× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 1d29a948da45b09e749526b17125e49efa5dbbb48772e253b2d0875fbcccb39d
File name: 9ca52caebc252afecd823c6511775d172d76630e
Detection ratio: 0 / 57
Analysis date: 2016-04-01 03:06:08 UTC ( 2 years, 6 months ago ) View latest
Antivirus Result Update
Ad-Aware 20160401
AegisLab 20160331
AhnLab-V3 20160330
Alibaba 20160323
ALYac 20160401
Antiy-AVL 20160401
Arcabit 20160401
Avast 20160401
AVG 20160401
Avira (no cloud) 20160401
AVware 20160401
Baidu 20160331
Baidu-International 20160331
BitDefender 20160401
Bkav 20160331
CAT-QuickHeal 20160331
ClamAV 20160401
CMC 20160322
Comodo 20160401
Cyren 20160401
DrWeb 20160331
Emsisoft 20160401
ESET-NOD32 20160401
F-Prot 20160401
F-Secure 20160401
Fortinet 20160330
GData 20160331
Ikarus 20160331
Jiangmin 20160401
K7AntiVirus 20160331
K7GW 20160401
Kaspersky 20160401
Kingsoft 20160401
Malwarebytes 20160401
McAfee 20160401
McAfee-GW-Edition 20160331
Microsoft 20160401
eScan 20160401
NANO-Antivirus 20160401
nProtect 20160331
Panda 20160331
Qihoo-360 20160401
Rising 20160401
Sophos AV 20160401
SUPERAntiSpyware 20160401
Symantec 20160331
Tencent 20160401
TheHacker 20160330
TotalDefense 20160330
TrendMicro 20160401
TrendMicro-HouseCall 20160401
VBA32 20160331
VIPRE 20160401
ViRobot 20160401
Yandex 20160316
Zillya 20160331
Zoner 20160331
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © 1996-2005 Macromedia, Inc.

