newhost.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 15/66 Related 2708
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 393.00 KB (402432 bytes)
Compile time: 2019-09-03 10:31:26
MD5: 68906bd58062be03946b9b7a2c9a52df
SHA1: 6f40202cbfe52f7936c8a147ae40e6394b4ca46d
SHA256: a0e0068b39f399f519fb1607c509783b0bf98b206d07b9433898c8f25bb90158
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-09-09 07:48:07
Last submission: 2019-09-09 07:48:07
Filename detected: - newhost.exe (1)
URL file hosting
hXXp://aagaeyarintz.com/newhost.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-09-06 17:11:12 [15/66] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x61894 399872 6d75202cab59d6eb7aa8e5850b22baf1 18b360711417cfd454a3688ae7c0e34579f018c8
.rsrc 0x64000 0x5c0 1536 8845761baee9bae86a7d8134b89b1f9f 3a1e1eb349f45529741306cd91e629f5cec3839c
.reloc 0x66000 0xc 512 7e467f7e7359722f63b0e40c00fed3b9 bb1a52d190598b2ff38dbb8d9c29ada2e0cc91df
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
5.7.9.11
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-09-09 07:48:08