× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 15d227195276dcf935ae72eba0b16875e72b9a4e1ca6fcef120b6091a70fc5cd
File name: leomoon-files2folders.zip
Detection ratio: 10 / 55
Analysis date: 2015-11-16 06:08:06 UTC ( 2 months, 3 weeks ago )
Antivirus Result Update
AVG Packed.AutoIt 20151116
AVware Trojan.Win32.Generic!BT 20151116
Agnitum Worm.Autoit.Gen 20151115
Baidu-International Hacktool.Win32.Autoit.C 20151115
Bkav HW32.Packed.9DA1 20151114
Comodo UnclassifiedMalware 20151115
ESET-NOD32 Win32/Packed.Autoit.C.Gen suspicious 20151116
NANO-Antivirus Riskware.Script.Obfuscated.dcoxnf 20151116
VBA32 Trojan.Autoit.F 20151114
VIPRE Trojan.Win32.Generic!BT 20151116
ALYac 20151116
AegisLab 20151115
AhnLab-V3 20151115
Alibaba 20151116
Antiy-AVL 20151116
Arcabit 20151116
Avast 20151116
Avira 20151115
BitDefender 20151116
ByteHero 20151116
CAT-QuickHeal 20151116
CMC 20151113
ClamAV 20151113
Cyren 20151116
DrWeb 20151116
Emsisoft 20151116
F-Prot 20151116
F-Secure 20151116
Fortinet 20151116
GData 20151116
Ikarus 20151116
Jiangmin 20151115
K7AntiVirus 20151115
K7GW 20151116
Kaspersky 20151116
Malwarebytes 20151116
McAfee 20151116
McAfee-GW-Edition 20151116
MicroWorld-eScan 20151116
Microsoft 20151116
Panda 20151115
Qihoo-360 20151116
Rising 20151115
SUPERAntiSpyware 20151116
Sophos 20151116
Symantec 20151114
Tencent 20151116
TheHacker 20151113
TotalDefense 20151115
TrendMicro 20151116
TrendMicro-HouseCall 20151116
ViRobot 20151116
Zillya 20151115
Zoner 20151115
nProtect 20151113
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
1107784
Highest datetime
2011-05-13 00:19:00
Lowest datetime
2011-05-13 00:19:00
Contained files by extension
exe
1
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0xe3447331

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
1107784

ZipCompressedSize
1072550

FileTypeExtension
zip

ZipFileName
LeoMoon Files2Folders.exe

ZipBitFlag
0

ZipModifyDate
2011:05:13 00:19:00

File identification
MD5 3d39a49be218c3e45ef1e1fd583ef36d
SHA1 4fbc1ddc65a156d7cc515e067c67b22331e92146
SHA256 15d227195276dcf935ae72eba0b16875e72b9a4e1ca6fcef120b6091a70fc5cd
ssdeep

File size 1.0 MB ( 1072698 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (100.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2013-05-27 06:08:23 UTC ( 2 years, 8 months ago )
Last submission 2015-11-16 06:08:06 UTC ( 2 months, 3 weeks ago )
File names leomoon-files2folders(1).zip
leomoon-files2folders.zip
leomoon-files2folders.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: http://www.clamav.net/doc/pua.html .

No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!