faye.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2777
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 752.00 KB (770048 bytes)
Compile time: 2019-11-14 06:36:52
MD5: d07804c2f30295f7ed20befb8a31e2bc
SHA1: 5da68c445284c10212a3b99c5e9c6a7fca9c0772
SHA256: 3f7f3871134432b6565c7e95a17a3480c1dcdd1ce575a3d10ad5003a889c933f
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-06-24 12:36:05
Last submission: 2020-06-24 12:36:05
Filename detected: - faye.exe (1)
URL file hosting
hXXp://mrtool.ir/wp-includes/faye.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xbb4e4 767488 fd9029e3005e15a0fcd81cb38b4f3974 76aa47d28301ba8eaf9f1c7647c4945c9498e3ff
.rsrc 0xbe000 0x600 1536 d02a915a3785eba7ce8c001903ac2121 31a5793f678fa2699ffd030f1dcaa0bc5bf619c9
.reloc 0xc0000 0xc 512 8a769c768a69d5a1c6a4d1b707c9adc0 a135a1777251c01a1a6f47fa607f33ebb8e937fb
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-06-24 12:36:07