povv.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 49/71 Related 2777
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 280.50 KB (287232 bytes)
Compile time: 2019-11-28 08:25:44
MD5: e70eef0882c782f0555551a0ad55f3e4
SHA1: 35b0cca849de2ef846e831c33eb20415a7711d20
SHA256: f4b80fd2bdabaf8a824bc3c818732627bfdafbd74adf91d4555530c0b69647d1
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-12-04 22:24:03
Last submission: 2019-12-04 22:24:03
Filename detected: - povv.exe (1)
URL file hosting
hXXp://[www].teorija.rs/vendor/league/povv.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-12-04 16:00:48 [49/71] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x45664 284672 034895d15e8e96bb1151e7b2787b3750 03473783a5fe9552a5da1e4e36e58617ca7a9369
.rsrc 0x48000 0x510 1536 1c565d324961d43266fd19a5c2caa14a 9899202c1ef4fd991540c00c07c4cceb866834c2
.reloc 0x4a000 0xc 512 639dbd3dfb6caf8c3a36fee6f2dd57ab d339ca6a7c13a50e3b42523598ccc889c8d19b88
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
USER32.dll
psapi.dll
mscoree.dll
vaultcli.dll
IP Found
0.1.2.3
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-12-04 22:24:05