kud.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 16/50 Related 2714
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 371.00 KB (379904 bytes)
Compile time: 2019-11-07 23:16:52
MD5: c5d4a6bab0c32febd055f8e510071a94
SHA1: 3478a7452121a9433e6d45a44535bf883245e4de
SHA256: 3c9a01376a94a3801bc778e011aa36e2024e35f66b950b70450e8983c7b3e7f7
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-10 03:48:03
Last submission: 2019-11-10 03:48:03
Filename detected: - kud.exe (1)
URL file hosting
hXXp://[www].espace-developpement.org/calendar/kud.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-08 04:21:17 [16/50] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x5c014 377344 1fe720bfcdc906a607dea39e9798193d 60884ddfec9e0c792adb82896b39aedab1847b91
.rsrc 0x60000 0x600 1536 f9bacefacaea4433845276cd13c8bc31 7acada9a10c726e8b9737f1623f77d1acf8b0ec6
.reloc 0x62000 0xc 512 8657e1786073edb3d371a489c7c87e8e 353f3b6c49cba3769af88be009b53dd90ab1a4a5
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
7.3.0.1
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-10 03:48:05