× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 3c1fdbaca0ac686677f88b6bbf18d04c82f2c4047488c2e52da8e2347574b320
File name: testdisk-7.0.win.zip
Detection ratio: 1 / 54
Analysis date: 2015-12-19 17:11:07 UTC ( 3 years, 3 months ago ) View latest
Antivirus Result Update
Zillya Backdoor.Agent.Win32.57357 20151218
Ad-Aware 20151219
AegisLab 20151219
Yandex 20151219
AhnLab-V3 20151219
Alibaba 20151208
ALYac 20151218
Antiy-AVL 20151219
Arcabit 20151219
Avast 20151219
AVG 20151219
Avira (no cloud) 20151219
AVware 20151219
Baidu-International 20151219
BitDefender 20151219
Bkav 20151219
ByteHero 20151219
CAT-QuickHeal 20151219
ClamAV 20151219
CMC 20151217
Comodo 20151219
Cyren 20151219
DrWeb 20151219
Emsisoft 20151219
ESET-NOD32 20151219
F-Prot 20151219
F-Secure 20151218
Fortinet 20151219
GData 20151219
Ikarus 20151219
Jiangmin 20151219
K7AntiVirus 20151219
K7GW 20151219
Kaspersky 20151219
Malwarebytes 20151219
McAfee 20151219
McAfee-GW-Edition 20151219
Microsoft 20151219
eScan 20151219
NANO-Antivirus 20151219
nProtect 20151218
Panda 20151219
Qihoo-360 20151219
Rising 20151218
Sophos AV 20151219
SUPERAntiSpyware 20151219
Symantec 20151217
TheHacker 20151218
TrendMicro 20151219
TrendMicro-HouseCall 20151219
VBA32 20151218
VIPRE 20151219
ViRobot 20151219
Zoner 20151219
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
47
Uncompressed size
29272265
Highest datetime
2015-04-18 13:02:02
Lowest datetime
2008-03-26 07:42:56
Contained files by extension
dll
17
txt
8
exe
4
htm
2
cmd
2
dat
2
xml
1
inf
1
0/
1
Contained files by type
Portable Executable
21
unknown
17
directory
6
HTML
3
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
10

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
testdisk-7.0/

ZipBitFlag
0

ZipModifyDate
2015:04:18 13:02:02

File identification
MD5 035792105f3221e1a8758e7f3f575418
SHA1 f4fb7da983740b5d5d2bc0c84c866943de85d4fc
SHA256 3c1fdbaca0ac686677f88b6bbf18d04c82f2c4047488c2e52da8e2347574b320
ssdeep
196608:gNV2tPhuicH+HMI5pRN5utA+hVE6YuSbhclJVgwypkchISbhF0sA3r05:025AihHMItNotAaUuSNMJzyhhIKT0sz

File size 11.9 MB ( 12444088 bytes )
File type ZIP
Magic literal
Zip archive data, at least v1.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe zip upx via-tor

VirusTotal metadata
First submission 2015-04-18 17:15:32 UTC ( 3 years, 11 months ago )
Last submission 2019-03-11 11:53:25 UTC ( 1 week, 6 days ago )
File names photorec Бесплатная для восстановления файлов.zip
testdisk-7.0.win.zip
testdisk-7.0.win.zip
testdisk-7.0.win(data-recovery).zip
17138_testdisk-7.0.win.zip
123.zip
testdisk-7.0.win.zip
testdisk-7.0.win(1).zip
testdisk-7.0.win-vt-1hit.zip
testdisk-7.0.win - Copy.zip
testdisk-7.0.win (1).zip
testdisk-7.0.win.zip
testdisk-7.0.win.zip.ubqu
undeleter_typ_testdisk-7.0.win.zip
testdisk-7.0.win.zip
testdisk-7.0a.win.zip
VirusShare_035792105f3221e1a8758e7f3f575418
testdisk-7.0.win (2).zip
testdisk-7.0_last-stable.win.von_herstellerseite.zip
testdisk-7.0.win-hdd-file-recorvery-tool-heise-downloads.zip
testdisk-7.0.win.zip
testdisk-7.0.win.zip
VirusShare_035792105f3221e1a8758e7f3f575418
testdisk-7.0.win_.zip
testdisk-7.0.win = TestDisk бесплатная программа для восстановления данных.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!