newfile.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 50/70 Related 2714
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 1403.50 KB (1437184 bytes)
Compile time: 2000-05-17 01:13:53
MD5: f166343203558a26a88ca24e2895c497
SHA1: b75df79d3a65cd878936d2e3371224b1d1195600
SHA256: 9cec8bb4e7da1063a1a0d3ad1315291500db05201ffca6d16d00c0ab67e1764e
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2019-11-01 10:06:10
Last submission: 2019-11-01 10:06:10
Filename detected: - newfile.exe (1)
URL file hosting
hXXp://mr-uka.com/newfile.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-31 16:08:16 [50/70] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x15e274 1434624 0e84b1f2ee9dcc7ab128d292d4366a42 574808f961c1a5f542482d338b65d64afcb1ae15
.rsrc 0x162000 0x5e4 1536 46d6ac35bc73abf4ec6755417978f0bd 4425c91a56f5cb1cc6d1449b0a7d027aba2c4394
.reloc 0x164000 0xc 512 c2e98543b21106fdaba3b6c096658b06 3613fc4fc6e714ae1a62fa4cedda212ebbcd1b71
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Executable
&*.sO
FIle type: XML
System.Xml
FIle type: Library
mscoree.dll
IP Found
6.8.11.14
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-01 10:06:11