chib.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 50/71 Related 2627
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 654.00 KB (669696 bytes)
Compile time: 2019-10-13 23:50:56
MD5: 9145aab253fc34e7f1f0e8db78a83555
SHA1: 026d3a23178d0d849a7c8d026f7fedd8993fa85c
SHA256: 853399bc33d500c38d41774caf66d6795354e6c85a68871a44ab4859d42f5660
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-10-21 02:39:05
Last submission: 2019-10-21 02:39:05
Filename detected: - chib.exe (1)
URL file hosting
hXXp://gessuae.ae/wp-includes/images/smilies/chib.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-17 20:52:34 [50/71] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xa2c54 667136 e015d035c6392549fdcb3183c40efdfa 462a69b18daa45cfc13153e712942aa159ed7a30
.rsrc 0xa6000 0x600 1536 40c9f46beeb0cbd0ef497c4df4583c50 34d54e0e61587d85c166756aef6cbf3485ed06b0
.reloc 0xa8000 0xc 512 53cb1e815e8061142ee790fa55db85e9 92f25e1ac712c57f9c6fc4e14da8f7e2ec48f344
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
1.8.8.8
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-10-21 02:39:05