DTPageSet.exe

Is DLL Packer Anti Debug Anti VM Signed XOR
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386, for MS Windows
File size: 312.00 KB (319488 bytes)
Compile time: 2020-04-07 10:06:18
MD5: c9ca39773d9a9faaaea32cf220866c3a
SHA1: b87dce4aa94eb50e46f760829932961b3f4c7d96
SHA256: 165ce89c48b95511d60d5fb20e98b15a4a6f2963a53930d3d5eab12c7ab0acdf
Import hash: 49519598a9a712336b298ddda6aca13c
Sections 5 .text .rdata .data .rsrc .reloc
Directories 4 import resource debug relocation
Anti Virtual Machine 2 VMCheck.dll Bochs & QEmu CPUID Trick
First submission: 2020-06-25 17:54:08
Last submission: 2020-06-25 17:54:08
Filename detected: - DTPageSet.exe (1)
URL file hosting
hXXp://download.xp666.com/xzqswf/DTPageSet.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 0 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x1000 0x3cc22 249344 8e6698f0f0625a5fd58180161a3200f9 d1941b451d837b970cee0022c911049703ff85d1
.rdata 0x3e000 0xca64 52224 ce5cfe2e72beee65247d9c53cb388d27 ec0242b21ea31b510e3b51ce3c292cbccca88b1f
.data 0x4b000 0x311c 2048 264be14bfd1af2b3b48df4fd92a544de 3df1310418c7b3365e8ddd0ebc25c573a20e3e56
.rsrc 0x4f000 0x7d0 2048 52b086f34f1fd8bcda8bd8f7d9a097ed 82f6453bc612c335e008d0677fb817ad9a71b691
.reloc 0x50000 0x31fc 12800 06908d5f3aecdd1c224608b7a36a9ba6 65a230424786eeb2c15d0114fbded1141054308b
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C++ 8
VC8 -> Microsoft Corporation
File found
FIle type: Library
WS2_32.DLL
WININET.dll
ADVAPI32.dll
urlmon.dll
msvcr100.dll
KERNEL32.dll
WLDAP32.dll
IP Found
1.3.7.2
URL(s)
ftp://
http://d.1230578.com/DTConfig.ini
file://
ftp://%s:%s@%s
http://curl.haxx.se/docs/http-cookies.html

#infosec #automation

TheSystem Itself @ 2020-06-25 17:54:09