11.exe

Is DLL Packer Anti Debug Anti VM Signed XOR
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386, for MS Windows
File size: 888.00 KB (909312 bytes)
Compile time: 2020-05-29 17:08:45
MD5: b18e53bb27f7c270cadfa062c8c9330a
SHA1: a472e5ba842817df057cad53a1934d5b91617032
SHA256: 1314a12570bef72ff76b05764456120c10b32b9c6a22df24e6874951abaa6092
Import hash: 7c9ab28555f1f7a8177bcd344314b4d5
Sections 8 .text .rdata .data .rsrc .ujjc .tyuk .lyps .rquh
Directories 2 import resource
First submission: 2020-06-18 09:33:05
Last submission: 2020-06-18 09:33:05
Filename detected: - 11.exe (1)
URL file hosting
hXXp://tldrbox.top/11.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x1000 0xbccc 48640 5780cc97d0812ae5de03499a09bb98c1 4f9b80490ec48627c8256ce32caa89083f352ae1
.rdata 0xd000 0x93a 2560 0c149cb4cbe6a267dd35a460b9af0544 61a3be0b35f7c80064916439a269d414d605ef5b
.data 0xe000 0x6279 13312 d676dbdb78710302ae216b62e6f35263 92fb9dca20f78df669c9cbfbd37263ccf8dba4ef
.rsrc 0x15000 0x39b0 14848 2d5da436b2df9de138316fc15f05d94b 3dd8ff46527a652f0a1a159b6b0789f9f1c23b72
.ujjc 0x19000 0x4000 16384 73d32027d5f72da4043f5b80c8f42221 9b7270c45570351173a0a3efc48c18373799b7ab
.tyuk 0x1d000 0xc5000 806912 d71a3d80f5ccdeb2e2f09f8b500fa5a7 2a68ae2235a555c962e29ea38c0164e420f1cbf9
.lyps 0xe2000 0x1256 4608 564f779429fdd0c0fbb819283ef678a1 0e6a3b95c048ca686d5b08be2bb7c7c6db71d58a
.rquh 0xe4000 0x1000 1024 e8cb8a176efae54ae36693da0edb4ac2 f441cbc977d31fcc0f2913df7637472d4f147062
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
No packers found for this file
File found
FIle type: Library
IMAGEHLP.dll
OLEACC.dll
USER32.dll
SHLWAPI.dll
GDI32.dll
gdiplus.dll
KERNEL32.dll
OLEAUT32.dll
VERSION.dll
oledlg.dll
comctl32.dll
WINMM.dll
SHELL32.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-06-18 09:33:07