p_1200xadwx1.jpg

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 54/72 Related 2779
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 56.50 KB (57856 bytes)
Compile time: 2019-04-08 03:08:50
MD5: 82c482f8af3d699aeb51034dc506cd1c
SHA1: 1c65ce6be62627ee36db9c1b1d912297e6f99abe
SHA256: e8da9985457f46542b7f8c9c2e48f252f6f0d998223271a1bf073754fda2e8e3
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 4 .text .sdata .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-12-07 03:51:03
Last submission: 2019-12-07 03:51:03
Filename detected: - p_1200xadwx1.jpg (1)
URL file hosting
hXXp://f.top4top.net/p_1200xadwx1.jpgVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-12-06 13:58:16 [54/72] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xd474 54784 00c1e244346c69abef6477dda399d5f8 c81caf49f335732af72790eef81b86368a17236d
.sdata 0x10000 0xe2 512 62d19b53ae835c3dd9a16bce11922c21 f9627229c092c2bdf2ea30730b7c2dbddb04eaaf
.rsrc 0x12000 0x2f4 1024 0d8b04605b8ab4c849f9167686c899af b358b7a6c29fa04f9ce95ee8bf4efa14c57094ff
.reloc 0x14000 0xc 512 73cac05add88c286c49e586dd23fb1c6 8320ba0bb79e7623cb3e3c71c28eeb484ca5e7bd
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
AVICAP32.dll
KERNEL32.dll
IP Found
0.0.0.3
URL(s)
file:///

#infosec #automation

TheSystem Itself @ 2019-12-07 03:51:05