× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 1b79ed97f948db478554290ee6b2d481dac69a810096b9b5ac2da89ec2542b8d
File name: Canada-eCoin-qt.exe
Detection ratio: 1 / 51
Analysis date: 2014-03-28 22:21:03 UTC ( 4 years, 11 months ago ) View latest
Antivirus Result Update
ESET-NOD32 a variant of Win32/BitCoinMiner.BJ 20140328
Ad-Aware 20140328
AegisLab 20140328
Yandex 20140328
AhnLab-V3 20140328
AntiVir 20140328
Antiy-AVL 20140328
Avast 20140328
AVG 20140328
Baidu-International 20140328
BitDefender 20140328
Bkav 20140328
ByteHero 20140328
CAT-QuickHeal 20140328
ClamAV 20140328
CMC 20140328
Commtouch 20140328
Comodo 20140328
DrWeb 20140328
Emsisoft 20140328
F-Prot 20140328
F-Secure 20140328
Fortinet 20140328
GData 20140328
Ikarus 20140328
Jiangmin 20140328
K7AntiVirus 20140328
K7GW 20140328
Kaspersky 20140328
Kingsoft 20140328
Malwarebytes 20140328
McAfee 20140328
McAfee-GW-Edition 20140328
Microsoft 20140328
eScan 20140328
NANO-Antivirus 20140328
Norman 20140328
nProtect 20140328
Panda 20140328
Qihoo-360 20140328
Rising 20140328
Sophos AV 20140328
SUPERAntiSpyware 20140328
Symantec 20140328
TheHacker 20140328
TotalDefense 20140328
TrendMicro 20140328
TrendMicro-HouseCall 20140328
VBA32 20140328
VIPRE 20140328
ViRobot 20140328
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
2009-2014 The Bitcoin developers 2011-2014 The Canada eCoin developers

