× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 41af94c409094ce910cb7b574fb730dcc00bdb0a63b589318e6e3575ac714c74
File name: FLVTube.exe
Detection ratio: 5 / 43
Analysis date: 2010-10-31 07:38:35 UTC ( 6 years, 7 months ago )
Antivirus Result Update
Avast Win32:FlvDirect-B 20101030
Avast5 Win32:FlvDirect-B 20101030
Fortinet Adware/FlvTube 20101031
GData Win32:FlvDirect-B 20101031
Kaspersky not-a-virus:AdWare.Win32.FlvTube.c 20101031
AhnLab-V3 20101030
AntiVir 20101029
Antiy-AVL 20101031
Authentium 20101031
AVG 20101030
BitDefender 20101031
CAT-QuickHeal 20101026
ClamAV 20101031
Comodo 20101031
DrWeb 20101030
Emsisoft 20101031
eSafe 20101028
eTrust-Vet 20101029
F-Prot 20101030
F-Secure 20101031
Ikarus 20101031
Jiangmin 20101030
K7AntiVirus 20101029
McAfee 20101031
McAfee-GW-Edition 20101030
Microsoft 20101030
NOD32 20101029
Norman 20101030
nProtect 20101031
Panda 20101030
PCTools 20101031
Prevx 20101031
Rising 20101029
Sophos 20101031
Sunbelt 20101031
SUPERAntiSpyware 20101031
Symantec 20101031
TheHacker 20101030
TrendMicro 20101031
TrendMicro-HouseCall 20101031
VBA32 20101029
ViRobot 20101030
VirusBuster 20101030
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
(c) Design and Marketing D.M. S.A.

Publisher Design and Marketing D.M. S.A.
Product FLVTube
Original name FLVTube.exe
Internal name FLVTube.exe
File version 1.1.1.3
Description FLVTube Installer
PE header basic information
Number of sections 6
PE sections
PE imports
RegCloseKey
RegDeleteValueW
RegCreateKeyExW
RegSetValueExW
RegOpenKeyExW
RegEnumKeyExW
RegDeleteKeyW
RegQueryInfoKeyW
RegEnumValueA
RegEnumKeyExA
RegDeleteValueA
RegSetValueExA
RegQueryValueExA
RegDeleteKeyA
RegCreateKeyExA
RegOpenKeyExA
DeleteObject
CreateSolidBrush
BitBlt
GetStockObject
GetObjectW
GetDeviceCaps
SelectObject
CreateCompatibleDC
CreateCompatibleBitmap
DeleteDC
OpenProcess
VirtualFree
IsProcessorFeaturePresent
GetSystemTimeAsFileTime
GetCurrentProcessId
QueryPerformanceCounter
SetUnhandledExceptionFilter
UnhandledExceptionFilter
GetStartupInfoW
InterlockedCompareExchange
InterlockedExchange
RtlUnwind
OutputDebugStringA
GetModuleHandleA
GetModuleFileNameA
GetVersion
GetSystemInfo
VirtualAlloc
VirtualProtect
GetFullPathNameW
GetExitCodeProcess
CreateProcessW
OutputDebugStringW
DebugBreak
Sleep
GetExitCodeThread
CreateThread
WaitForSingleObject
lstrlenA
lstrcmpW
MulDiv
GlobalAlloc
GlobalLock
GlobalUnlock
SetLastError
HeapFree
lstrcpyW
GetProcessHeap
HeapAlloc
SetEndOfFile
lstrcpynA
LockResource
SetCurrentDirectoryW
LoadLibraryExW
FindResourceW
LoadResource
SizeofResource
lstrcmpiW
GetCommandLineW
GetCurrentThreadId
FlushInstructionCache
GetCurrentProcess
LeaveCriticalSection
EnterCriticalSection
DeleteCriticalSection
InitializeCriticalSection
RaiseException
TerminateProcess
FreeLibrary
LoadLibraryA
GetVersionExW
RemoveDirectoryW
FindClose
FindNextFileW
DeleteFileW
SetFileAttributesW
FindFirstFileW
GetTickCount
GetTempPathW
LocalFree
LocalAlloc
GetModuleFileNameW
VirtualQuery
GetLastError
SetFileTime
WriteFile
CreateDirectoryW
LocalFileTimeToFileTime
GetCurrentDirectoryW
ReadFile
CloseHandle
CreateFileW
GetFileAttributesW
SystemTimeToFileTime
SetFilePointer
MultiByteToWideChar
WideCharToMultiByte
FormatMessageA
InterlockedIncrement
lstrlenW
InterlockedDecrement
GetProcAddress
GetModuleHandleW
strchr
_errno
_cexit
fputs
_wrename
iswdigit
realloc
_wtoi
memchr
_purecall
strtoul
strrchr
getenv
_XcptFilter
fscanf
tmpfile
_pclose
fflush
_popen
fgets
setvbuf
fwrite
ftell
fseek
clearerr
rename
_mktime64
ferror
system
remove
clock
__3@YAXPAX@Z
strftime
setlocale
_localtime64
_time64
isalnum
ispunct
tolower
strncpy
isalpha
isdigit
isupper
iscntrl
toupper
islower
strpbrk
isxdigit
atan2
sqrt
cos
modf
ldexp
pow
log
tanh
sinh
tan
fmod
srand
cosh
acos
floor
frexp
log10
atan
exp
__mb_cur_max
_iob
feof
strerror
ungetc
fopen
fread
_gmtime64
fprintf
_exit
_setjmp3
freopen
fclose
tmpnam
getc
_isatty
_write
_lseeki64
_fileno
__pioinfo
__badioinfo
_controlfp
_terminate@@YAXXZ
_itoa
_snprintf
isleadbyte
mbtowc
__set_app_type
__p__fmode
__p__commode
_wcsicmp
ceil
memcmp
strstr
rand
wcsstr
wcsncpy
strcpy
strcmp
calloc
towlower
wcstoul
wcstol
__2@YAPAXI@Z
strlen
memmove
wcslen
isspace
wcscmp
___U@YAPAXI@Z
memcpy
___V@YAXPAX@Z
sprintf
free
malloc
memset
__setusermatherr
_amsg_exit
_initterm
_wcmdln
exit
__wgetmainargs
iswctype
_onexit
_lock
__dllonexit
_unlock
abs
localeconv
longjmp
strcoll
strcat
strcspn
strncat
strtod
sin
asin
_strcmpi
fabs
_except_handler3
CoCreateGuid
CLSIDFromString
CLSIDFromProgID
CoGetClassObject
CreateStreamOnHGlobal
OleLockRunning
StringFromGUID2
OleUninitialize
OleInitialize
CoCreateInstance
CoTaskMemAlloc
CoTaskMemRealloc
CoTaskMemFree
20 more function(s) imported by ordinal)
ShellExecuteW
SHGetFolderPathW
SHAppBarMessage
Shell_NotifyIconW
PathIsDirectoryW
ObtainUserAgentString
ModifyMenuW
IsWindowVisible
wvsprintfW
CharLowerW
GetWindowTextLengthW
GetWindowTextW
BeginPaint
EndPaint
IsChild
GetFocus
SetFocus
GetDlgItem
GetSysColor
RedrawWindow
AppendMenuW
CreateAcceleratorTableW
ClientToScreen
ScreenToClient
MoveWindow
SetCapture
ReleaseCapture
FillRect
InvalidateRgn
InvalidateRect
DestroyAcceleratorTable
LoadCursorW
RegisterClassExW
SetWindowTextW
EndDialog
SetRect
GetKeyState
MessageBoxA
PostQuitMessage
UnregisterClassA
GetClassInfoExW
MessageBoxW
GetWindow
MonitorFromWindow
GetMonitorInfoW
GetParent
GetClientRect
MapWindowPoints
CreateDialogIndirectParamW
PeekMessageW
GetMessageW
TranslateMessage
DispatchMessageW
CharNextW
FindWindowA
UpdateWindow
wsprintfW
SetMenuDefaultItem
GetMenuDefaultItem
GetSubMenu
GetMenuItemID
GetMenuItemCount
IsMenu
DestroyMenu
SetActiveWindow
SetWindowPos
ShowWindow
DrawAnimatedRects
SetParent
CreateWindowExW
EnumChildWindows
FindWindowW
GetWindowRect
GetClassNameW
SystemParametersInfoW
DestroyWindow
KillTimer
SetTimer
ReleaseDC
GetDC
GetDesktopWindow
PostMessageW
TrackPopupMenu
SetForegroundWindow
GetCursorPos
LoadIconW
LoadStringW
SendMessageW
IsWindow
DestroyIcon
RegisterWindowMessageW
DefWindowProcW
GetWindowLongW
SetWindowLongW
CallWindowProcW
InternetCrackUrlW
HttpQueryInfoW
InternetCloseHandle
InternetOpenW
InternetSetOptionW
InternetConnectW
HttpOpenRequestW
HttpSendRequestW
InternetOpenUrlW
InternetReadFile
ExifTool file metadata
SubsystemVersion
5.1

