todd.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 47/69 Related 2790
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 134.50 KB (137728 bytes)
Compile time: 2019-11-19 00:39:17
MD5: f832b862d9f25b28e4282e2a06f6eaab
SHA1: 893a0728f6ebfb22fffc568a7f1480221234c464
SHA256: 5cdfb7506671b54ba2aa06ca79ed345b0f7454dc8376673c6928cbaa09d98243
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 2 .text .reloc
Directories 2 import relocation
First submission: 2019-11-22 03:36:03
Last submission: 2019-11-22 03:36:03
Filename detected: - todd.exe (1)
URL file hosting
hXXp://[www].teorija.rs/storage/app/todd.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-11-20 10:22:59 [47/69] VirusTotal
PE Sections 2 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x21474 136704 8f8160d6063a655664754849771754a9 efe61cf16ab7e6eb6a58345e1e7010fd2e23fe9e
.reloc 0x24000 0xc 512 d5d55bbc97ddeb4f58f24ca82da8d86e 8f5c5bc1b8534b6f765ee332e4c2ce08f064c13f
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C# / Basic .NET
Microsoft Visual Studio .NET
.NET executable
Microsoft Visual C# v7.0 / Basic .NET
File found
FIle type: Library
mscoree.dll
32.dll
IP Found
No IP detected
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2019-11-22 03:37:04