al.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 48/70 Related 2600
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 634.50 KB (649728 bytes)
Compile time: 2019-10-14 00:21:28
MD5: deb4c51d1441b64d73e0d4749216912a
SHA1: 22180cfecbb4d436c6903f93cae226e57e65e438
SHA256: 38f14638288df84d6a5014c998a9e6b1e7859676fbf7274d4bdda7d79e948e1d
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-10-21 02:54:05
Last submission: 2019-10-21 02:54:05
Filename detected: - al.exe (1)
URL file hosting
hXXp://gessuae.ae/wp-includes/images/smilies/al.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-16 16:05:56 [48/70] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x9df54 647168 d355702da5719d7c7df487868ed76cb7 4b8c6b09b79c154d7d8a76ae3ea36d0cae186587
.rsrc 0xa0000 0x600 1536 cc416eb0336a288bd67053030599a2eb 4032a731d5445c2d5ce5fc13cd5e9df6352a2481
.reloc 0xa2000 0xc 512 19ed2c575cae845bf2ac24a13643363a 48b5062cf4ea2026305919ef71e34080e9b61a19
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
1.8.8.8
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-10-21 02:54:05