ord.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2777
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 634.50 KB (649728 bytes)
Compile time: 2019-10-18 00:28:26
MD5: 8fc1ae2c650dacf108c2725b75f36515
SHA1: 8bc4a0e00a0a43d1ea222bc33a0b78925d9adaeb
SHA256: 9c07edc02d5182033a99b954e0ad56221d63af45954fd9580e8bb3018deb1abb
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-06-24 08:54:08
Last submission: 2020-06-24 08:54:08
Filename detected: - ord.exe (1)
URL file hosting
hXXp://mrtool.ir/wp-admin/user/ord.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x9de24 647168 cdded30e3a9eb390e28401eeae357d1d 86ccc7ba0dc330b596e4474bb253d6750f0bf5d1
.rsrc 0xa0000 0x600 1536 71443a7865935693a5acafad069d7700 fba434f5fe91dcb17d9b5955bf6d4d88aca365fe
.reloc 0xa2000 0xc 512 dfda143e81919a38e9f1cdeac695e235 4e24426c87052541470b23235bc07e66ace53166
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
1.9.9.9
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-06-24 08:54:10