× Cookies sind ausgeschaltet! Diese Seite erfordert aktivierte Cookies, um vollständig zu funktionieren.
SHA256: 86a429c81e82e807ce1b354d967d2957180af9f829afee14d8dea62a86aa0adf
Dateiname: w.exe
Erkennungsrate: 12 / 55
Analyse-Datum: 2017-01-23 08:31:26 UTC ( vor 1 Jahr, 10 Monate ) Zeige Neueste
Antivirus Ergebnis Aktualisierung
Baidu Win32.Trojan.WisdomEyes.16070401.9500.9999 20170123
CrowdStrike Falcon (ML) malicious_confidence_100% (D) 20161024
Cyren W32/MSIL_Injector.CW.gen!Eldorado 20170123
DrWeb Trojan.DownLoader23.48516 20170123
ESET-NOD32 a variant of MSIL/Injector.REO 20170123
Fortinet MSIL/Injector.REJ!tr 20170123
Sophos ML trojan.win32.skeeyah.a!rfn 20170111
Kaspersky HEUR:Trojan.Win32.Generic 20170123
McAfee GenericRXAO-DD!84317C065810 20170123
McAfee-GW-Edition GenericRXAO-DD!84317C065810 20170123
Qihoo-360 HEUR/QVM03.0.0000.Malware.Gen 20170123
Symantec ML.Attribute.VeryHighConfidence [Heur.AdvML.B] 20170122
Ad-Aware 20170123
AegisLab 20170123
AhnLab-V3 20170123
Alibaba 20170122
ALYac 20170123
Antiy-AVL 20170123
Arcabit 20170123
Avast 20170123
AVG 20170123
Avira (no cloud) 20170123
AVware 20170123
BitDefender 20170123
CAT-QuickHeal 20170123
ClamAV 20170123
CMC 20170123
Comodo 20170123
Emsisoft 20170123
F-Prot 20170123
F-Secure 20170123
GData 20170123
Ikarus 20170122
Jiangmin 20170123
K7AntiVirus 20170123
K7GW 20170123
Kingsoft 20170123
Malwarebytes 20170123
Microsoft 20170123
eScan 20170123
NANO-Antivirus 20170123
nProtect 20170123
Panda 20170122
Rising 20170123
Sophos AV 20170123
SUPERAntiSpyware 20170123
Tencent 20170123
TheHacker 20170117
TrendMicro 20170123
TrendMicro-HouseCall 20170123
Trustlook 20170123
VBA32 20170121
VIPRE 20170123
ViRobot 20170123
WhiteArmor 20170122
Yandex 20170122
Zillya 20170120
Zoner 20170123
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © The OpenVPN Project

Product OpenVPN
Original name openvpn.exe
Internal name OpenVPN
File version 2.3.14.0
Description OpenVPN Daemon
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2017-01-22 23:34:34
Entry Point 0x000FC3A3
Number of sections 3
.NET details
Module Version ID 2ca457e4-ebcb-49a0-bffd-8ed523455351
PE sections
Overlays
MD5 359fe2f33100b662a8aa3c3b1fb155aa
File type ASCII text
Offset 1095168
Size 45064
Entropy 0.00
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 13
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 15
PE resources
ExifTool file metadata
UninitializedDataSize
0

InitializedDataSize
69632

ImageVersion
0.0

ProductName
OpenVPN

FileVersionNumber
2.3.14.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
OpenVPN Daemon

CharacterSet
Unicode

LinkerVersion
8.0

FileTypeExtension
exe

OriginalFileName
openvpn.exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
2.3.14.0

TimeStamp
2017:01:23 00:34:34+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
OpenVPN

ProductVersion
2.3.14.0

SubsystemVersion
4.0

OSVersion
4.0

FileOS
Windows NT 32-bit

LegalCopyright
Copyright The OpenVPN Project

MachineType
Intel 386 or later, and compatibles

CompanyName
The OpenVPN Project

CodeSize
1025024

FileSubtype
0

ProductVersionNumber
2.3.14.0

EntryPoint
0xfc3a3

ObjectFileType
Dynamic link library

File identification
MD5 84317c065810b0c29dcbc60d793946f8
SHA1 32f33107f51efa8aadfbcb530c5865f8064bbb63
SHA256 86a429c81e82e807ce1b354d967d2957180af9f829afee14d8dea62a86aa0adf
ssdeep
24576:j9YtuxVhvHCmtVld5hiJ4u2MugNyG4f+FlePkmSwlX:ai6ELdbIDNugNyJPkZ

authentihash 91d27caf31fac2a88fc63d7771b180439f66a42ce2c1540d36511938843b76a1
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 1.1 MB ( 1140232 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (63.1%)
Win64 Executable (generic) (23.8%)
Win32 Dynamic Link Library (generic) (5.6%)
Win32 Executable (generic) (3.8%)
Generic Win/DOS Executable (1.7%)
Tags
peexe assembly overlay

VirusTotal metadata
First submission 2017-01-23 08:31:26 UTC ( vor 1 Jahr, 10 Monate )
Last submission 2017-01-24 18:09:03 UTC ( vor 1 Jahr, 10 Monate )
Dateinamen openvpn.exe
sdfgsdfg.exe
df.exe
LuminosityLink rat.exe
bnmray.txt
adobegamma.exe
OpenVPN
w.exe
Advanced heuristic and reputation engines
Keine Kommentare. Bisher hat kein Mitglied der VirusTotal-Community einen Kommentar zu diesem Punkt verfasst, seien Sie der Erste!

Hinterlassen Sie Ihren Kommentar...

?
Kommentar abschicken

Sie sind nicht angemeldet. Nur registrierte Nutzer können Kommentare hinterlassen, melden Sie sich an und sagen Sie etwas dazu!

Keine Bewertungen. Niemand hat diesen Punkt bisher bewertet, seien Sie der Erste!