abo.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 36/71 Related 2779
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 280.50 KB (287232 bytes)
Compile time: 2019-12-09 12:20:42
MD5: ae5e538bce61962ccfa366e2a0e5e913
SHA1: 2b765b826ad16adb5165fd060ddad952d5a95267
SHA256: 2386216940be9ad0f0846429d1c0929fb366749cb43c6a672513f5938ff79b2d
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-12-10 11:09:03
Last submission: 2019-12-10 11:09:03
Filename detected: - abo.exe (1)
URL file hosting
hXXp://[www].teorija.rs/storage/framework/abo.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-12-09 11:47:42 [36/71] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x45624 284672 ed13e2bdb234af764b878731f36a9664 84662df47ea5a9008f9aed4c57a0bdd5a25c8c5a
.rsrc 0x48000 0x508 1536 0176f21b706e89ef156f9d3d9ed23bb0 46c21fc786e5073a4d14a4089abc883d05bd6092
.reloc 0x4a000 0xc 512 aaf38792a995769dd6838b5f09866b72 e9da7933f9685f2090d624c6e4f0c50ce54198d8
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
USER32.dll
psapi.dll
mscoree.dll
vaultcli.dll
IP Found
0.1.2.3
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-12-10 11:09:04