pov.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 34/70 Related 2726
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 282.50 KB (289280 bytes)
Compile time: 2019-11-19 00:02:13
MD5: 68d5e925c2b5378e211ad6b7568ac684
SHA1: 5069d9c67437f91f4e5bfdd722e9183f7022832e
SHA256: 7e2f1b92a10242d4d012dc7aedb3dec06be625bc8b735f2f3daaf5600aea5572
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-22 14:09:03
Last submission: 2019-11-22 14:09:03
Filename detected: - pov.exe (1)
URL file hosting
hXXp://[www].teorija.rs/storage/app/pov.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-19 01:56:51 [34/70] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x45f44 286720 963328e49384b1b884ca8d8546846d1e 563d28b6c2429cea22a6515d1b1a65d980525cd0
.rsrc 0x48000 0x508 1536 6acdfce1a7001f66a748bd0440570562 2cc90bff4c7a8be869f2a06cded4f99b15f13ffb
.reloc 0x4a000 0xc 512 e3bbe152a2b81a6e1f24b9032cc8de2c 788309ba1720398d773aaa860b1b855ecc8e9436
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
USER32.dll
mscoree.dll
psapi.dll
vaultcli.dll
IP Found
0.1.2.3
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-22 14:09:04