fscan64.exe

First submission 2024-02-04 18:37:31

File details

File type: PE32+ executable (console) x86-64 (stripped to external PDB), for MS Windows
Mime type: application/x-dosexec
File size: 362.81 KB (371520 bytes)
Compile time: 1970-01-01 01:00:00
MD5: 07152bc9fee6b72bb717f588ffb8bd10
SHA1: ed49b45149076e0ba35609c9a16c4ca27221fbb7
SHA256: 9757e66e3e01be9c344d531a01a536c9c6128bebfa3b0a1c41c66432a971bc74
Sections 3 UPX0 UPX1 UPX2
Directories 1 import
Virus Total:

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://47.99.151.68:1302/fscan64.exe VirusTotal Report 47.99.151.68 VirusTotal Report 2024-02-04 18:37:31

PE Sections 2 suspicious

Name VAddress VSize Size SHA1 MD5 Suspicious
UPX0 0x1000 0x1148000 0 da39a3ee5e6b4b0d3255bfef95601890afd80709 d41d8cd98f00b204e9800998ecf8427e
UPX1 0x1149000 0x52d000 5426176 04659d3dcb29a2339ec6f43da79021056c2f9243 1006ebbf806700e2d5921bbdd0dcddb8
UPX2 0x1676000 0x1000 512 da39a3ee5e6b4b0d3255bfef95601890afd80709 d41d8cd98f00b204e9800998ecf8427e

Strings analysis - File found

Data
-.Dat