SHA-256: b3b6085b6706ef90eadba2e48877677d06fa3a6df7c2df5c94773aa7e8b8c1df -
VT
SHA-1: 0666fc1169b5a707f0b063cb416995631e64f44a
File type: EXE/Windows
File size: 2.35 MB
File name: ATRToolUltimate1.0.exe
ProtectionID: [!] [.net scan core] dotNetReactor detected!
[!] [.net scan core] Confuser detected!
PDB/VBP pathway: c:\MyProjects\gitlab\ILProtector\ILProtector\Output2010\Win32\Release\Protect32.pdb
Compilation date: 2021-03-17 01:41:00
First seen: 2021-03-17 02:11:08
Name: ATRToolUltimate 1.0
Actor: titusking@criptext.com
Additional note: Seem similar to
06f40072750772663041e71e3c22b14471894a8433441f41d901095b0393ebfd (EMVToolUltimate 1.0)
Screenshot:
Mirror provided by vx-underground.org, thx!
(infected)