× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 26c9c8491fdceb738eb5ba2f48be86176f4ff8ed075782463015e7b35727b7cf
File name: OBS-Studio-21.0.1-Full-Installer.exe
Detection ratio: 0 / 62
Analysis date: 2018-02-20 14:40:54 UTC ( 4 months, 4 weeks ago ) View latest
Antivirus Result Update
Ad-Aware 20180220
AegisLab 20180220
AhnLab-V3 20180220
Alibaba 20180216
ALYac 20180220
Antiy-AVL 20180220
Arcabit 20180220
Avast 20180220
Avast-Mobile 20180220
AVG 20180220
Avira (no cloud) 20180220
AVware 20180220
Baidu 20180208
BitDefender 20180220
Bkav 20180212
CAT-QuickHeal 20180220
ClamAV 20180220
CMC 20180220
Comodo 20180220
CrowdStrike Falcon (ML) 20170201
Cybereason 20180205
Cylance 20180220
Cyren 20180220
DrWeb 20180220
eGambit 20180220
Emsisoft 20180220
Endgame 20180216
ESET-NOD32 20180220
F-Prot 20180220
F-Secure 20180220
Fortinet 20180220
GData 20180220
Sophos ML 20180121
Jiangmin 20180219
K7AntiVirus 20180220
K7GW 20180220
Kaspersky 20180220
Kingsoft 20180220
Malwarebytes 20180220
MAX 20180220
McAfee 20180220
McAfee-GW-Edition 20180220
Microsoft 20180220
eScan 20180220
NANO-Antivirus 20180220
nProtect 20180220
Palo Alto Networks (Known Signatures) 20180220
Panda 20180220
Qihoo-360 20180220
Rising 20180220
SentinelOne (Static ML) 20180115
Sophos AV 20180220
SUPERAntiSpyware 20180220
Symantec 20180220
Symantec Mobile Insight 20180220
Tencent 20180220
TheHacker 20180219
Trustlook 20180220
VBA32 20180220
VIPRE 20180220
ViRobot 20180220
Webroot 20180220
WhiteArmor 20180205
Yandex 20180220
ZoneAlarm by Check Point 20180220
Zoner 20180220
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
(c) 2012-2016

Product OBS Studio
File version 1.0
Description OBS Studio
Signature verification Signed file, verified signature
Signing date 2:28 AM 1/23/2018
Signers
[+] Open Source Developer, Hugh Bailey
Status This certificate or one of the certificates in the certificate chain is not time valid.
Issuer Certum Code Signing CA SHA2
Valid from 6:40 AM 3/29/2017
Valid to 6:40 AM 3/29/2018
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 0F5DE19823A78A51F262D07071E5ED5263AB2913
Serial number 6B 81 4C C0 D9 BC CD 2D E1 7C 6C 45 44 82 47 00
[+] Certum Code Signing CA SHA2
Status Valid
Issuer Certum Trusted Network CA
Valid from 12:30 PM 10/29/2015
Valid to 12:30 PM 6/9/2027
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 905DE119F6A0118CFFBF8B69463EFE5BD0C1D322
Serial number 6B 32 6A 0F 03 28 D3 7A 1D 53 0B FD 23 BD 48 E2
[+] Certum Trusted Network CA
Status Valid
Issuer Certum Trusted Network CA
Valid from 1:07 PM 10/22/2008
Valid to 1:07 PM 12/31/2029
Valid usage Server Auth, Client Auth, Email Protection, Code Signing, Timestamp Signing, EFS, IPSEC Tunnel, IPSEC User
Algorithm sha1RSA
Thumbprint 07E032E020B72C3F192F0628A2593A19A70F069E
Serial number 04 44 C0
Counter signers
[+] Symantec Time Stamping Services Signer - G4
Status Valid
Issuer Symantec Time Stamping Services CA - G2
Valid from 1:00 AM 10/18/2012
Valid to 12:59 AM 12/30/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 65439929B67973EB192D6FF243E6767ADF0834E4
Serial number 0E CF F4 38 C8 FE BF 35 6E 04 D8 6A 98 1B 1A 50
[+] Symantec Time Stamping Services CA - G2
Status Valid
Issuer Thawte Timestamping CA
Valid from 1:00 AM 12/21/2012
Valid to 12:59 AM 12/31/2020
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 6C07453FFDDA08B83707C09B82FB3D15F35336B1
Serial number 7E 93 EB FB 7C C6 4E 59 EA 4B 9A 77 D4 06 FC 3B
[+] Thawte Timestamping CA
Status Valid
Issuer Thawte Timestamping CA
Valid from 1:00 AM 1/1/1997
Valid to 12:59 AM 1/1/2021
Valid usage Timestamp Signing
Algorithm md5RSA
Thumbrint BE36A4562FB2EE05DBB3D32323ADF445084ED656
Serial number 00
Packers identified
F-PROT NSIS, appended, UTF-8, 7Z
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2016-12-11 21:50:48
Entry Point 0x0000344A
Number of sections 5
PE sections
Overlays
MD5 1d77cf185b367d1963640f75b32626f3
File type data
Offset 52736
Size 104557920
Entropy 8.00
PE imports
RegCreateKeyExW
RegEnumValueW
RegCloseKey
OpenProcessToken
RegSetValueExW
RegDeleteValueW
RegOpenKeyExW
SetFileSecurityW
AdjustTokenPrivileges
LookupPrivilegeValueW
RegEnumKeyW
RegDeleteKeyW
RegQueryValueExW
ImageList_Create
Ord(17)
ImageList_Destroy
ImageList_AddMasked
GetDeviceCaps
CreateFontIndirectW
SelectObject
CreateBrushIndirect
SetBkMode
SetBkColor
DeleteObject
SetTextColor
SetFilePointer
GetLastError
CopyFileW
GetShortPathNameW
lstrlenA
GetModuleFileNameW
GlobalFree
WaitForSingleObject
GetExitCodeProcess
ExitProcess
GlobalUnlock
GetFileAttributesW
lstrcmpiW
GetCurrentProcess
CompareFileTime
GetWindowsDirectoryW
GetFileSize
SetFileTime
GetCommandLineW
WideCharToMultiByte
SetErrorMode
MultiByteToWideChar
lstrlenW
CreateDirectoryW
DeleteFileW
GlobalLock
ReadFile
lstrcpyA
GetPrivateProfileStringW
WritePrivateProfileStringW
GetTempFileNameW
lstrcpynW
RemoveDirectoryW
ExpandEnvironmentStringsW
lstrcpyW
GetFullPathNameW
lstrcmpiA
CreateThread
SetEnvironmentVariableW
MoveFileExW
GetModuleHandleA
GetSystemDirectoryW
GetDiskFreeSpaceW
FindNextFileW
GetTempPathW
CloseHandle
FindFirstFileW
lstrcmpW
GetModuleHandleW
lstrcatW
FreeLibrary
SearchPathW
SetCurrentDirectoryW
WriteFile
CreateFileW
GlobalAlloc
CreateProcessW
FindClose
Sleep
MoveFileW
SetFileAttributesW
GetTickCount
GetVersion
GetProcAddress
LoadLibraryExW
MulDiv
SHBrowseForFolderW
SHFileOperationW
ShellExecuteW
SHGetPathFromIDListW
SHGetSpecialFolderLocation
SHGetFileInfoW
EmptyClipboard
GetMessagePos
EndPaint
EndDialog
LoadBitmapW
SetClassLongW
DefWindowProcW
CharPrevW
PostQuitMessage
ShowWindow
SetWindowPos
SendMessageTimeoutW
GetSystemMetrics
SetWindowLongW
IsWindow
PeekMessageW
GetWindowRect
EnableWindow
SetWindowTextW
DialogBoxParamW
AppendMenuW
IsWindowEnabled
GetDlgItemTextW
MessageBoxIndirectW
GetSysColor
CheckDlgButton
DispatchMessageW
CreateWindowExW
CreateDialogParamW
ReleaseDC
BeginPaint
CreatePopupMenu
SendMessageW
SetClipboardData
GetWindowLongW
FindWindowExW
IsWindowVisible
DestroyWindow
GetClientRect
SetTimer
GetDlgItem
SetForegroundWindow
SystemParametersInfoW
LoadImageW
EnableMenuItem
ScreenToClient
InvalidateRect
wsprintfA
CharNextW
CallWindowProcW
TrackPopupMenu
RegisterClassW
FillRect
CharNextA
SetDlgItemTextW
LoadCursorW
GetSystemMenu
GetClassInfoW
GetDC
wsprintfW
CloseClipboard
DrawTextW
SetCursor
ExitWindowsEx
OpenClipboard
OleUninitialize
CoTaskMemFree
OleInitialize
CoCreateInstance
Number of PE resources by type
RT_ICON 7
RT_DIALOG 6
RT_MANIFEST 1
RT_BITMAP 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 17
PE resources
ExifTool file metadata
SubsystemVersion
4.0