Product Shockwave Flash
Original name SAFlashPlayer.exe
Internal name Macromedia Flash Player 8.0
File version 8,0,22,0
Description Macromedia Flash Player 8.0 r22
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2005-08-27 20:49:50
Entry Point 0x000DC300
Number of sections 4
PE sections
Overlays
MD5 da5c17ce66d7a2b9756861f547a83518
File type data
Offset 1581056
Size 1366618
Entropy 8.00
PE imports
RegCloseKey
RegQueryValueExA
RegOpenKeyExW
RegSetValueExA
RegSetValueA
RegOpenKeyExA
RegCreateKeyA
RegQueryValueExW
CertCreateCertificateContext
CertFreeCertificateContext
CertCloseStore
CryptGetMessageCertificates
CertFindCertificateInStore
CryptVerifyMessageSignature
CertVerifySubjectCertificateContext
GetSystemPaletteEntries
SetBkMode
CreatePen
GetBkMode
SaveDC
CreateFontIndirectA
GetTextMetricsA
LPtoDP
GetClipBox
GetObjectA
LineTo
DeleteDC
RestoreDC
PolyBezierTo
EndDoc
StartPage
DeleteObject
FillPath
SelectClipPath
CreateDIBSection
EnumFontFamiliesA
RealizePalette
SetTextColor
GetDeviceCaps
GetCurrentObject
ExtTextOutW
IntersectClipRect
SetTextAlign
GetTextExtentPoint32W
MoveToEx
CreatePalette
BitBlt
GetStockObject
SelectPalette
ExtTextOutA
StrokePath
GdiFlush
SelectClipRgn
CreateCompatibleDC
GetTextAlign
StretchDIBits
EndPage
CreateRectRgn
GetClipRgn
StartDocA
SetPolyFillMode
CreateCompatibleBitmap
SetDIBitsToDevice
GetTextColor
CreateSolidBrush
DPtoLP
ExtCreatePen
SelectObject
SetBkColor
SetTextCharacterExtra
BeginPath
GetBkColor
GetTextExtentPoint32A
EndPath
ReleaseMutex
GetFileAttributesA
WaitForSingleObject
FindFirstFileW
GetFileAttributesW
DeleteCriticalSection
GetCurrentProcess
GetLocaleInfoA
SetErrorMode
FindResourceExA
IsDBCSLeadByteEx
GetTempPathA
WideCharToMultiByte
InterlockedExchange
FindResourceExW
FreeLibrary
MoveFileA
GetThreadPriority
InitializeCriticalSection
LoadResource
FindClose
InterlockedDecrement
MoveFileW
GetSystemTime
CopyFileW
GetUserDefaultLangID
RemoveDirectoryW
CopyFileA
ExitProcess
RemoveDirectoryA
SetThreadPriority
MultiByteToWideChar
LeaveCriticalSection
CreateMutexA
GetModuleHandleA
CreateThread
GetSystemDirectoryA
MoveFileExA
VirtualQuery
SetEndOfFile
GetCurrentThreadId
GetProcAddress
HeapFree
EnterCriticalSection
SetEvent
QueryPerformanceCounter
GetTickCount
TlsAlloc
GetVersionExA
LoadLibraryA
ExitThread
GetStartupInfoA
GetFileSize
CreateDirectoryA
DeleteFileA
CreateDirectoryW
DeleteFileW
GlobalLock
GetProcessHeap
GetTempFileNameW
WriteFile
GetModuleFileNameW
FindNextFileW
ResetEvent
GetTempFileNameA
CreateFileMappingA
FindNextFileA
WaitForMultipleObjects
GetTimeZoneInformation
CreateFileW
CreateEventA
CreateFileA
HeapAlloc
InterlockedIncrement
GetLastError
SystemTimeToFileTime
LCMapStringW
GetSystemInfo
lstrlenA
GlobalFree
LCMapStringA
GetProcessTimes
GlobalUnlock
IsDBCSLeadByte
GlobalAlloc
GetModuleFileNameA
LockResource
GetCommandLineW
GetCPInfo
GetCommandLineA
InterlockedCompareExchange
GetCurrentThread
GetSystemDefaultLangID
QueryPerformanceFrequency
MapViewOfFile
SetFilePointer
ReadFile
FindFirstFileA
CloseHandle
GetACP
GetFileAttributesExW
CreateProcessA
UnmapViewOfFile
GetTempPathW
VirtualFree
Sleep
GetFileAttributesExA
VirtualAlloc
SysFreeString
DragQueryFileW
DragAcceptFiles
SHGetSpecialFolderLocation
SHBrowseForFolderA
SHAppBarMessage
DragQueryFileA
SHGetPathFromIDListA
RegisterClipboardFormatA
DestroyMenu
PostQuitMessage
SetWindowPos
DdeDisconnect
DdeCreateStringHandleA
IsWindow
DispatchMessageA
EndPaint
WindowFromPoint
GetMenuItemID
GetCursorPos
ReleaseDC
DdeInitializeA
GetMenu
UnregisterClassA
IsClipboardFormatAvailable
SendMessageA
GetClientRect
GetDlgItemTextW
DdeFreeStringHandle
LoadAcceleratorsA
GetWindowTextLengthA
ClientToScreen
GetWindowTextLengthW
MsgWaitForMultipleObjects
GetMenuItemInfoA
DestroyWindow
GetMessageA
GetParent
UpdateWindow
ShowWindow
EnableWindow
GetDlgItemTextA
PeekMessageA
TranslateMessage
GetWindow
InsertMenuItemA
LoadStringA
GetQueueStatus
SetClipboardData
LoadStringW
DdeConnect
EnableMenuItem
RegisterClassA
GetWindowLongA
CreateWindowExA
DdeClientTransaction
GetKeyboardLayout
FillRect
WaitForInputIdle
PostThreadMessageA
OpenClipboard
SetFocus
MapVirtualKeyA
SetCapture
BeginPaint
KillTimer
RegisterWindowMessageA
DefWindowProcA
GetClipboardData
GetSystemMetrics
GetWindowRect
PostMessageA
ReleaseCapture
SetWindowLongA
SetWindowTextA
CheckMenuItem
GetSubMenu
SetTimer
GetDlgItem
ScreenToClient
InsertMenuA
LoadCursorA
LoadIconA
TrackPopupMenu
DialogBoxIndirectParamW
GetMenuItemCount
GetDesktopWindow
GetDC
InsertMenuW
DialogBoxIndirectParamA
GetMenuStringW
EmptyClipboard
EndDialog
LoadMenuA
SendInput
GetCapture
RemoveMenu
DdeUninitialize
SetMenu
SetDlgItemTextA
MoveWindow
DialogBoxParamW
GetMenuStringA
MessageBoxA
DialogBoxParamA
SetDlgItemTextW
GetKeyState
SystemParametersInfoA
GetDoubleClickTime
DeleteMenu
InvalidateRect
TranslateAcceleratorA
GetFocus
CloseClipboard
SetCursor
GetFileVersionInfoSizeA
GetFileVersionInfoA
VerQueryValueA
HttpQueryInfoA
timeKillEvent
waveOutReset
waveInOpen
waveOutGetDevCapsA
timeSetEvent
waveInStop
timeBeginPeriod
timeEndPeriod
waveOutOpen
waveInPrepareHeader
waveInGetDevCapsA
waveOutGetNumDevs
waveOutClose
waveInAddBuffer
timeGetTime
waveInClose
timeGetDevCaps
waveInGetNumDevs
waveOutUnprepareHeader
waveOutPrepareHeader
waveInUnprepareHeader
waveInStart
waveOutWrite
waveInReset
setsockopt
htonl
ntohl
ioctlsocket
WSAStartup
gethostbyname
WSACleanup
htons
PrintDlgA
GetOpenFileNameW
GetSaveFileNameW
GetOpenFileNameA
CommDlgExtendedError
GetSaveFileNameA
CoUninitialize
CoInitialize
CoTaskMemAlloc
CoCreateInstance
CoFreeUnusedLibraries
CoTaskMemFree
Number of PE resources by type
RT_STRING 36
RT_MENU 36
RT_ICON 30
RT_DIALOG 27
RT_CURSOR 5
RT_GROUP_CURSOR 3
RT_GROUP_ICON 3
RT_ACCELERATOR 1
RT_VERSION 1
Number of PE resources by language
ENGLISH US 54
GERMAN 11
CHINESE TRADITIONAL 11
FRENCH 11
CHINESE SIMPLIFIED 11
JAPANESE DEFAULT 11
SPANISH MODERN 11
KOREAN 11
ITALIAN 11
PE resources
ExifTool file metadata
CodeSize
1294336

