× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 1fc2d646edc61086d538bc4f789c88a814690291c8e67524ac55541a9393dfd3
File name: 539988
Detection ratio: 0 / 52
Analysis date: 2016-01-31 11:07:06 UTC ( 3 years ago ) View latest
Antivirus Result Update
Ad-Aware 20160130
AegisLab 20160130
Yandex 20160129
AhnLab-V3 20160129
Alibaba 20160129
ALYac 20160130
Antiy-AVL 20160130
Arcabit 20160130
Avast 20160130
AVG 20160130
Avira (no cloud) 20160130
Baidu-International 20160129
BitDefender 20160130
Bkav 20160129
ByteHero 20160131
CAT-QuickHeal 20160129
ClamAV 20160130
CMC 20160130
Comodo 20160130
Cyren 20160129
ESET-NOD32 20160130
F-Prot 20160129
F-Secure 20160129
Fortinet 20160130
GData 20160130
Ikarus 20160129
Jiangmin 20160129
K7AntiVirus 20160129
K7GW 20160129
Kaspersky 20160129
Malwarebytes 20160130
McAfee 20160130
McAfee-GW-Edition 20160130
Microsoft 20160130
eScan 20160130
NANO-Antivirus 20160130
nProtect 20160129
Panda 20160129
Qihoo-360 20160131
Rising 20160129
Sophos AV 20160130
SUPERAntiSpyware 20160130
Symantec 20160129
TheHacker 20160130
TotalDefense 20160129
TrendMicro 20160130
TrendMicro-HouseCall 20160130
VBA32 20160128
VIPRE 20160130
ViRobot 20160129
Zillya 20160130
Zoner 20160130
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
6438649
Highest datetime
2014-08-11 13:18:04
Lowest datetime
2014-08-11 13:18:04
Contained files by extension
exe
1
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x8e25a491

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
6438649

ZipCompressedSize
6409716

FileTypeExtension
zip

ZipFileName
setup.exe

ZipBitFlag
0x0002

ZipModifyDate
2014:08:11 13:18:04

Compressed bundles
File identification
MD5 52614c222b424cee10e19c550af162b9
SHA1 0e4781fe4cf8b9bc58a44a32900f3592dcadb13c
SHA256 1fc2d646edc61086d538bc4f789c88a814690291c8e67524ac55541a9393dfd3
ssdeep
196608:Gjq+stqKISrRBUD7QqIsHSzaNXTe/bl4CaFVga:7NttISr/o7QLYSO9Te/bKr//

File size 6.1 MB ( 6409868 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2014-11-29 13:08:39 UTC ( 4 years, 2 months ago )
Last submission 2018-05-22 01:52:25 UTC ( 9 months, 1 week ago )
File names 539988
NuMorP.zip
1fc2d646edc61086d538bc4f789c88a814690291c8e67524ac55541a9393dfd3
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!