LinkerVersion
6.0

ImageVersion
6.0

FileSubtype
0

FileVersionNumber
21.0.1.0

UninitializedDataSize
2048

LanguageCode
English (U.S.)

FileFlagsMask
0x0000

CharacterSet
ASCII

InitializedDataSize
141824

EntryPoint
0x344a

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
1.0

TimeStamp
2016:12:11 22:50:48+01:00

FileType
Win32 EXE

PEType
PE32

FileDescription
OBS Studio

OSVersion
4.0

FileOS
Win32

LegalCopyright
(c) 2012-2016

MachineType
Intel 386 or later, and compatibles

CompanyName
obsproject.com

CodeSize
25088

ProductName
OBS Studio

ProductVersionNumber
21.0.1.0

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 3e1bfa9b1a3d361a3833354c0e1325b9
SHA1 66d3d6e926953a90197f9cbb1f33dca68f8ec88e
SHA256 26c9c8491fdceb738eb5ba2f48be86176f4ff8ed075782463015e7b35727b7cf
ssdeep
3145728:S2KQDNYPdJToExkYnDeZ1cA9zVlUc39mC6HCbWUo:S2KwNYPDNkYnDW1cAVyc395jbI

authentihash e2eb0384b9b142afa2ee070e63412f641be9f4ca65836adacb83d5055cc0cbd3
imphash 4ea4df5d94204fc550be1874e1b77ea7
File size 99.8 MB ( 104610656 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win64 Executable (generic) (61.7%)
Win32 Dynamic Link Library (generic) (14.7%)
Win32 Executable (generic) (10.0%)
OS/2 Executable (generic) (4.5%)
Generic Win/DOS Executable (4.4%)
Tags
nsis peexe signed overlay

VirusTotal metadata
First submission 2018-01-23 04:45:34 UTC ( 5 months, 3 weeks ago )
Last submission 2018-06-30 15:58:20 UTC ( 2 weeks, 5 days ago )
File names OBS-Studio-21.0.1-Full-Installer.exe
obs-studio_2101.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer (1).exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS_Studio_Installer.exe
26C9C8491FDCEB738EB5BA2F48BE86176F4FF8ED075782463015E7B35727B7CF.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer.exe
obs-studio-21.0.1-full-installer.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer.exe
OBS-Studio-21.0.1-Full-Installer (2).exe
OBS-Studio-21.0.1-Full-Installer.exe
obs-studio-21_0_1-full-installer.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!