emm.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 40/70 Related 2627
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 762.00 KB (780288 bytes)
Compile time: 2019-02-11 12:56:26
MD5: 80df4c7f24c8ffe1f5fd1569c2abf247
SHA1: 709feb94ae213290a672391dfd4b227b87c8039a
SHA256: 6e766437feadb8ec344f7498c117db05160338295be0631488e86eb894f43ae4
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-10-21 02:48:12
Last submission: 2019-10-21 02:48:12
Filename detected: - emm.exe (1)
URL file hosting
hXXp://1990.duckdns.org:50/emm.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-20 14:18:09 [40/70] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xbbde4 769536 7a976f6850cfb885a075aca3e09af987 98b7136f0482fcf87cd275878854d5853affe012
.rsrc 0xbe000 0x2586 9728 d4ca40a21cdd662400620cb6abaa212a 47a0e35a7b5e0ec22c6814650f8e6fb27365c459
.reloc 0xc2000 0xc 512 12b3aeaab60ea035714985e9572e39ce f2c9c8185448ce25b14fd1519b4d71c2fd942ff4
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
2.2.3.10
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-10-21 02:48:12