dekspro.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 32/53 Related 2714
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 520.50 KB (532992 bytes)
Compile time: 2019-11-06 23:08:10
MD5: c9bd088061a526f1f6c79fd2829c4722
SHA1: f8bfde9aedaa9e463b1289c6ed81ba9fa9485ce4
SHA256: 91c0ec6553fd629bab5fae8d6392d44f9af91ec583ae509a3bfebe66b5755f52
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-13 04:36:08
Last submission: 2019-11-13 04:36:08
Filename detected: - dekspro.exe (1)
URL file hosting
hXXps://tfvn.com.vn/mini/de/dekspro.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-12 19:07:05 [32/53] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x816e4 530432 3282327ecf210966d02ac20084e4c6b0 c5c768fa29a058ca45831b4938a51363ef50ff75
.rsrc 0x84000 0x600 1536 83ebf464a743454aefe4d844fdb163ce 1f465628c865075091af6cb30ddc4caff8ab175e
.reloc 0x86000 0xc 512 7edb36de39ad5647823b6242fa2d812b 51714d86b6b922875ed2ed6e905c86e277ad9aec
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-13 04:36:10