fern.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 50/69 Related 2779
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 471.00 KB (482304 bytes)
Compile time: 2019-11-15 03:29:46
MD5: 917b7f47d0744951f84374b60cddd341
SHA1: 4abe3cea2117a12f310a0d116122f8e5820700f4
SHA256: e02aed1544c351c39b691a9464f6954ed7d078743faa127f379912b8e1829863
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-03-09 21:45:06
Last submission: 2020-03-09 21:45:06
Filename detected: - fern.exe (1)
URL file hosting
hXXp://khunnapap.com/js/moment/fern.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-21 09:21:56 [50/69] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x74fa4 479232 eefe1baf84cca6986fcfc48644105bc3 e31db2d9d936c534a56f7166ce95b1a238e992d1
.rsrc 0x78000 0x800 2048 19f061a61495474ad819326e07aca8ec 738fd0392cd58607e1989c3d348491c3d430c5b3
.reloc 0x7a000 0xc 512 d81fc2d6966404a14203a8ccc2248a31 564ff6bce96e5ed86d3bce18524d1f2476ba06d4
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-03-09 21:45:07