elb.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 59/73 Related 2779
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 291.50 KB (298496 bytes)
Compile time: 2020-03-09 23:06:06
MD5: b90887616fc87b0d59a8185465a09470
SHA1: 4ed01d150f4bbd74c64a7395485a2506a7455a73
SHA256: 620c5a4806cd383adc8a53af067fc9e890bc707295db2a09091a181ee8790dbf
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-04-24 01:36:03
Last submission: 2020-04-24 01:36:03
Filename detected: - elb.exe (1)
URL file hosting
hXXp://onlinebuy24.eu/themes/classic/plugins/elb.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2020-04-23 16:02:35 [59/73] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x48434 296448 56463472dd3b98dead2ebc6e9bcada93 7d3c8bf08a330da6e44495c35c2dbf1c16f89640
.rsrc 0x4c000 0x308 1024 95eacd5eea56587a71a07bdd558eafa4 f45c22bcb27ca9e31035a19d370792c416d8cf28
.reloc 0x4e000 0xc 512 d954c348d44779a1e255ce561d377bab 23347e12bf2203a61bbb50dac27bfe52bd5fed52
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
USER32.dll
BCRYPT.DLL
psapi.dll
vaultcli.dll
mscoree.dll
IP Found
0.1.2.3
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-04-24 01:36:05