Ofamxvd-Cheat-4.exe

First submission 2022-07-31 17:47:02

File details

File type: PE32+ executable (GUI) x86-64 Mono/.Net assembly, for MS Windows
File type: 5218.5 KB (5343744 bytes)
Compile time: 2048-12-25 00:32:07
MD5: 8b558c047dd8c4866e8d6fbeb1bd4ff3
SHA1: 2dca13233dfc22bc8be5c6fd4a6a33c56cde251e
SHA256: cc9c7d4e3c3e89432102ac84f4399402c9759b1889a5c9f5982a5b50fb17dea9
Sections 2 .text .rsrc
Directories 2 resource debug
Virus Total: 20/71 VT report date: 2022-07-31 14:48:13

File features detected

Is DLL

Packers

Anti Debug

Anti VM

Signed

XOR

URLs, FQDN and IP indicators 1

URL Host (FQDN/IP) Date Added
hXXp://141.98.6.236/Cheat-Menu/Ofamxvd-Cheat-4.exe VirusTotal Report 141.98.6.236 VirusTotal Report 2022-07-31 17:47:02

PE Sections 1 suspicious

Name VAddress VSize Size SHA1 MD5 Suspicious
.text 0x2000 0x508b00 5278720 57132585d606f46ea66c56df0157c256899fee03 b4eab5e04a3ea8152f1c5fe65c3a6928
.rsrc 0x50c000 0xfb4c 64512 4f49628fdcab9dde47ec416c406822170242f124 f3fdc3a1434435b0760e1f740ac2e4ed

PE Resources 4

Name Language Sublanguage Offset Size Data
RT_ICON LANG_NEUTRAL SUBLANG_NEUTRAL 0x512498 36816
RT_GROUP_ICON LANG_NEUTRAL SUBLANG_NEUTRAL 0x51b478 146
RT_VERSION LANG_NEUTRAL SUBLANG_NEUTRAL 0x51b51c 1070
RT_MANIFEST LANG_NEUTRAL SUBLANG_NEUTRAL 0x51b95c 490

Meta infos 12

OriginalFilename: Ofamxvd-Cheat-4.exe
Assembly Version: 10.0.17763.1
Translation: 0x0000 0x04b0
InternalName: Ofamxvd-Cheat-4.exe
FileVersion: 10.0.17763.1
LegalTrademarks:
ProductVersion: 10.0.17763.1
FileDescription: Task Manager Launcher
LegalCopyright: \xa9 Microsoft Corporation. All rights reserved.
Comments: Task Manager Launcher
ProductName: Microsoft\xae Windows\xae Operating System
CompanyName: Microsoft Corporation

Packers detected 2

Microsoft Visual C++ vx.x DLL
Microsoft Visual C++ v6.0