Crypted.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2790
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 247.50 KB (253440 bytes)
Compile time: 2020-06-08 00:52:43
MD5: 9be28563810dae9c0c747e6dcd9aa7ae
SHA1: 8b18f8aceda27741a9c1760b6fb49134019d5f3b
SHA256: 1cca33c129db5378e76c95d80d989373ddd042752e19a6ba3d2a6fa7dce4dd62
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-09-04 00:06:06
Last submission: 2020-09-04 00:06:06
Filename detected: - Crypted.exe (1)
URL file hosting
hXXp://abass.ir/templx/Crypted.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x3d384 250880 04f1fda54a0c574ff739599f853f2ffc 5cdb6ced9d7a3897f43455200c5a751e5ad1193c
.rsrc 0x40000 0x410 1536 3109629bfb6cd1f8ebeb33a8a3b0cde4 825d58afa39d7e8d407fc46eb702baa4e9bfd8fe
.reloc 0x42000 0xc 512 31b69cd42c91f1d0afa041b2d6011b71 4be5838a0b3f09719e63ec373fc024b7513544de
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
KERNEL32.dll
ntdll.dll
mscoree.dll
IP Found
1.0.0.8
1.0.1.1
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-09-04 00:06:08