InitializedDataSize
772608

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
1.1.1.3

UninitializedDataSize
0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

CharacterSet
Unicode

LinkerVersion
10.0

FileOS
Windows NT 32-bit

MIMEType
application/octet-stream

LegalCopyright
Design and Marketing D.M. S.A.

FileVersion
1.1.1.3

TimeStamp
2010:10:26 14:47:37+02:00

FileType
Win32 EXE

PEType
PE32

InternalName
FLVTube.exe

ProductVersion
4.0.301.0

FileDescription
FLVTube Installer

OSVersion
5.1

OriginalFilename
FLVTube.exe

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Design and Marketing D.M. S.A.

CodeSize
221696

ProductName
FLVTube

ProductVersionNumber
4.0.301.0

EntryPoint
0x3552b

ObjectFileType
Executable application

File identification
MD5 251afa6435476d0807274a4b0ede519f
SHA1 59b2a038172a976950fd6b32f7a07935562d11dc
SHA256 41af94c409094ce910cb7b574fb730dcc00bdb0a63b589318e6e3575ac714c74
ssdeep
24576:ai0DeNd+nldJPBZDLXWRG1rFv+8r3Mh5jt55/Lb:aidkLFBVLXWRGxF58tTLb

File size 974.6 KB ( 997984 bytes )
File type Win32 EXE
Magic literal

TrID Windows OCX File (71.0%)
Win32 Executable MS Visual C++ (generic) (21.6%)
Win32 Executable Generic (4.9%)
Generic Win/DOS Executable (1.1%)
DOS Executable Generic (1.1%)
Tags
signed

VirusTotal metadata
First submission 2010-10-31 07:38:35 UTC ( 6 years, 7 months ago )
Last submission 2010-10-31 07:38:35 UTC ( 6 years, 7 months ago )
File names FLVTube.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!