cabify.mp3

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 40/69 Related 2476
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 82.50 KB (84480 bytes)
Compile time: 2019-09-06 14:18:43
MD5: e151dae6b2f1533a3c6b1fe2dde4106f
SHA1: a4ea6d96ba31511ff42d67f3e1639617daa8fdb0
SHA256: e5b3c0b126374f0533b68fe867381a7bfa59d68c82a05170377af24977510b7d
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 4 import resource debug relocation
First submission: 2019-09-11 05:27:03
Last submission: 2019-09-11 05:27:03
Filename detected: - cabify.mp3 (1)
URL file hosting
hXXp://storage.googleapis.com/wzukusers/user-34654398/documents/5d725096f3991ZckUGai/cabify.mp3VirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-09-10 13:30:41 [40/69] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x13a44 80896 eb39b9c471ca28e5d233f0f676293cd6 d28cfb609f4cd48ca449693bf14b688df7222219
.rsrc 0x16000 0x848 2560 083c944911b0c1ca08c94d30218a893a 6d44d958a3a7acbc0c5483eeeabd4e42a468ab18
.reloc 0x18000 0xc 512 1c410d5a1e8fd9f3b677948b2acb3f8e 357aac988449c0620cc61503a06a5275b24ffbf5
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
KERNEL32.dll
IP Found
6.4.2.3
URL(s)
http://www.w3.org/2001/XMLSchema-instance

#infosec #automation

TheSystem Itself @ 2019-09-11 05:27:04