Publisher Canada eCoin
Product Canada eCoin-Qt
Original name canadaecoin-qt.exe
Internal name canadaecoin-qt
File version 1.0.0.0
Description Canada eCoin-Qt (OSS GUI client for Canada eCoin)
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2014-03-28 15:31:34
Entry Point 0x000014A0
Number of sections 9
PE sections
PE imports
RegCreateKeyExW
RegCloseKey
CopySid
RegQueryValueExA
RegDeleteKeyW
RegQueryValueExW
SetSecurityDescriptorDacl
RegFlushKey
OpenProcessToken
DeregisterEventSource
RegOpenKeyExW
RegisterEventSourceA
GetTokenInformation
RegQueryInfoKeyW
RegEnumKeyExW
GetLengthSid
RegDeleteValueW
RegSetValueExW
FreeSid
RegEnumValueW
InitializeSecurityDescriptor
ReportEventA
PrintDlgExW
GetSaveFileNameW
GetOpenFileNameW
SetGraphicsMode
GetCharABCWidthsW
GetCharABCWidthsFloatW
CreateFontIndirectW
SetBkMode
GetGlyphOutlineW
CreatePen
GetBkMode
SaveDC
SetTextAlign
GetPaletteEntries
EndPath
CombineRgn
GetTextMetricsW
GetBitmapBits
StretchBlt
GetDeviceCaps
CreateDCA
LineTo
OffsetRgn
DeleteDC
SetWorldTransform
RestoreDC
PolyBezierTo
SetPolyFillMode
EndDoc
PtInRegion
StartPage
GetRegionData
FillPath
CreateDCW
CreateDIBSection
RealizePalette
SetTextColor
GetObjectA
MoveToEx
ExtTextOutW
GetObjectW
CreateEllipticRgn
CreateBitmap
BitBlt
CreatePalette
EnumFontFamiliesExW
GetStockObject
SelectPalette
GetOutlineTextMetricsW
GetDIBits
GdiFlush
SelectClipRgn
CreateCompatibleDC
GetTextExtentPoint32W
StartDocW
StrokePath
EndPage
CreateRectRgn
CloseFigure
AbortDoc
GetNearestPaletteIndex
CreateSolidBrush
GetTextFaceW
ExtCreatePen
SelectObject
GetFontData
ResetDCW
BeginPath
DeleteObject
CreateCompatibleBitmap
SelectClipPath
ImmSetCompositionFontW
ImmSetCompositionWindow
ImmGetDefaultIMEWnd
ImmNotifyIME
ImmGetContext
ImmSetCandidateWindow
ImmReleaseContext
ImmGetCompositionStringW
ImmAssociateContext
GetIpAddrTable
GetBestRoute
GetStdHandle
GetDriveTypeW
ReleaseMutex
FileTimeToSystemTime
CreateWaitableTimerA
GetFileAttributesA
WaitForSingleObject
FindFirstFileW
GetFileAttributesW
lstrcmpW
GetLocalTime
DeleteCriticalSection
GetCurrentProcess
MoveFileW
UnhandledExceptionFilter
IsValidLanguageGroup
OpenFileMappingA
SetErrorMode
GetLogicalDrives
GetFileInformationByHandle
GetLocaleInfoW
GetFileTime
IsDBCSLeadByteEx
GetTempPathA
WideCharToMultiByte
GetOverlappedResult
GetTempPathW
GetTimeZoneInformation
GetSystemTimeAsFileTime
GetDiskFreeSpaceA
GetThreadPriority
SetEvent
LocalFree
FormatMessageW
ConnectNamedPipe
SetWaitableTimer
GetEnvironmentVariableA
OutputDebugStringW
FindClose
TlsGetValue
FormatMessageA
GetFullPathNameW
QueueUserWorkItem
OutputDebugStringA
VirtualQuery
SetLastError
GetUserDefaultUILanguage
GetSystemTime
DeviceIoControl
InitializeCriticalSection
CopyFileW
GetUserDefaultLangID
GetModuleFileNameW
ExitProcess
GetVersionExA
GetModuleFileNameA
FlushViewOfFile
QueueUserAPC
SetThreadPriority
CreateDirectoryExW
GetVolumeInformationW
LoadLibraryExW
MultiByteToWideChar
SystemTimeToTzSpecificLocalTime
SetFilePointerEx
FindNextChangeNotification
SetFilePointer
SetFileAttributesW
LockFileEx
CreateSemaphoreA
CreateThread
VirtualLock
MoveFileExW
GetSystemDirectoryW
DisconnectNamedPipe
CreateSemaphoreW
CreateMutexW
MoveFileExA
MoveFileA
GlobalMemoryStatus
FindCloseChangeNotification
SetUnhandledExceptionFilter
GetVersion
SetCurrentDirectoryW
GlobalAlloc
GetDiskFreeSpaceExW
SetEndOfFile
GetCurrentThreadId
SleepEx
CloseHandle
AreFileApisANSI
InitializeCriticalSectionAndSpinCount
HeapFree
EnterCriticalSection
PeekNamedPipe
TerminateThread
LoadLibraryW
GetVersionExW
FreeLibrary
QueryPerformanceCounter
GetTickCount
TlsAlloc
VirtualProtect
FlushFileBuffers
LoadLibraryA
GlobalSize
GetStartupInfoA
UnlockFile
GetFileSize
OpenProcess
CreateDirectoryA
DeleteFileA
GetDateFormatW
GetStartupInfoW
ReadProcessMemory
CreateDirectoryW
DeleteFileW
GetProcAddress
GetSystemInfo
GetProcessHeap
CreateWaitableTimerW
GetProfileStringW
CompareStringW
GetFileSizeEx
RemoveDirectoryW
ExpandEnvironmentStringsW
FindNextFileW
ResetEvent
CreateFileMappingA
FindNextFileA
IsValidLocale
DuplicateHandle
FindFirstFileExW
GetUserDefaultLCID
CreateEventW
CreateFileW
CreateEventA
GetFileType
TlsSetValue
CreateFileA
HeapAlloc
GetCurrencyFormatW
LeaveCriticalSection
GetLastError
SystemTimeToFileTime
CreateFileMappingW
VirtualAllocEx
CreateNamedPipeW
lstrlenA
GlobalFree
ResumeThread
GetTimeFormatW
GlobalUnlock
LockFile
FindFirstChangeNotificationW
GetQueuedCompletionStatus
WaitForSingleObjectEx
SwitchToThread
GetCurrentDirectoryW
VirtualFreeEx
GetCurrentProcessId
WaitNamedPipeW
CreateIoCompletionPort
SetFileTime
GetCommandLineW
