00.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 8/70 Related 2714
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 565.00 KB (578560 bytes)
Compile time: 2019-09-15 10:09:50
MD5: d541b892eb55ee1ba1799b0d88e6f434
SHA1: 9d3ee47acbb4d0e21a16d1ad44284cc68798e183
SHA256: 8f281f244678bdb8b576b47e1e080a25545e7582d9fa0ec632bad9d6aecb66c1
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-02 10:42:04
Last submission: 2019-11-02 10:42:04
Filename detected: - 00.exe (1)
URL file hosting
hXXp://ai4africa.org/00.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-31 11:14:14 [8/70] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x67ad4 424960 3796ccee535e137bd98ee63a4c4a32d2 2c134e2491308dc7ed77c95bb84f43ee96a96089
.rsrc 0x6a000 0x252dc 152576 77d18947281588e89fe3e5903e746310 b90f06dca70701a3dd8ee61e7b1bd90648e1f16f
.reloc 0x90000 0xc 512 49bfaa03835f781a3d6f6c86d3a2d325 c80d47e8498ae3f8c504f08b40898277863b0cad
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
http://schemas.microsoft.com/ado/2009/11/edm/ssdl
http://schemas.microsoft.com/ado/2007/12/edm/EntityStoreSchemaGenerator
http://schemas.microsoft.com/ado/2009/11/mapping/cs
http://schemas.microsoft.com/ado/2009/02/edm/annotation
http://schemas.microsoft.com/ado/2009/11/edm
http://schemas.microsoft.com/ado/2013/11/edm/customannotation

#infosec #automation

TheSystem Itself @ 2019-11-02 10:42:04