taitry.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 20/71 Related 2772
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 90.00 KB (92160 bytes)
Compile time: 2053-04-05 20:32:37
MD5: ce9f6a2e17f13bbdee6191fb038715c3
SHA1: 60306fefdccc2b9ded8a42ee38e86ef6194a5cba
SHA256: eb013554d1974463ef9845bc5fae8916d95e332366dea304425f9573dc188f64
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 4 import resource debug relocation
First submission: 2019-12-15 07:39:05
Last submission: 2019-12-15 07:39:05
Filename detected: - taitry.exe (1)
URL file hosting
hXXp://heptaforce.com/redteam/taitry.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-12-14 11:01:26 [20/71] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x15c44 89600 2b5130476b7574a62d3fe6db854f7ed7 615bb9de5224dc9842ed4ffce409e4fe2f8e3bea
.rsrc 0x18000 0x5ec 1536 6738bf8cb66b3f78894fccb3293e7b33 52a220919bc63eb273bbf8582ec0da4d61ae1205
.reloc 0x1a000 0xc 512 bc4c8506e7f96fbf596a136023444b7a 9637c02e322008f3923127a037717f63d6b6bf20
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
http://ns.adobe.com/xap/1.0/sType/ResourceRef#
http://www.mail.tusa
http://ns.adobe.com/xap/1.0/mm/
http://ns.adobe.com/xap/1.0/
http://www.w3.org/1999/02/22-rdf-syntax-ns#

#infosec #automation

TheSystem Itself @ 2019-12-15 07:39:07