FileDescription
Macromedia Flash Player 8.0 r22

InitializedDataSize
1089536

ImageVersion
0.0

ProductName
Shockwave Flash

FileVersionNumber
8.0.22.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

CharacterSet
Unicode

LinkerVersion
7.1

FileTypeExtension
exe

OriginalFileName
SAFlashPlayer.exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
8,0,22,0

TimeStamp
2005:08:27 21:49:50+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
Macromedia Flash Player 8.0

SubsystemVersion
4.0

ProductVersion
8,0,22,0

UninitializedDataSize
0

OSVersion
4.0

FileOS
Win32

LegalCopyright
Copyright 1996-2005 Macromedia, Inc.

MachineType
Intel 386 or later, and compatibles

Debugger
0

CompanyName
Macromedia, Inc.

LegalTrademarks
Macromedia Flash Player

FileSubtype
0

ProductVersionNumber
8.0.22.0

EntryPoint
0xdc300

ObjectFileType
Dynamic link library

File identification
MD5 226aeb2b47fe4f7747c3898dbc8dbe27
SHA1 9ca52caebc252afecd823c6511775d172d76630e
SHA256 1d29a948da45b09e749526b17125e49efa5dbbb48772e253b2d0875fbcccb39d
ssdeep
49152:PVHFXSFEmqiDqCbS1gickVsPTpuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuuTuuux:PVHFXSCmqsSgfkVsNuuuuuuuuuuuuuuh

authentihash 3d4c41764e726082326166a6808840dcd80bdead7f60005e4040c6d08852ee7a
imphash 9e604fa03f90625680ac2f8bef162aff
File size 2.8 MB ( 2947674 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID InstallShield setup (46.6%)
Win64 Executable (generic) (29.9%)
Windows screen saver (14.1%)
Win32 Executable (generic) (4.8%)
Generic Win/DOS Executable (2.1%)
Tags
peexe overlay

VirusTotal metadata
First submission 2010-02-10 16:30:38 UTC ( 8 years, 8 months ago )
Last submission 2016-04-19 17:46:07 UTC ( 2 years, 6 months ago )
File names 2mn4Icxk.xlsm
SAFlashPlayer.exe
1d29a948da45b09e749526b17125e49efa5dbbb48772e253b2d0875fbcccb39d
Macromedia Flash Player 8.0
141500352310649-black_ops_korean_conflict.exe
black-ops-korean-conflict.exe
black-ops-korean-conflict.exe
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!