× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 44f142a401a235ca23f21e9971c6af6cc0be90513afa77e376f6a5878480c391
File name: oranml.dll
Detection ratio: 0 / 61
Analysis date: 2017-05-29 08:09:43 UTC ( 1 year, 11 months ago )
Antivirus Result Update
Ad-Aware 20170529
AegisLab 20170529
AhnLab-V3 20170529
Alibaba 20170527
ALYac 20170529
Arcabit 20170528
Avast 20170529
AVG 20170528
Avira (no cloud) 20170529
AVware 20170529
Baidu 20170527
BitDefender 20170529
Bkav 20170526
CAT-QuickHeal 20170529
ClamAV 20170529
CMC 20170528
Comodo 20170529
CrowdStrike Falcon (ML) 20170420
Cyren 20170529
DrWeb 20170529
Emsisoft 20170529
Endgame 20170515
ESET-NOD32 20170529
F-Prot 20170529
F-Secure 20170529
Fortinet 20170529
GData 20170529
Ikarus 20170529
Sophos ML 20170519
Jiangmin 20170529
K7AntiVirus 20170529
K7GW 20170529
Kaspersky 20170529
Kingsoft 20170529
Malwarebytes 20170529
McAfee 20170529
McAfee-GW-Edition 20170529
Microsoft 20170529
eScan 20170529
NANO-Antivirus 20170529
nProtect 20170529
Palo Alto Networks (Known Signatures) 20170529
Panda 20170528
Qihoo-360 20170529
Rising 20170528
SentinelOne (Static ML) 20170516
Sophos AV 20170529
SUPERAntiSpyware 20170529
Symantec 20170529
Symantec Mobile Insight 20170526
Tencent 20170529
TheHacker 20170528
TotalDefense 20170529
TrendMicro 20170529
TrendMicro-HouseCall 20170525
VBA32 20170526
VIPRE 20170529
ViRobot 20170529
Webroot 20170529
WhiteArmor 20170524
Yandex 20170526
Zillya 20170527
ZoneAlarm by Check Point 20170529
Zoner 20170529
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright Oracle 1979, 2004. All rights reserved.

Original name oranml.dll
File version 9.2.0.0.0
Description Oracle EM Agent Linked-List Library
Packers identified
PEiD Armadillo v1.xx - v2.xx
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2004-10-20 13:31:51
Entry Point 0x00001641
Number of sections 5
PE sections
Overlays
MD5 68a3a44b4c2f9861d156a2f2274c6e68
File type ASCII text
Offset 24576
Size 272
Entropy 1.48
PE imports
DisableThreadLibraryCalls
malloc
_adjust_fdiv
__dllonexit
_onexit
free
printf
_initterm
sscoreserverflag
ss_mem_fre
snmifmc
PE exports
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
ENGLISH US 1
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
4.0

LinkerVersion
6.0

ImageVersion
0.0

FileVersionNumber
9.2.0.0

UninitializedDataSize
0

LanguageCode
English (U.S.)

FileFlagsMask
0x0000

CharacterSet
Unicode

InitializedDataSize
16384

EntryPoint
0x1641

OriginalFileName
oranml.dll

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
9.2.0.0.0

TimeStamp
2004:10:20 14:31:51+01:00

FileType
Win32 DLL

PEType
PE32

FileDescription
Oracle EM Agent Linked-List Library

OSVersion
4.0

FileOS
Unknown (0)

LegalCopyright
Copyright Oracle 1979, 2004. All rights reserved.

MachineType
Intel 386 or later, and compatibles

CompanyName
Oracle Corporation

CodeSize
4096

FileSubtype
0

ProductVersionNumber
0.0.0.0

FileTypeExtension
dll

ObjectFileType
Dynamic link library

File identification
MD5 bdac444eeac467d9f4d43273e3c28d2c
SHA1 d283843f1f04c088c4540e6c222c41c282876060
SHA256 44f142a401a235ca23f21e9971c6af6cc0be90513afa77e376f6a5878480c391
ssdeep
96:fLOwA2KacC04U3zwYv2bp0k5WsKwuGGKXT8g8TbMNT9:mjacj4Yv2bpTEsKwuGGKXT8gygP

authentihash 765d832a19edc0fe0fe4ba2aef0fd89db9b7f96ee8393e94ffffc613dd69b0e6
imphash a87c8b6476bf125bc9671f1aa7415044
File size 24.3 KB ( 24848 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (GUI) Intel 80386 32-bit

TrID Win32 Dynamic Link Library (generic) (43.5%)
Win32 Executable (generic) (29.8%)
Generic Win/DOS Executable (13.2%)
DOS Executable Generic (13.2%)
Tags
armadillo pedll overlay

VirusTotal metadata
First submission 2014-10-06 19:35:53 UTC ( 4 years, 7 months ago )
Last submission 2014-10-06 19:35:53 UTC ( 4 years, 7 months ago )
File names BDAC444EEAC467D9F4D43273E3C28D2C
oranml.dll
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!