× Cookies sind ausgeschaltet! Diese Seite erfordert aktivierte Cookies, um vollständig zu funktionieren.
SHA256: e5663768bcbb1f421433b651a2b0299d8146bf5ffd3a86e4927ec3ef1f2427b4
Dateiname: Audomate-4.8.317.exe
Erkennungsrate: 0 / 50
Analyse-Datum: 2014-02-16 20:51:39 UTC ( vor 4 Jahre, 10 Monate )
Antivirus Ergebnis Aktualisierung
Ad-Aware 20140216
Yandex 20140216
AhnLab-V3 20140216
AntiVir 20140216
Antiy-AVL 20140216
Avast 20140216
AVG 20140216
Baidu-International 20140216
BitDefender 20140216
Bkav 20140214
ByteHero 20140216
CAT-QuickHeal 20140216
ClamAV 20140216
CMC 20140213
Commtouch 20140215
Comodo 20140216
DrWeb 20140216
Emsisoft 20140216
ESET-NOD32 20140216
F-Prot 20140215
F-Secure 20140216
Fortinet 20140216
GData 20140216
Ikarus 20140216
Jiangmin 20140216
K7AntiVirus 20140214
K7GW 20140214
Kaspersky 20140216
Kingsoft 20140216
Malwarebytes 20140216
McAfee 20140216
McAfee-GW-Edition 20140216
Microsoft 20140216
eScan 20140216
NANO-Antivirus 20140216
Norman 20140216
nProtect 20140216
Panda 20140216
Qihoo-360 20140216
Rising 20140216
Sophos AV 20140216
SUPERAntiSpyware 20140216
Symantec 20140216
TheHacker 20140214
TotalDefense 20140216
TrendMicro 20140215
TrendMicro-HouseCall 20140215
VBA32 20140214
VIPRE 20140216
ViRobot 20140216
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Dieter Pohl

Publisher diepol.de
File version 4.8.317
Description Audomate MP3 DJ Datenbank
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2000-04-25 14:37:12
Entry Point 0x000021AF
Number of sections 4
PE sections
PE imports
AdjustTokenPrivileges
LookupPrivilegeValueA
OpenProcessToken
GetDeviceCaps
SelectPalette
SelectObject
PatBlt
CreateFontA
CreatePalette
GetStockObject
TextOutA
CreateSolidBrush
SetBkMode
DeleteObject
RealizePalette
SetTextColor
StretchDIBits
GetLastError
lstrlenA
GlobalFree
FreeLibrary
ExitProcess
GetVersionExA
GlobalUnlock
GetModuleFileNameA
LoadLibraryA
WinExec
OpenFile
GetCurrentProcess
_lwrite
lstrcatA
GetWindowsDirectoryA
SetErrorMode
_llseek
GetCommandLineA
GetProcAddress
_lread
GetTempPathA
_lcreat
_lclose
GetModuleHandleA
lstrcpyA
_lopen
MulDiv
GetTempFileNameA
GlobalLock
LocalFree
GlobalAlloc
FormatMessageA
DrawTextA
CreateWindowExA
RegisterClassA
LoadIconA
LoadCursorA
ReleaseDC
EndPaint
BeginPaint
MessageBoxA
ExitWindowsEx
SendMessageA
GetClientRect
SetTimer
SetWindowPos
PostQuitMessage
DefWindowProcA
ShowWindow
UpdateWindow
wsprintfA
GetDC
InvalidateRect
PE exports
Number of PE resources by type
RT_ICON 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 3
PE resources
ExifTool file metadata
UninitializedDataSize
0

InitializedDataSize
5632

ImageVersion
4.0

FileVersionNumber
4.8.317.0

terPohl
XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

LinkerVersion
6.0

XXXX
|,LegalCopyright

CharacterSet
Windows, Latin1

XXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
,FileDescription

MIMEType
application/octet-stream

FileVersion
4.8.317

TimeStamp
2000:04:25 15:37:12+01:00

FileType
Win32 EXE

PEType
PE32

FileAccessDate
2014:02:16 21:52:09+01:00

omateMP3DJDatenbank
XXXXXXXXXXXXXXXXX

SubsystemVersion
4.0

OSVersion
4.0

FileCreateDate
2014:02:16 21:52:09+01:00

FileOS
Windows 16-bit

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
diepol.de

CodeSize
8704

FileSubtype
0

ProductVersionNumber
4.8.317.0

EntryPoint
0x21af

ObjectFileType
Executable application

File identification
MD5 a4c02dd561a9ea0d86952bf4683bc9ca
SHA1 9569c9f285cb0a787ea4fa1a66dc8bf644e6c8b1
SHA256 e5663768bcbb1f421433b651a2b0299d8146bf5ffd3a86e4927ec3ef1f2427b4
ssdeep
196608:KQ52esqRchxnSN1EU901YPE8l5893jr//c5uzeMrolnNQnuuuFZ/S0aIJdIVde:KQ2eDShxI1tZ5893Hc5uRob8Vub/PD

imphash 5318cd03ef5b5da86800f1483484cfd0
File size 13.0 MB ( 13636179 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Wise Installer executable (94.4%)
Win32 Executable MS Visual C++ (generic) (3.7%)
Win32 Dynamic Link Library (generic) (0.7%)
Win32 Executable (generic) (0.5%)
Generic Win/DOS Executable (0.2%)
Tags
peexe

VirusTotal metadata
First submission 2014-02-16 20:51:39 UTC ( vor 4 Jahre, 10 Monate )
Last submission 2014-02-16 20:51:39 UTC ( vor 4 Jahre, 10 Monate )
Dateinamen Audomate-4.8.317.exe
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

Symantec reputation Suspicious.Insight
Keine Kommentare. Bisher hat kein Mitglied der VirusTotal-Community einen Kommentar zu diesem Punkt verfasst, seien Sie der Erste!

Hinterlassen Sie Ihren Kommentar...

?
Kommentar abschicken

Sie sind nicht angemeldet. Nur registrierte Nutzer können Kommentare hinterlassen, melden Sie sich an und sagen Sie etwas dazu!

Keine Bewertungen. Niemand hat diesen Punkt bisher bewertet, seien Sie der Erste!