× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 396fd93788e52064c555073419df07f35d7b351b7383206f9c33f55603dd1e6a
File name: pencil-and-paper-2174.zip
Detection ratio: 1 / 62
Analysis date: 2018-09-29 12:30:06 UTC ( 7 months, 3 weeks ago )
Antivirus Result Update
TheHacker Trojan/BadJoke.Formatter.gh 20180927
Ad-Aware 20180929
AegisLab 20180929
AhnLab-V3 20180929
Alibaba 20180921
ALYac 20180929
Antiy-AVL 20180929
Arcabit 20180929
Avast 20180929
Avast-Mobile 20180928
AVG 20180929
Avira (no cloud) 20180928
AVware 20180925
Babable 20180918
Baidu 20180929
BitDefender 20180929
Bkav 20180928
CAT-QuickHeal 20180928
ClamAV 20180929
CMC 20180929
Comodo 20180929
CrowdStrike Falcon (ML) 20180723
Cybereason 20180225
Cylance 20180929
Cyren 20180929
DrWeb 20180929
eGambit 20180929
Emsisoft 20180929
Endgame 20180730
ESET-NOD32 20180929
F-Prot 20180929
F-Secure 20180929
Fortinet 20180929
GData 20180929
Ikarus 20180929
Sophos ML 20180717
Jiangmin 20180929
K7AntiVirus 20180929
K7GW 20180929
Kaspersky 20180929
Kingsoft 20180929
Malwarebytes 20180929
MAX 20180929
McAfee 20180929
McAfee-GW-Edition 20180929
Microsoft 20180929
eScan 20180929
NANO-Antivirus 20180929
Palo Alto Networks (Known Signatures) 20180929
Panda 20180929
Qihoo-360 20180929
Rising 20180929
SentinelOne (Static ML) 20180926
Sophos AV 20180929
SUPERAntiSpyware 20180907
Symantec 20180928
Symantec Mobile Insight 20180924
TACHYON 20180929
Tencent 20180929
TotalDefense 20180929
TrendMicro 20180929
TrendMicro-HouseCall 20180929
Trustlook 20180929
VBA32 20180928
VIPRE 20180929
ViRobot 20180929
Webroot 20180929
Yandex 20180927
Zillya 20180928
ZoneAlarm by Check Point 20180925
Zoner 20180927
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
2
Uncompressed size
5671816
Highest datetime
2007-09-14 23:02:04
Lowest datetime
2000-05-03 05:20:10
Contained files by extension
exe
1
DLL
1
Contained files by type
Portable Executable
2
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x42196545

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
282112

ZipCompressedSize
135748

FileTypeExtension
zip

ZipFileName
CNCS232.DLL

ZipBitFlag
0

ZipModifyDate
2000:05:03 05:20:10

File identification
MD5 27007292185b9cde562ee841ab252254
SHA1 ef22319ce867437e76ddb466419e62bdb745d0ed
SHA256 396fd93788e52064c555073419df07f35d7b351b7383206f9c33f55603dd1e6a
ssdeep
98304:MNZHqk+wZakoK+7WNmxh4jdT2bvabOA0aWzvNBETRHdfWCUl:mhHohWNm34R2zsOA9SBELfUl

File size 5.2 MB ( 5443286 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID foobar2000 component (61.5%)
ZIP compressed archive (30.7%)
PrintFox/Pagefox bitmap (var. P) (7.6%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2015-01-11 23:19:53 UTC ( 4 years, 4 months ago )
Last submission 2018-09-29 12:30:06 UTC ( 7 months, 3 weeks ago )
File names pencil-and-paper-2174-jetelecharge.zip
pencil-and-paper-2174-jetelecharge.zip
pencil-and-paper-2174-jetelecharge.zip
pencil-and-paper-2174-jetelecharge.zip
pencil-and-paper-2174-jetelecharge.zip
pencil-and-paper-2174-jetelecharge.zip
pencil-and-paper-2174.zip
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!