× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 10417ee7b81787271c65401c2250ae68ca768e5b3c84c70867e6a559cd33570e
File name: 86623
Detection ratio: 1 / 55
Analysis date: 2016-01-31 05:59:04 UTC ( 3 years, 3 months ago ) View latest
Antivirus Result Update
Ikarus Backdoor.ASP.Ace 20160129
Ad-Aware 20160130
AegisLab 20160130
Yandex 20160129
AhnLab-V3 20160129
Alibaba 20160129
ALYac 20160130
Antiy-AVL 20160130
Arcabit 20160130
Avast 20160130
AVG 20160130
Avira (no cloud) 20160130
Baidu-International 20160129
BitDefender 20160130
Bkav 20160129
ByteHero 20160131
CAT-QuickHeal 20160129
ClamAV 20160130
CMC 20160130
Comodo 20160130
Cyren 20160129
DrWeb 20160130
Emsisoft 20160130
ESET-NOD32 20160130
F-Prot 20160129
F-Secure 20160129
Fortinet 20160130
GData 20160130
Jiangmin 20160129
K7AntiVirus 20160129
K7GW 20160129
Kaspersky 20160129
Malwarebytes 20160130
McAfee 20160130
McAfee-GW-Edition 20160130
Microsoft 20160130
eScan 20160130
NANO-Antivirus 20160130
nProtect 20160129
Panda 20160129
Qihoo-360 20160131
Rising 20160129
Sophos AV 20160130
SUPERAntiSpyware 20160130
Symantec 20160129
Tencent 20160131
TheHacker 20160130
TotalDefense 20160129
TrendMicro 20160130
TrendMicro-HouseCall 20160130
VBA32 20160128
VIPRE 20160130
ViRobot 20160129
Zillya 20160130
Zoner 20160130
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
2
Uncompressed size
331274
Highest datetime
2003-07-15 18:06:34
Lowest datetime
2003-07-15 17:58:04
Contained files by extension
htm
1
exe
1
Contained files by type
unknown
1
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x916ad2b3

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
322560

ZipCompressedSize
307428

FileTypeExtension
zip

ZipFileName
money.exe

ZipBitFlag
0x0002

ZipModifyDate
2003:07:15 17:58:04

File identification
MD5 34425f46a17fd9db63dc7cf2498f8263
SHA1 b8bbd071936a277765d878ae3e098fe3e9e4306d
SHA256 10417ee7b81787271c65401c2250ae68ca768e5b3c84c70867e6a559cd33570e
ssdeep
6144:BL1xnA+Z94VlTO/Hh1zY7zLQ1bJ59O9gqR:hnfZ+bqf87z2xO9gY

File size 302.8 KB ( 310090 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe aspack zip

VirusTotal metadata
First submission 2006-05-25 02:03:43 UTC ( 13 years ago )
Last submission 2017-01-01 01:55:11 UTC ( 2 years, 4 months ago )
File names output.2205939.txt
money.zip
2205939
86623
1341995960-money.exe
money.zip
bUFgb.bz2
7b7f35810779803614f4a30b1458d2870486fec4
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!