donsimon.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 25/66 Related 2132
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 395.00 KB (404480 bytes)
Compile time: 2005-08-24 07:39:45
MD5: f63065c14f5e3ef60f3ee1572139c37b
SHA1: db7623fe04ababa748c4efb74636cc8c0b3a8c66
SHA256: 9971c4887e08214ee16e8cb213d8bd44aa86b9a873be1caabecd97d79063e770
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 3 import resource relocation
First submission: 2018-10-24 17:18:03
Last submission: 2018-10-24 17:18:03
Filename detected: - donsimon.exe (1)
URL file hosting
hXXp://6cameronr.ga/donsimon.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2018-10-23 14:36:57 [25/66] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x61f64 401408 87b8186158990984b256af0da56a32a1 fabcf2e30726969b59f787cf50823b5c546f8f72
.rsrc 0x64000 0x630 2048 b00cc32885ee3651236add47c910c968 038ec54fdcca5bf181fe543712d7a42358aa7752
.reloc 0x66000 0xc 512 5533cbbefd33d4a1e6e696e27f6604dd afd862c41db6a85ef99b654c4c86011c2c590805
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
USER32.dll
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2018-10-24 17:18:18