devwana.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 42/69 Related 2714
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 758.50 KB (776704 bytes)
Compile time: 1998-04-10 21:28:51
MD5: 87d0028b31094da1ac21d6d90cfd3cc9
SHA1: a06fea1a2d6e8bb0f7bf1fcefc19c37139e7f59d
SHA256: 241e55192aed5a4b2535e859571a13b506bfce4a983e46390f641b93f1650e29
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-01 09:15:04
Last submission: 2019-11-01 09:15:04
Filename detected: - devwana.exe (1)
URL file hosting
hXXp://terifaryd.com/devwana.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-30 15:38:40 [42/69] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xbcfa4 774144 5279d391b4eb9e20176f1bf768f7c9fe 99b6b353f3d81b9f8fa51b224eee86ee98c2c912
.rsrc 0xc0000 0x5cc 1536 e4ed6b9414a010e7f81f2c563f0b76ab cb2f1609f417c8db797436764becec1161ea6855
.reloc 0xc2000 0xc 512 ec7c186355cb00170bd32a4e89fc26dc fb1ecb34b7d88986388047b4a92ef69df3fc21f7
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
2.4.5.6
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-01 09:15:04