WPsA5Ny

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 56/73 Related 2
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386, for MS Windows
File size: 424.43 KB (434618 bytes)
Compile time: 2020-01-21 17:43:23
MD5: 6e5d42d6e37ab16895c8197374da3bbd
SHA1: 040f87f7f73f5273b0e1d8ed5433d5cc9ed3d626
SHA256: a6381fc516860ce0c616f316f6d847cea7a0b10f6141a7738e993581320581c2
Import hash: c028bc9e2cfabf4597f192c72133e79a
Sections 4 .text .rdata .data .rsrc
Directories 3 import resource debug
Anti Virtual Machine 1 VMCheck.dll
First submission: 2020-02-13 12:09:11
Last submission: 2020-02-13 12:09:11
Filename detected: - WPsA5Ny (1)
URL file hosting
hXXp://goharm.com/wp-content/WPsA5Ny/VirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2020-02-11 09:18:47 [56/73] VirusTotal
PE Sections 0 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x1000 0x3eb40 258048 856c70d7b02e4e8d622945341b36e51e 27238059457eef9992fc80e4b102919364d86dbe
.rdata 0x40000 0xc05c 53248 09215451377db9c328abb27712a9b198 9f07485dc39d0edbd30b9487a2fcbc7ba4cd6a9a
.data 0x4d000 0x151c4 16384 64a2c43e81378cf71c36c298fe37c5b0 5c8126e1cb9c8f70a53b54ef34307f705a29a7d3
.rsrc 0x63000 0x183c8 102400 e9303aa70f45b2fe3d52e3fa95400aa4 3bab7b563019c155ccea235e543d3decf6664c04
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C++ 8
VC8 -> Microsoft Corporation
File found
FIle type: Log
%s.log
%s_%d.log
FIle type: Library
crypt32.dll
ntdll.dll
KERNEL32.dll
ADVAPI32.dll
OLEAUT32.dll
comdlg32.dll
USER32.dll
comctl32.dll
mscoree.dll
ole32.dll
GDI32.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-02-13 12:09:13