× Cookies sind ausgeschaltet! Diese Seite erfordert aktivierte Cookies, um vollständig zu funktionieren.
SHA256: e48fda9e44b18b62f4e65e0e4458cbb257494e19743af80174de02d8e1ded9e5
Dateiname: Pro%20Work.exe
Erkennungsrate: 0 / 55
Analyse-Datum: 2014-08-23 09:05:38 UTC ( vor 2 Jahre, 8 Monate ) Zeige Neueste
Antivirus Ergebnis Aktualisierung
Ad-Aware 20140823
AegisLab 20140823
Yandex 20140822
AhnLab-V3 20140822
AntiVir 20140823
Antiy-AVL 20140823
Avast 20140823
AVG 20140823
AVware 20140823
Baidu-International 20140823
BitDefender 20140823
Bkav 20140821
ByteHero 20140823
CAT-QuickHeal 20140823
ClamAV 20140822
CMC 20140822
Commtouch 20140823
Comodo 20140823
DrWeb 20140823
Emsisoft 20140823
ESET-NOD32 20140823
F-Prot 20140823
F-Secure 20140823
Fortinet 20140823
GData 20140823
Ikarus 20140823
Jiangmin 20140822
K7AntiVirus 20140822
K7GW 20140822
Kaspersky 20140823
Kingsoft 20140823
Malwarebytes 20140823
McAfee 20140823
McAfee-GW-Edition 20140822
Microsoft 20140823
eScan 20140823
NANO-Antivirus 20140823
Norman 20140823
nProtect 20140822
Panda 20140822
Qihoo-360 20140823
Rising 20140822
Sophos 20140823
SUPERAntiSpyware 20140823
Symantec 20140823
Tencent 20140823
TheHacker 20140822
TotalDefense 20140822
TrendMicro 20140823
TrendMicro-HouseCall 20140823
VBA32 20140822
VIPRE 20140823
ViRobot 20140823
Zillya 20140822
Zoner 20140822
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file.
FileVersionInfo properties
Copyright
Copyright © Microsoft 2014

Publisher Microsoft
Product Pro Work
Original name Pro Work.exe
Internal name Pro Work.exe
File version 1.0.0.0
Description Pro Work
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2014-08-22 23:18:37
Entry Point 0x0008D7CE
Number of sections 3
PE sections
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
NEUTRAL 1
PE resources
File identification
MD5 b1e94fcb3d1e46d4df99435c8ab67796
SHA1 68abc8bc35ee9eb6693837fbf515a38b69206f23
SHA256 e48fda9e44b18b62f4e65e0e4458cbb257494e19743af80174de02d8e1ded9e5
ssdeep
12288:iDLFuAF6+Vnms2MJ3cumORQivRVwHWD1B6Xq8GRnzm:iFN5VnmgWTKV/nzm

authentihash 986449bf48548afd0ce954dd850694948e156374e0495c9de7f4d9f13084d111
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 560.0 KB ( 573440 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (56.7%)
Win64 Executable (generic) (21.4%)
Windows Screen Saver (10.1%)
Win32 Dynamic Link Library (generic) (5.0%)
Win32 Executable (generic) (3.4%)
Tags
peexe assembly

VirusTotal metadata
First submission 2014-08-23 09:05:38 UTC ( vor 2 Jahre, 8 Monate )
Last submission 2014-08-23 09:05:47 UTC ( vor 2 Jahre, 8 Monate )
Dateinamen Pro Work.exe
Pro%20Work.exe
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
Keine Kommentare. Bisher hat kein Mitglied der VirusTotal-Community einen Kommentar zu diesem Punkt verfasst, seien Sie der Erste!

Hinterlassen Sie Ihren Kommentar...

?
Kommentar abschicken

Sie sind nicht angemeldet. Nur registrierte Nutzer können Kommentare hinterlassen, melden Sie sich an und sagen Sie etwas dazu!

Keine Bewertungen. Niemand hat diesen Punkt bisher bewertet, seien Sie der Erste!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
HTTP requests
DNS requests
TCP connections
UDP communications