chi.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 29/72 Related 2777
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 750.50 KB (768512 bytes)
Compile time: 2020-03-24 23:38:26
MD5: f05c2049a015f262bd37bda03ed7b082
SHA1: da45882ce1a68c8c6482277e2d1d7b1a476cf288
SHA256: 7359a9ce8cfe89dbbbb54593bdfc42eaa118b540199157fa99ea0fb11a564a92
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .reloc .rsrc
Directories 3 import resource relocation
First submission: 2020-04-12 18:57:12
Last submission: 2020-04-12 18:57:12
Filename detected: - chi.exe (1)
URL file hosting
hXXp://kenareh-gostare-aras.ir/wp-admin/chi.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2020-03-25 11:25:02 [29/72] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0xbae3c 765952 83d0883f7fed216fdd18fed839e25391 c8002466d6b143d331a91c835cd44532d819a092
.reloc 0xbe000 0xc 512 d1a1aed55054c915dde37fe6c2b21ced 4aa039e0d9bc3eb7d819910607bfeb6fb0c1dc28
.rsrc 0xc0000 0x5a0 1536 55c4744df59c13f78854ced3be109eda ad717d48c7e5df831fbd456c092f3a6dede9491a
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: XML
System.Xml
FIle type: Library
Update Certifier.dll
USER32.dll
mscoree.dll
IP Found
No IP detected
URL(s)
http://www.w3.org/2001/XMLSchema
http://tempuri.org/Users.xsd

#infosec #automation

TheSystem Itself @ 2020-04-12 18:57:14