× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 35b2c1592fe394fc8d12d7a67fa54d5c7e7cf1b7ad3dc78e530d761628374006
File name: killfile32
Detection ratio: 0 / 55
Analysis date: 2015-07-15 12:14:46 UTC ( 3 years, 6 months ago ) View latest
Antivirus Result Update
Ad-Aware 20150715
AegisLab 20150715
Yandex 20150713
AhnLab-V3 20150715
Alibaba 20150715
ALYac 20150715
Antiy-AVL 20150715
Arcabit 20150715
Avast 20150715
AVG 20150715
Avira (no cloud) 20150715
AVware 20150715
Baidu-International 20150715
BitDefender 20150715
Bkav 20150715
ByteHero 20150715
CAT-QuickHeal 20150715
ClamAV 20150715
Comodo 20150715
Cyren 20150715
DrWeb 20150715
Emsisoft 20150715
ESET-NOD32 20150715
F-Prot 20150714
F-Secure 20150715
Fortinet 20150715
GData 20150715
Ikarus 20150715
Jiangmin 20150714
K7AntiVirus 20150715
K7GW 20150715
Kaspersky 20150715
Kingsoft 20150715
Malwarebytes 20150715
McAfee 20150715
McAfee-GW-Edition 20150715
Microsoft 20150715
eScan 20150715
NANO-Antivirus 20150715
nProtect 20150715
Panda 20150715
Qihoo-360 20150715
Rising 20150713
Sophos AV 20150715
SUPERAntiSpyware 20150715
Symantec 20150715
Tencent 20150715
TheHacker 20150713
TrendMicro 20150715
TrendMicro-HouseCall 20150715
VBA32 20150715
VIPRE 20150715
ViRobot 20150715
Zillya 20150715
Zoner 20150715
The file being studied is an ELF! More specifically, it is a EXEC (Executable file) ELF for Unix systems running on Intel 80386 machines.
ELF Header
Class ELF32
Data 2's complement, little endian
Header version 1 (current)
OS ABI UNIX - System V
ABI version 0
Object file type EXEC (Executable file)
Required architecture Intel 80386
Object file version 0x1
Program headers 8
Section headers 30
ELF sections
ELF Segments
Segment without sections
.interp
.interp
.note.ABI-tag
.note.gnu.build-id
.gnu.hash
.dynsym
.dynstr
.gnu.version
.gnu.version_r
.rel.dyn
.rel.plt
.init
.plt
.text
.fini
.rodata
.eh_frame_hdr
.eh_frame
.ctors
.dtors
.jcr
.dynamic
.got
.got.plt
.data
.bss
.dynamic
.note.ABI-tag
.note.gnu.build-id
.eh_frame_hdr
Segment without sections
Shared libraries
Imported symbols
Exported symbols
ExifTool file metadata
MIMEType
application/octet-stream

CPUByteOrder
Little endian

CPUArchitecture
32 bit

FileType
ELF executable

ObjectFileType
Executable file

CPUType
i386

File identification
MD5 e98b05b01df42d0e0b01b97386a562d7
SHA1 ba60eedf3eaa637b5bfb48bcb04797f1164f1c86
SHA256 35b2c1592fe394fc8d12d7a67fa54d5c7e7cf1b7ad3dc78e530d761628374006
ssdeep
192:fF/IcP7Ecsyk+M2kGGmbtAYyCFv33MqRARgWkk408btxtldX1HFAY:fJEcnZtb6Yy6RQ49FlFt

File size 14.9 KB ( 15282 bytes )
File type ELF
Magic literal
ELF 32-bit LSB executable, Intel 80386, version 1 (SYSV), dynamically linked (uses shared libs), for GNU/Linux 2.6.18, not stripped

TrID ELF Executable and Linkable format (Linux) (50.1%)
ELF Executable and Linkable format (generic) (49.8%)
Tags
elf

VirusTotal metadata
First submission 2015-07-15 12:14:46 UTC ( 3 years, 6 months ago )
Last submission 2015-09-20 15:42:56 UTC ( 3 years, 4 months ago )
File names killfile32
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!