todd.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 54/71 Related 2728
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 282.00 KB (288768 bytes)
Compile time: 2019-12-01 22:46:14
MD5: 6feff3a8bf84aaa1364daedf7bfb72e6
SHA1: 3d428c810b487d9729e4c49802350930b04b2862
SHA256: 3d01ff473ee7f0b842e34003a92b7c862f7ffed9b16700c03e00de70c7c3e431
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-12-10 11:42:03
Last submission: 2019-12-10 11:42:03
Filename detected: - todd.exe (1)
URL file hosting
hXXp://[www].teorija.rs/storage/framework/todd.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-12-08 16:04:19 [54/71] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x45df4 286208 8634ac88b400e4e2fadb8d7a5e07a2a9 89ed916330bbb601cb83f95cc77962ec94784ffe
.rsrc 0x48000 0x520 1536 50a53df18f70d8503f2f1eb47e55c09f 2e1f4ad96724ba35637fd82ae49c2d9b42ebf249
.reloc 0x4a000 0xc 512 9c9525cc4e3fae4620037148c08ac74a 82ef05ad943a8d4740829873740ec5c950ba70a7
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
USER32.dll
psapi.dll
mscoree.dll
vaultcli.dll
IP Found
0.1.2.3
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-12-10 11:42:05