ffffffff.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 34/69 Related 2708
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 12.00 KB (12288 bytes)
Compile time: 2019-09-09 17:31:33
MD5: f0c0b2b0679b88e798e2589e322cbcc2
SHA1: 04ace8a94c0aecab0916b865fdad1e451ff4ad85
SHA256: 5a2cfe9b2e4533855740eec06490eca2ad1c12519eb73cd58ce601f22bb79d17
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-09-12 05:27:04
Last submission: 2019-09-12 05:27:04
Filename detected: - ffffffff.exe (1)
URL file hosting
hXXp://[www].thingsfromthe90s.com/ffffffff.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-09-10 21:52:57 [34/69] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x25c4 9728 685062d38f79468807070a835360f652 4e3985ca6b5939dee4213cd476f3ecacb324e84a
.rsrc 0x6000 0x4d6 1536 d85ca0dc84961965b02fe883533b88ea 15e97bd6aeedbe48fa70ad7a7d0cefc7139fa531
.reloc 0x8000 0xc 512 b5c48a48adaae5098ddd36befce6b938 a371900692042bf3f21610f1cbf04d0481a2fb8a
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-09-12 05:27:06