MalScore
76/100

linkscryy.exe

Is DLL Packer Anti Debug Anti VM Signed XOR Related 2779
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 453.65 KB (464541 bytes)
Compile time: 2020-02-18 20:50:11
MD5: d29b037f77b7d529c3fea52cc39f3b43
SHA1: 22db3884df0d3810b68d4eb7964c17444183f3f0
SHA256: 081fe935e13cd268bdc23246972520bf8e6e4e3bd3399bf90d117700ec964a31
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-04-06 20:33:13
Last submission: 2020-04-06 20:33:13
Filename detected: - linkscryy.exe (1)
URL file hosting
hXXp://ruianxiaofang.cn/wp-content/plugins/ggpgbbi/links/linkscryy.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
No report available
PE Sections 0 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x53214 340992 d66d5fb2a522443a8d0a0be0fe97cf2c 1617d2052038eb97f832b28ba4c35bf2ed4f0aea
.rsrc 0x56000 0x7736a 488448 4a2ffa6c89f5ee0956d5e055ceb6f2c8 2e3e33753d80c9daa0904a91e4335aa22e0f732a
.reloc 0xce000 0xc 512 d41d8cd98f00b204e9800998ecf8427e da39a3ee5e6b4b0d3255bfef95601890afd80709
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
Castle.Core.Configuration.Xml
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven03b_64 Seven03b_64 VirtualBox 2020-04-06 20:26:47 2020-04-06 20:27:10 23

3 Behaviors detected by system signatures

Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven03b_64 Seven03b_64 VirtualBox 2020-04-06 20:26:47 2020-04-06 20:27:10 23

0 Summary items with data

Files

Nothing to display

Read Files

Nothing to display

Write Files

Nothing to display

Delete Files

Nothing to display

Keys

Nothing to display

Read Keys

Nothing to display

Write Keys

Nothing to display

Delete Keys

Nothing to display

Mutexes

Resolved APIs

Nothing to display

Execute Commands

Nothing to display

Started Services

Nothing to display

Created Services

Nothing to display

#infosec #automation

TheSystem Itself @ 2020-04-06 20:33:15