tGccnnGzzbpqkM8.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 48/69 Related 2726
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 767.00 KB (785408 bytes)
Compile time: 2019-11-06 03:30:19
MD5: c057738c1bf9a7285eaddd00baa9629b
SHA1: 50d503f90dabc998fb0d8037b700d0b9ba761f62
SHA256: a648d22264ebc06dec3e6c6d6457635398de693a6fba392b0bcf865e44451841
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-20 03:51:10
Last submission: 2019-11-20 03:51:10
Filename detected: - tGccnnGzzbpqkM8.exe (1)
URL file hosting
hXXp://codework.business24crm.io/system1/tGccnnGzzbpqkM8.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-09 16:00:40 [48/69] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xbef84 782336 bb2cb204b4fc7c9f040de631321a0f7d e2bcfe7119d8ba2cc77df879100f76feced2eea9
.rsrc 0xc2000 0x800 2048 24504d339f078cfd3212d4015d78c995 d333e8756bba7d0fe64a8e09812fbd38f8818d54
.reloc 0xc4000 0xc 512 639c2eb1619a6440ca8d423bf62847ba ee7fb416c5cd3c6e09976203f41927d52a187572
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-20 03:52:12