el.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 35/66 Related 2749
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 134.50 KB (137728 bytes)
Compile time: 2019-11-21 00:37:16
MD5: c14cb410df25802ad0cffd4a3b5688a8
SHA1: 5c32026c7d195c648d1a11b62bd34f740fb2460b
SHA256: ca6d815b7d45433efaac9183760790a4f5226ec88922395bd4b9103be8f9633c
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 2 .text .reloc
Directories 2 import relocation
First submission: 2019-11-21 19:06:03
Last submission: 2019-12-04 22:09:03
Filename detected: - el.exe (2)
URL file hosting
hXXp://[www].teorija.rs/storage/app/el.exeVirusTotal
hXXp://[www].teorija.rs/vendor/doctrine/inflector/tests/el.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-20 23:57:38 [35/66] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x21424 136704 cf2f0b32a99a2fa877667c0ef7def690 2237cd43ae2c178d0711546b135b5e6573376cf1
.reloc 0x24000 0xc 512 df7a6ec080e118fa9ddec7f3315e0e65 b5a1bfd33ea3582933af7457888ef595e832c184
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Executable
.Protocols.So
FIle type: Library
mscoree.dll
32.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-21 19:07:05