shaco.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 41/68 Related 2708
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 473.50 KB (484864 bytes)
Compile time: 1997-06-07 23:47:31
MD5: 86bf633c6d81a838f6350da169dd6d8a
SHA1: 40a64ae0fedb7abb1b6fb0792436557f68d1f30b
SHA256: 5fad0816c625df524d5ea3807440c4ca2bbce6232d9c460d0e3ae50ec9525b82
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2018-10-26 04:51:19
Last submission: 2018-10-26 04:51:19
Filename detected: - shaco.exe (1)
URL file hosting
hXXp://princessbluepublishing.com/sites/shaco.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2018-10-21 13:17:00 [41/68] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x758d4 481792 5d303acb0e3138674188f2633c600553 262a978a8af9bbe6cfd57b79397d4fa187822ec9
.rsrc 0x78000 0x648 2048 e6b73adaa46e63660af7e420c334f041 5a4cc8dd7cf32b78e4b93a422e014a7499679388
.reloc 0x7a000 0xc 512 8b6573e4ef6ada4efbbbd00665f94f32 53c985b97c7666c393eb9164c54b239a95676049
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
7.1.32.4
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2018-10-26 04:51:34