× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 0b5328a06da5934e5cae70a15f3a61f18b0ebe03be299169926ca7a24f6a1932
File name: 101608
Detection ratio: 0 / 57
Analysis date: 2016-04-02 15:21:49 UTC ( 3 years ago ) View latest
Antivirus Result Update
Ad-Aware 20160402
AegisLab 20160402
AhnLab-V3 20160402
Alibaba 20160401
ALYac 20160402
Antiy-AVL 20160402
Arcabit 20160402
Avast 20160402
AVG 20160402
Avira (no cloud) 20160402
AVware 20160402
Baidu 20160402
Baidu-International 20160402
BitDefender 20160402
Bkav 20160402
CAT-QuickHeal 20160401
ClamAV 20160402
CMC 20160401
Comodo 20160402
Cyren 20160402
DrWeb 20160402
Emsisoft 20160402
ESET-NOD32 20160402
F-Prot 20160402
F-Secure 20160402
Fortinet 20160401
GData 20160402
Ikarus 20160402
Jiangmin 20160402
K7AntiVirus 20160402
K7GW 20160402
Kaspersky 20160402
Kingsoft 20160402
Malwarebytes 20160402
McAfee 20160402
McAfee-GW-Edition 20160402
Microsoft 20160402
eScan 20160402
NANO-Antivirus 20160402
nProtect 20160401
Panda 20160402
Qihoo-360 20160402
Rising 20160402
Sophos AV 20160402
SUPERAntiSpyware 20160402
Symantec 20160331
Tencent 20160402
TheHacker 20160330
TotalDefense 20160402
TrendMicro 20160402
TrendMicro-HouseCall 20160402
VBA32 20160401
VIPRE 20160402
ViRobot 20160402
Yandex 20160316
Zillya 20160401
Zoner 20160402
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
4211414
Highest datetime
2008-04-15 13:16:12
Lowest datetime
2008-04-15 13:16:12
Contained files by extension
exe
1
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x488056e9

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
4211414

ZipCompressedSize
4102538

FileTypeExtension
zip

ZipFileName
magic_recovery_demo.exe

ZipBitFlag
0

ZipModifyDate
2008:04:15 13:16:12

Execution parents
File identification
MD5 3f87237b780d1e0833a558a4137c0090
SHA1 bf659f29faab8ec1efeda4cb68a52a50c7a80c1d
SHA256 0b5328a06da5934e5cae70a15f3a61f18b0ebe03be299169926ca7a24f6a1932
ssdeep
98304:OWDR3GHinYBv4phncEVo0X1I/0P9SIELDXPtM:X7nYV4pPVo0l204i

File size 3.9 MB ( 4102682 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2010-12-16 17:28:59 UTC ( 8 years, 4 months ago )
Last submission 2016-06-16 18:12:35 UTC ( 2 years, 10 months ago )
File names 101608
28562-658580-magic-recovery-professional.zip
1345644578-magic_recovery_demo.exe
Magic Recovery Professional 3.5 demo preview only.zip
magic_recovery_demo.zip
magic-recovery-professional.zip
Magic Recovery Professional 3.5 demo Portable.zip
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!