rjfnc6mcj6oaux0.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 57/71 Related 2749
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 678.00 KB (694272 bytes)
Compile time: 2019-09-05 23:54:36
MD5: d3075074ea5db0e6da958f12e0dd15f6
SHA1: eac8d163d4821869502f2c785a0121b0815f988c
SHA256: 82f0e1396de9c8556d3f7c60e7fb8362f124bc61615829fb6d53bc8170ec90a3
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-12-02 16:09:04
Last submission: 2019-12-02 19:00:04
Filename detected: - rjfnc6mcj6oaux0.exe (4)
URL file hosting
hXXp://fs13n4.sendspace.com/dlpro/785e938a0412e80983385f128036ddb0/5d7425ef/ckbps9/rjfnc6mcj6oaux0.exeVirusTotal
hXXps://fs13n2.sendspace.com/dlpro/1e8c1cd8c02d5526e29b58a15ed1682f/5d768242/ckbps9/rjFNC6mcj6OAux0.exeVirusTotal
hXXps://fs13n1.sendspace.com/dlpro/630c67e319e56462fa783e6912fd76e8/5d743de9/ckbps9/rjFNC6mcj6OAux0.exeVirusTotal
hXXp://fs13n2.sendspace.com/dlpro/420c91b4b59cab211b713393caa97633/5d7425ed/ckbps9/rjfnc6mcj6oaux0.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-12-02 14:39:11 [57/71] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xa8d54 691712 89e9606f36bbce3f0c30260ac70a2bed 69f6af093b9e91c79bef0a1d3971c9262ae91014
.rsrc 0xac000 0x600 1536 7b508a53318a612ee27c8d963501c187 9db4f6f13090b110c4ee6adb4c5c220aa49c0c6c
.reloc 0xae000 0xc 512 6176ba0c74d442f62d46c5412960c5b4 89eff89775393ed5a75e25f7a658ae5ac49f6dfe
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
ModuleSearches.dll
mscoree.dll
IP Found
1.6.9.6
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-12-02 16:09:05