milk.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 36/68 Related 2714
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 212.00 KB (217088 bytes)
Compile time: 2019-10-29 17:15:30
MD5: b6fb59b629ff7361ca59bc57d44b3ffe
SHA1: 24ffe3043b12a6db42cae02a6f46e213e3012fce
SHA256: 38df39b8f59e65ddfc8558b554ed8449815e2a1da263911f5fa5adc610101ae5
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-03 19:33:09
Last submission: 2019-11-03 19:33:09
Filename detected: - milk.exe (1)
URL file hosting
hXXp://zimshop.co.za/wp/wp-admin/milk.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-30 13:57:40 [36/68] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x227d4 141312 8df86f0c66ef937f62f931222497abe3 e22fc49634196abb3a20a697675e2059965b73c2
.rsrc 0x26000 0x12258 74752 a00c9609d141f2ed3f3da261ec2db7c5 a5030c0d592f42176429afd6ccc7b59629ef3c32
.reloc 0x3a000 0xc 512 5d2d9e3f2c97f64bd467a9bca4b2fcb3 832b9459bedf04e29041bd92de60dd44f898fae3
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
http://api.twitter.com/1.1/account/update_profile_image.xml
http://api.twitter.com/1.1/trends/available.xml
http://api.twitter.com/1.1/{0}/{1}/subscribers/{2}.xml
http://api.twitter.com/1.1/account/verify_credentials.xml
http://api.twitter.com/1.1/statuses/retweet/{0}.xml
http://api.twitter.com/1.1/{0}/lists/subscriptions.xml
http://api.twitter.com/1.1/{0}/{1}/members.xml
http://api.twitter.com/1.1/report_spam.xml
http://api.twitter.com/1.1/statuses/home_timeline.xml
http://api.twitter.com/1.1/account/update_profile.xml
http://api.twitter.com/1.1/{0}/lists/memberships.xml
http://api.twitter.com/1.1/favorites/destroy/{0}.xml
http://api.twitter.com/1.1/favorites/create/{0}.xml
http://api.twitter.com/1.1/users/show.xml
http://api.twitter.com/1.1/statuses/friends_timeline.xml
http://api.twitter.com/1.1/favorites.xml
http://twitter.com/statuses/retweeted_to_me.xml
http://api.twitter.com/1.1/statuses/show/{0}.xml
http://api.twitter.com/1.1/blocks/blocking/ids.xml
http://api.twitter.com/1.1/friendships/create/{0}.xml
http://api.twitter.com/1.1/friends/ids.xml
http://api.twitter.com/1.1/statuses/update.xml
http://api.twitter.com/1.1/direct_messages/destroy/{0}.xml
http://api.twitter.com/1.1/{0}/{1}/subscribers.xml
http://api.twitter.com/1.1/statuses/public_timeline.xml
http://api.twitter.com/1.1/statuses/friends.xml
http://api.twitter.com/1.1/direct_messages/new.xml
http://api.twitter.com/1.1/statuses/mentions.xml
http://api.twitter.com/1.1/direct_messages.xml
http://api.twitter.com/1.1/statuses/retweets/id.xml
http://api.twitter.com/1.1/statuses/destroy/{0}.xml
http://api.twitter.com/1.1/users/search.xml
http://api.twitter.com/1.1/blocks/create/{0}.xml
http://api.twitter.com/1.1/direct_messages/sent.xml
http://api.twitter.com/1.1/{0}/lists/{1}.xml
http://api.twitter.com/1.1/blocks/destroy/{0}.xml
http://api.twitter.com/1.1/{0}/lists/{1}/statuses.xml
http://api.twitter.com/1.1/statuses/retweets_of_me.xml
http://api.twitter.com/1.1/{0}/{1}/members/{2}.xml
http://api.twitter.com/1.1/statuses/replies.xml
http://api.twitter.com/1.1/blocks/blocking.xml
http://api.twitter.com/1.1/{0}/lists.xml
http://api.twitter.com/1.1/statuses/user_timeline.xml
http://api.twitter.com/1.1/friendships/destroy/{0}.xml
http://api.twitter.com/1.1/statuses/retweeted_by_me.xml
http://api.twitter.com/1.1/statuses/followers.xml
http://api.twitter.com/1.1/followers/ids.xml
FIle type: Library
USER32.dll
mscoree.dll
IP Found
2.17.12.7
3.9.2.6
URL(s)
http://api.twitter.com/1.1/statuses/show/
http://api.twitter.com/1.1/account/update_profile_image.xml
http://api.twitter.com/1.1/account/verify_credentials.xml
http://api.twitter.com/1.1/statuses/update.xml
http://api.twitter.com/1.1/statuses/retweeted_by_me.xml
http://api.twitter.com/1.1/blocks/destroy/
http://twitter.com/statuses/retweeted_to_me.xml
http://api.twitter.com/1.1/statuses/home_timeline.xml
http://search.twitter.com/trends/current.json
http://api.twitter.com/1.1/account/update_profile.xml
http://api.twitter.com/1.1/statuses/retweet/
http://api.twitter.com/1.1/
http://api.twitter.com/1.1/friendships/destroy/
http://api.twitter.com/1.1/blocks/create/
http://api.twitter.com/1.1/statuses/friends_timeline.xml
http://api.twitter.com/1.1/statuses/destroy/
http://api.twitter.com/1.1/favorites.xml
http://api.twitter.com/1.1/favorites/destroy/
http://api.twitter.com/1.1/blocks/blocking/ids.xml
http://api.twitter.com/1.1/direct_messages/destroy/
http://api.twitter.com/1.1/favorites/create/
http://api.twitter.com/1.1/friends/ids.xml
http://api.twitter.com/1.1/statuses/retweets_of_me.xml
http://api.twitter.com/1.1/statuses/public_timeline.xml
http://search.twitter.com/trends/weekly.json
http://api.twitter.com/1.1/statuses/friends.xml
http://api.twitter.com/1.1/direct_messages/sent.xml
http://api.twitter.com/1.1/direct_messages/new.xml
http://api.twitter.com/1.1/statuses/mentions.xml
http://api.twitter.com/1.1/direct_messages.xml
http://api.twitter.com/1.1/statuses/retweets/id.xml
http://api.twitter.com/1.1/trends/
http://api.twitter.com/1.1/statuses/followers.xml
http://search.twitter.com/search.atom
http://api.twitter.com/1.1/users/search.xml
http://api.twitter.com/1.1/friendships/show.xml?
http://search.twitter.com/trends/daily.json
http://api.twitter.com/1.1/trends/available.xml
http://api.twitter.com/1.1/users/show.xml
http://api.twitter.com/1.1/statuses/replies.xml
http://api.twitter.com/1.1/blocks/blocking.xml
http://api.twitter.com/1.1/statuses/user_timeline.xml
http://api.twitter.com/1.1/followers/ids.xml
http://api.twitter.com/1.1/friendships/create/
http://search.twitter.com/trends.json
http://api.twitter.com/1.1/report_spam.xml

#infosec #automation

TheSystem Itself @ 2019-11-03 19:33:09