GetCurrentThread
QueryPerformanceFrequency
ReleaseSemaphore
MapViewOfFile
TlsFree
GetModuleHandleA
VirtualUnlock
ReadFile
PulseEvent
FindFirstFileA
GlobalLock
GetModuleHandleW
GetFileAttributesExW
GetLongPathNameW
UnmapViewOfFile
WriteFile
PostQueuedCompletionStatus
CreateProcessW
WaitForMultipleObjects
Sleep
TerminateProcess
OpenEventA
GetAcceptExSockaddrs
AcceptEx
VariantInit
SysAllocStringLen
Shell_NotifyIconW
ShellExecuteW
SHGetSpecialFolderPathA
SHGetFileInfoW
PathFileExistsW
PathRemoveFileSpecW
SetFocus
SetWindowRgn
SetWindowPos
EndPaint
ScrollWindowEx
WindowFromPoint
SetCaretBlinkTime
SetMenuItemInfoW
GetDC
DestroyCursor
GetCursorPos
ReleaseDC
GetMenu
TranslateMessage
UnregisterClassW
GetClassInfoW
ToAscii
SetCaretPos
CallNextHookEx
GetSysColor
LoadImageW
ClientToScreen
GetActiveWindow
InvalidateRgn
DestroyWindow
GetUserObjectInformationW
GetParent
UpdateWindow
CreateCaret
GetMessageW
ShowWindow
FlashWindowEx
ValidateRgn
PeekMessageW
SetWindowPlacement
GetClipboardFormatNameW
GetSystemMenu
SetParent
DestroyCaret
CreateCursor
CharNextExA
GetIconInfo
GetQueueStatus
RegisterClassW
IsZoomed
GetWindowPlacement
SetWindowLongW
GetKeyboardLayoutList
IsIconic
TrackPopupMenuEx
SetTimer
GetKeyboardLayout
GetSysColorBrush
CreateWindowExW
GetWindowLongW
GetUpdateRect
IsChild
MapWindowPoints
RegisterWindowMessageW
BeginPaint
DefWindowProcW
KillTimer
MapVirtualKeyW
ClipCursor
SetClipboardViewer
GetSystemMetrics
EnableMenuItem
GetWindowRect
SetCapture
ReleaseCapture
GetProcessWindowStation
DrawIconEx
SetWindowTextW
CreateIconIndirect
ScreenToClient
PostMessageW
GetKeyboardState
GetDesktopWindow
SetWindowsHookExW
LoadIconW
FindWindowExW
DispatchMessageW
SetForegroundWindow
GetAsyncKeyState
GetCaretBlinkTime
HideCaret
FindWindowW
MessageBeep
GetWindowThreadProcessId
MessageBoxW
SendMessageW
RegisterClassExW
UnhookWindowsHookEx
MoveWindow
MessageBoxA
ChangeClipboardChain
AdjustWindowRectEx
MsgWaitForMultipleObjectsEx
RegisterClipboardFormatW
GetKeyState
GetWindowRgn
GetDoubleClickTime
DestroyIcon
IsWindowVisible
SetDoubleClickTime
SetCursorPos
SystemParametersInfoW
InvalidateRect
GetClientRect
ToUnicode
GetFocus
SetCursor
PlaySoundW
DeviceCapabilitiesW
GetPrinterW
EnumFormsW
EnumPrintersW
ClosePrinter
OpenPrinterW
getaddrinfo
htonl
WSAConnect
WSARecvFrom
WSARecv
accept
ioctlsocket
WSAStartup
freeaddrinfo
WSASocketW
getsockname
WSAAddressToStringA
htons
getnameinfo
WSAGetLastError
gethostname
getsockopt
WSAAccept
recv
WSAHtons
ntohl
inet_addr
WSASend
ntohs
WSAHtonl
select
gethostbyaddr
listen
WSANtohl
__WSAFDIsSet
shutdown
WSACleanup
gethostbyname
WSASetLastError
WSAAsyncSelect
closesocket
WSAIoctl
WSANtohs
setsockopt
socket
getpeername
bind
WSASendTo
sendto
send
connect
__lconv_init
wcsftime
___lc_codepage_func
fclose
_snwprintf
strtoul
fflush
isxdigit
_fmode
strtol
fputc
system
_wgetenv
fwrite
frexp
fputs
_fstat64
ungetwc
isspace
_close
puts
iswctype
wcscoll
_exit
__dllonexit
_wfopen
strstr
_write
_clearfp
memcpy
perror
ctime
memmove
localtime
signal
freopen
_initterm
strcmp
memchr
strncmp
_lfind
fgetc
memset
strcat
_stricmp
_setmode
fgets
__pioinfo
strchr
asin
fopen
_beginthread
fgetpos
fsetpos
strftime
ftell
__initenv
exit
sprintf
strrchr
_acmdln
ferror
gmtime
_getdrive
ungetc
free
__getmainargs
strlen
_stat
_lseeki64
_vsnprintf
putchar
_flushall
_read
fseek
wcsxfrm
strcpy
bsearch
__mb_cur_max
islower
acos
isupper
_ftime
_iob
rand
_putenv
setlocale
realloc
_getcwd
strxfrm
__doserrno
_open_osfhandle
fwprintf
isprint
_setjmp3
toupper
printf
_commit
_memicmp
strncpy
_cexit
raise
isalnum
mktime
qsort
_tzset
_open
_onexit
wcslen
isalpha
_snprintf
putc
memcmp
__setusermatherr
log10
srand
vprintf
_fdopen
getenv
atoi
vfprintf
atol
atof
strcoll
localeconv
strerror
wcscpy
_beginthreadex
strspn
_strnicmp
putwc
_tzname
malloc
sscanf
fread
_waccess
abort
fprintf
getwc
tan
ispunct
feof
_endthreadex
_amsg_exit
_control87
_chsize
_lock
_get_osfhandle
_strdup
towlower
_fileno
wcsrchr
longjmp
tolower
atan
_unlock
calloc
setbuf
_getch
towupper
iswprint
_errno
atan2
_filelengthi64
setvbuf
time
wcsstr
_wgetdcwd
getc
_wchmod
__set_app_type
OleUninitialize
CoUninitialize
CoInitialize
OleFlushClipboard
CoLockObjectExternal
ReleaseStgMedium
CoCreateGuid
RegisterDragDrop
CoCreateInstance
DoDragDrop
RevokeDragDrop
OleSetClipboard
CoGetMalloc
OleGetClipboard
OleIsCurrentClipboard
CoTaskMemFree
StringFromGUID2
OleInitialize
Number of PE resources by type
RT_ICON 12
RT_GROUP_ICON 2
RT_VERSION 1
Number of PE resources by language
ENGLISH US 15
PE resources
ExifTool file metadata
UninitializedDataSize
44544

