license.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 56/69
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386, for MS Windows
File size: 4014.50 KB (4110848 bytes)
Compile time: 2018-03-30 14:57:48
MD5: fb8feb2e1b2da21ae510e055e88c546d
SHA1: 45a156d47afdc2d1960a3e45d002b4258892f91e
SHA256: 71433cb276cb945e37fd58cc4c3d5117ac6f7371040a5ef964fad174dbe52269
Import hash: 253ca67d908384a17de6c31d5796dda8
Sections 7 .text .rdata .data .gap .kumiguc .rsrc .reloc
Directories 3 import resource relocation
First submission: 2020-01-13 18:42:04
Last submission: 2020-01-13 18:42:04
Filename detected: - license.exe (1)
URL file hosting
hXXp://lincolnaward.org/wp-content/themes/genesis/license.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-10-07 23:49:43 [56/69] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x1000 0xfa7d 64512 856ddcd2727e03984663714ab74d25ec 4c9015e5d40871c365d5088527f1155f8746c35c
.rdata 0x11000 0x3bd300 3920896 8b7210dcf94a47451bb0672b11fea201 e39061fa77d7bc8e33290dd3eaa5205a7ce85929
.data 0x3cf000 0x31da360 98816 fcc1bbec0d4098469ee5bfaedc6e716c f03c8eef730bfc325c51e885da138ed061499821
.gap 0x35aa000 0x64 512 bf619eac0cdf3f68d496ea9344137e8b 5c3eb80066420002bc3dcc7ca4ab6efad7ed4ae5
.kumiguc 0x35ab000 0x1064 1024 0f343b0931126a20f133d67c2b018a3b 60cacbf3d72e1e7834203da608037b1bf83b40e8
.rsrc 0x35ad000 0x4810 18944 67fa5c8500737a4edfd842c0103ed925 6b322eb4d03a666c0e9bdb49222b558f7575c1b5
.reloc 0x35b2000 0x13f4 5120 5ddf43434c26f90d519d8d9533af3d70 d3252145adc8b93131b5bbaf0255ee19bc83d559
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
Microsoft Visual C++ 8
VC8 -> Microsoft Corporation
File found
FIle type: Library
mscoree.dll
USER32.dll
KERNEL32.dll
ADVAPI32.dll
IP Found
2.0.3.161
URL(s)
No URL found

#infosec #automation

TheSystem Itself @ 2020-01-13 18:42:06