obii.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 61/73 Related 2790
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 281.00 KB (287744 bytes)
Compile time: 2020-02-27 12:44:21
MD5: ad5097306bf51e8919d55edd5a67fe11
SHA1: e9e312d4ac2fbd7b1596da2bf33f273cea628284
SHA256: 699ec0837db891a7e2673105f738d2e05b6da26161d3743511ba720cd01bf62b
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-04-17 00:30:05
Last submission: 2020-04-17 00:30:05
Filename detected: - obii.exe (1)
URL file hosting
hXXp://inapadvance.com/wp-content/plugins/woocommerce/includes/files/obii.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2020-04-03 03:23:13 [61/73] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x45a74 285696 5b366d7969781994e21e1fb69b2cfaba a0687f1e882685490aec61f714f70d04b39c084f
.rsrc 0x48000 0x308 1024 9d4e923530df4003028f23c330b4d41a 2b92b21658d9307a5d39707ba70249e17ce31cb6
.reloc 0x4a000 0xc 512 01c4de79c6fd8df15f6d76db18010ce7 c753497b5a9359381ae260c17f7341082ed6c6fc
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
USER32.dll
psapi.dll
vaultcli.dll
mscoree.dll
IP Found
0.1.2.3
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-04-17 00:30:06