× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 06f98ac46ad520c11e1c13b3961cab7514428fdf714169256b19208de79b9f05
File name: StarterWallpaperChanger.exe
Detection ratio: 0 / 42
Analysis date: 2010-03-12 09:30:33 UTC ( 7 years, 6 months ago ) View latest
Antivirus Result Update
a-squared 20100312
AhnLab-V3 20100311
AntiVir 20100311
Antiy-AVL 20100312
Authentium 20100312
Avast 20100311
Avast5 20100312
AVG 20100312
BitDefender 20100312
CAT-QuickHeal 20100312
ClamAV 20100312
Comodo 20100312
DrWeb 20100312
eSafe 20100311
eTrust-Vet 20100312
F-Prot 20100311
F-Secure 20100312
Fortinet 20100309
GData 20100312
Ikarus 20100312
Jiangmin 20100312
K7AntiVirus 20100311
Kaspersky 20100312
McAfee 20100311
McAfee+Artemis 20100311
McAfee-GW-Edition 20100312
Microsoft 20100312
NOD32 20100311
Norman 20100311
nProtect 20100312
Panda 20100311
PCTools 20100312
Prevx 20100312
Rising 20100312
Sophos AV 20100312
Sunbelt 20100312
Symantec 20100312
TheHacker 20100312
TrendMicro 20100312
VBA32 20100311
ViRobot 20100312
VirusBuster 20100311
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright 2009

Product StarterWallpaperChanger
Original name Starter Wallpaper Changer.exe
Internal name Starter Wallpaper Changer.exe
File version 1.0.0.0
Description StarterWallpaperChanger
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2009-12-01 12:11:56
Entry Point 0x00006F7E
Number of sections 3
.NET details
Module Version ID e90b3ca0-06b4-459e-ad64-c644ecf1e27a
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 2
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 5
PE resources
ExifTool file metadata
SubsystemVersion
4.0

LinkerVersion
8.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
1.0.0.0

UninitializedDataSize
0

LanguageCode
Neutral

FileFlagsMask
0x003f

CharacterSet
Unicode

InitializedDataSize
16384

EntryPoint
0x6f7e

OriginalFileName
Starter Wallpaper Changer.exe

MIMEType
application/octet-stream

LegalCopyright
Copyright 2009

FileVersion
1.0.0.0

TimeStamp
2009:12:01 13:11:56+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
Starter Wallpaper Changer.exe

ProductVersion
1.0.0.0

FileDescription
StarterWallpaperChanger

OSVersion
4.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CodeSize
20480

ProductName
StarterWallpaperChanger

ProductVersionNumber
1.0.0.0

FileTypeExtension
exe

ObjectFileType
Executable application

AssemblyVersion
1.0.0.0

Execution parents
PE resource-wise parents
Compressed bundles
File identification
MD5 31ef42f935d0d04c03723e929558d6dd
SHA1 cc269300de06416e1b666e504239fabd55855a7d
SHA256 06f98ac46ad520c11e1c13b3961cab7514428fdf714169256b19208de79b9f05
ssdeep
384:8OiLevP96uMLdLqTDcTDXKX0o5qb9ywuNU7e2LqTDwI:8OiRKc9y6e+

authentihash 197c8e42db10e5d41f83bd059a0a8336235a4299b621e8497bf40f281ffdd50d
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 40.0 KB ( 40960 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (62.0%)
Win64 Executable (generic) (23.3%)
Win32 Dynamic Link Library (generic) (5.5%)
Win32 Executable (generic) (3.8%)
Win16/32 Executable Delphi generic (1.7%)
Tags
peexe assembly via-tor

VirusTotal metadata
First submission 2009-12-03 23:24:53 UTC ( 7 years, 9 months ago )
Last submission 2017-08-02 11:08:36 UTC ( 1 month, 3 weeks ago )
File names smona131670695130225892177
Win7 Starter Wallpaper Changer.exe
file-677708_exe
s.exe
StarterWallpaperChanger_1.0%28dobreprogramy.pl%29.exe
Starter%20Wallpaper%20Changer
9916239
StarterWallpaperChanger.exe
Starter Wallpaper Changer [1].exe
smona131145421501682791613
output.9916239.txt
smona131498806135512854272
smona131480631065348306437
SWC.exe
smona131430908563705228657
StarterWallpaperChanger.exe
wallpaper.exe
smona131238639296959395917
smona130801655728386006623
filename
Starter Wallpaper Changer (1).exe
Wallpaper_aendern.exe
starter wallpaper changer.exe
smona_06f98ac46ad520c11e1c13b3961cab7514428fdf714169256b19208de79b9f05.bin
99E91EB500FCA767A0E3003919BF5A0068C3DF19.exe
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!