× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 05b25ca8247b058040d20ee02bc74b555a1a89f75480ac8d58ea02cab54679fe
File name: jfiphone4ssjmn_dwj.zip
Detection ratio: 35 / 52
Analysis date: 2014-05-12 11:23:46 UTC ( 4 years, 10 months ago ) View latest
Antivirus Result Update
Ad-Aware Backdoor.Generic.793950 20140512
Yandex Backdoor.Agent!FxVc3sQh+m4 20140511
AntiVir BDS/Rogue.793950 20140512
Avast Win32:Malware-gen 20140512
AVG BackDoor.Agent.AVJQ 20140512
Baidu-International Backdoor.Win32.Agent.AI 20140512
BitDefender Backdoor.Generic.793950 20140512
Commtouch W32/Agent.EW.gen!Eldorado 20140512
Comodo UnclassifiedMalware 20140512
DrWeb Trojan.DownLoader9.11755 20140512
Emsisoft Backdoor.Generic.793950 (B) 20140512
ESET-NOD32 a variant of Win32/FlyStudio 20140512
F-Prot W32/Agent.EW.gen!Eldorado 20140512
F-Secure Backdoor.Generic.793950 20140512
Fortinet W32/Agent.DCFY!tr.bdr 20140512
GData Backdoor.Generic.793950 20140512
Ikarus Backdoor.Win32.BlackHole 20140512
K7AntiVirus Backdoor ( 004514321 ) 20140509
K7GW Backdoor ( 004514321 ) 20140509
Kaspersky Backdoor.Win32.Agent.dcfy 20140512
Kingsoft VIRUS_UNKNOWN 20140512
McAfee Artemis!EA1381B2E23B 20140512
McAfee-GW-Edition Artemis!EA1381B2E23B 20140512
eScan Backdoor.Generic.793950 20140512
NANO-Antivirus Trojan.Win32.Agent.bvgwpj 20140512
Norman Siscos.O 20140512
nProtect Backdoor.Generic.793950 20140511
Panda Trj/Downloader.MDW 20140512
Rising PE:Trojan.Win32.Generic.15861DC4!361110980 20140507
Sophos AV Mal/Generic-S 20140512
Symantec WS.Reputation.1 20140512
TrendMicro-HouseCall TROJ_GE.83F91A5D 20140512
VBA32 BScope.HackTool.Sniffer.WpePro 20140512
VIPRE Trojan.Win32.Generic!BT 20140512
Zillya Backdoor.Agent.Win32.49747 20140511
AegisLab 20140512
AhnLab-V3 20140512
Antiy-AVL 20140512
Bkav 20140512
ByteHero 20140512
CAT-QuickHeal 20140512
ClamAV 20140512
CMC 20140512
Jiangmin 20140512
Malwarebytes 20140512
Microsoft 20140512
Qihoo-360 20140512
SUPERAntiSpyware 20140511
TheHacker 20140510
TotalDefense 20140512
TrendMicro 20140512
ViRobot 20140512
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
5
Uncompressed size
4196594
Highest datetime
2013-11-07 15:18:04
Lowest datetime
2012-12-14 10:31:10
Contained files by extension
url
2
txt
1
exe
1
Contained files by type
unknown
3
directory
1
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
10

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
????iPhone4S??????/

ZipBitFlag
0

ZipModifyDate
2013:11:07 15:18:04

File identification
MD5 63c5d7b7007aaa1bc9c33accd8ff67ce
SHA1 424b80dea88be2dabea0f26aa9a7e8830dc6aa52
SHA256 05b25ca8247b058040d20ee02bc74b555a1a89f75480ac8d58ea02cab54679fe
ssdeep
49152:QqDFNRNyQyBPtOeLlsFaLh6LPuf76IxTTD5UpT9oi0rJ+ofLLOPggS:H5NRNLydtDlsKJvTWl9qRLLaq

File size 2.5 MB ( 2635940 bytes )
File type ZIP
Magic literal
Zip archive data, at least v1.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2014-05-12 11:23:46 UTC ( 4 years, 10 months ago )
Last submission 2014-05-12 11:23:46 UTC ( 4 years, 10 months ago )
File names JFIPHONE4SSJMN_DWJ.ZIP
jfiPhone4Ssjmn_dwj.zip
jfiphone4ssjmn_dwj.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!