xbc000 0xc 512 7b1667ce1c4aa2d9d39afec324fcd3c8 1752a1039b6c47762af63281ab14cd4b5f4b4986
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-09-08 18:24:06