Rina_Updater.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2796
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 42.00 KB (43008 bytes)
Compile time: 2049-08-16 08:38:41
MD5: 9f30a7874c486a25e16bfb617026961e
SHA1: ab431597b35b345614dd1a3b5ede93c7b269a410
SHA256: 04ee0e18496b5ef30c0dec1ffc41425317e90f794f66fd8b65e495a2801b7809
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 4 import resource debug relocation
First submission: 2020-10-09 09:03:05
Last submission: 2020-10-09 09:03:05
Filename detected: - Rina_Updater.exe (1)
URL file hosting
hXXp://185.126.178.243/data/Rina_Updater.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x61a0 25088 18285c8d2c1f8040ccb0979e200eda51 3b544885660d4b20a4f8a9984ae5da873cb3c267
.rsrc 0xa000 0x41a4 16896 996dc3e9cb9e9a4004a9a3e2a02a5158 c76e1d10e20f0c6d7ceb7572a5b5277ce15bab8b
.reloc 0x10000 0xc 512 90f1e65a51427bdbcd11bc66e4443616 3bb2d77664762612343d5c7f0df39ffc05514649
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
185.126.178.243
URL(s)
http://185.126.178.243/data/Rina.Client.exe

#infosec #automation

TheSystem Itself @ 2020-10-09 09:03:06