DHL%20AWB.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 18/71 Related 2749
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 327.50 KB (335360 bytes)
Compile time: 2019-11-18 11:56:08
MD5: c217929222a6e56b008083779a740436
SHA1: 59492446ca840480ca2aab4a8ffaa82172993d97
SHA256: 1688a4161ae0292575ff27c65fd33047642b4e4c31b0af825940f277365699e2
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-20 03:15:10
Last submission: 2019-11-20 03:15:10
Filename detected: - DHL%20AWB.exe (1)
URL file hosting
hXXp://curly-yoron-0282.sunnyday.jp/DHL%20AWB.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-18 12:50:15 [18/71] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x50684 329728 80a88bbfad3bf0bc9e763a66049649d3 a113158ca0fdf630b28811aa01993091c90662b3
.rsrc 0x54000 0x1188 4608 2c7c50f4d9982de8584779f89a7a6f46 9010f77d571ea764db8abb3ee47bc93968840f73
.reloc 0x56000 0xc 512 847743f2b0d65b4fc84c7b90f5c3db89 d07bd5f016770d0a4cc4bd3e0aa3b7f0e5d7f789
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-20 03:16:12