MalScore
100/100

RederictBind.exe

Is DLL Packer Anti Debug Anti VM Signed XOR AntiVirus 48/66 Related 2616
File details Download PDF Report
File type: PE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
File size: 491.00 KB (502784 bytes)
Compile time: 2048-10-21 19:11:55
MD5: fcc248bdb9b56bdd926a13bbff61fadd
SHA1: 45bf684e6add3acf6fd8b3e8f6e923195f7994d7
SHA256: e7b175e7b4e579fe314e56c1a195a937c0e7780fbc0f3def13b7dae08560000f
Import hash: f34d5f2d4577ed6d9ceec516c1f5a744
Sections 3 .text .rsrc .reloc
Directories 4 import resource debug relocation
First submission: 2019-04-23 18:00:06
Last submission: 2019-04-27 20:42:06
Filename detected: - RederictBind.exe (2)
URL file hosting
hXXp://cassovia.sk/uploads/max/RederictBind.exeVirusTotal
hXXp://[www].cassovia.sk/uploads/max/RederictBind.exeVirusTotal
Antivirus Report
Report Date Detection Ratio Permalink Update
2019-04-22 13:08:48 [48/66] VirusTotal
PE Sections 1 suspicious
Name VAddress VSize Size MD5 SHA1
.text 0x2000 0x7a024 500224 8f13da328bae216f80eb921ea2ce7e4e 9d6d3b9c99d7f8988e93a1440e27089050820ced
.rsrc 0x7e000 0x5fc 1536 819f43b437ab1eb828685547fbd94104 57046211aa852937e7aa868bcde99eb9402824cb
.reloc 0x80000 0xc 512 47acc3800e8c8093b10a9b16cefe1c45 0f647977256aba91443db85cdcc5a7e278d58873
Meta Info
No Meta found in this file
XOR
No XOR informations found in this file.
Signature
This file isn't digitally signed
Packer(s)
No packers found for this file
File found
FIle type: Library
mscoree.dll
IP Found
No IP detected
URL(s)
No URL found
Behavior analysis details
Machine name Machine label Machine manager Started Ended Duration
Seven05b_64 Seven05b_64 VirtualBox 2019-04-23 17:47:18 2019-04-23 17:50:16 178

0 Summary items with data

Files

Nothing to display

Read Files

Nothing to display

Write Files

Nothing to display

Delete Files

Nothing to display

Keys

Nothing to display

Read Keys

Nothing to display

Write Keys

Nothing to display

Delete Keys

Nothing to display

Mutexes

Resolved APIs

Nothing to display

Execute Commands

Nothing to display

Started Services

Nothing to display

Created Services

Nothing to display

#infosec #automation

TheSystem Itself @ 2019-04-23 18:00:07