LinkerVersion
2.23

ImageVersion
1.0

FileSubtype
0

FileVersionNumber
1.0.0.0

LanguageCode
English (U.S.)

FileFlagsMask
0x0000

FileDescription
Canada eCoin-Qt (OSS GUI client for Canada eCoin)

CharacterSet
Windows, Latin1

InitializedDataSize
22908928

FileOS
Windows NT 32-bit

MIMEType
application/octet-stream

LegalCopyright
2009-2014 The Bitcoin developers 2011-2014 The Canada eCoin developers

FileVersion
1.0.0.0

LegalTrademarks1
Distributed under the MIT/X11 software license, see the accompanying file COPYING or http://www.opensource.org/licenses/mit-license.php.

TimeStamp
2014:03:28 16:31:34+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
canadaecoin-qt

FileAccessDate
2014:12:22 22:48:28+01:00

ProductVersion
1.0.0.0

SubsystemVersion
4.0

OSVersion
4.0

FileCreateDate
2014:12:22 22:48:28+01:00

OriginalFilename
canadaecoin-qt.exe

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Canada eCoin

CodeSize
14819840

ProductName
Canada eCoin-Qt

ProductVersionNumber
1.0.0.0

EntryPoint
0x14a0

ObjectFileType
Executable application

File identification
MD5 0f0f013d0dd7cb2a44f00c73e3719a49
SHA1 07f42e9c57df16356b54e397705f13e7b5201fed
SHA256 1b79ed97f948db478554290ee6b2d481dac69a810096b9b5ac2da89ec2542b8d
ssdeep
393216:RbgVdgYCPkK9u1AVPCRKHgMl64fzuxVpCi4uPb1tNPND73520w8Jsv6tWKFdu9Cc:tM2zVaugMlVzGKR

authentihash 46977dedf70be315a9e6fc4cf0c55614e5f770e91bf3fbfb00a8ac53c4f21d94
imphash 602fd40aab43ab2da6acb96cb472663f
File size 21.8 MB ( 22909952 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID InstallShield setup (46.2%)
Win32 EXE PECompact compressed (generic) (44.6%)
Win32 Executable (generic) (4.8%)
Generic Win/DOS Executable (2.1%)
DOS Executable Generic (2.1%)
Tags
peexe

VirusTotal metadata
First submission 2014-03-28 22:21:03 UTC ( 4 years, 11 months ago )
Last submission 2014-03-31 22:08:29 UTC ( 4 years, 11 months ago )
File names canadaecoin-qt.exe
canadaecoin-qt
Canada-eCoin-qt.exe
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!