× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 45761419841633f485e8efd820ad3f3795be35b356c37fe131f48c0a4f90311c
File name: calibre-portable-installer-3.40.1.exe
Detection ratio: 0 / 64
Analysis date: 2019-03-09 20:46:15 UTC ( 1 week, 6 days ago ) View latest
Antivirus Result Update
Acronis 20190222
Ad-Aware 20190309
AegisLab 20190309
AhnLab-V3 20190309
Alibaba 20190306
ALYac 20190309
Antiy-AVL 20190309
Arcabit 20190309
Avast 20190309
Avast-Mobile 20190308
AVG 20190309
Avira (no cloud) 20190309
Babable 20180918
Baidu 20190306
BitDefender 20190309
Bkav 20190308
CAT-QuickHeal 20190309
ClamAV 20190309
CMC 20190309
Comodo 20190309
CrowdStrike Falcon (ML) 20190212
Cybereason 20190109
Cyren 20190309
DrWeb 20190309
eGambit 20190309
Emsisoft 20190309
Endgame 20190215
ESET-NOD32 20190309
F-Secure 20190309
Fortinet 20190309
GData 20190309
Ikarus 20190309
Sophos ML 20181128
Jiangmin 20190309
K7AntiVirus 20190309
K7GW 20190309
Kaspersky 20190309
Kingsoft 20190309
Malwarebytes 20190309
MAX 20190309
McAfee 20190309
McAfee-GW-Edition 20190309
Microsoft 20190307
eScan 20190309
NANO-Antivirus 20190309
Palo Alto Networks (Known Signatures) 20190309
Panda 20190309
Qihoo-360 20190309
Rising 20190309
SentinelOne (Static ML) 20190203
Sophos AV 20190309
SUPERAntiSpyware 20190307
Symantec Mobile Insight 20190220
TACHYON 20190309
Tencent 20190309
TheHacker 20190308
TotalDefense 20190309
Trapmine 20190301
TrendMicro-HouseCall 20190309
Trustlook 20190309
VBA32 20190307
ViRobot 20190309
Yandex 20190308
ZoneAlarm by Check Point 20190309
Zoner 20190309
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
GNU GPL v3.0

Product calibre
Original name calibre-portable-installer-3.40.1.exe
Internal name calibre-portable-installer-3.40.1
File version 3.40.1.0
Description Calibre Portable Installer
Signature verification Signed file, verified signature
Signing date 7:31 AM 3/8/2019
Signers
[+] Kovid Goyal
Status Valid
Issuer DigiCert SHA2 Assured ID Code Signing CA
Valid from 12:00 AM 06/23/2018
Valid to 12:00 PM 08/25/2020
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint CC43795402E4EB7D8EBA4B5355A7EB9FC44F86B4
Serial number 0C A6 08 EF 2F F8 6A ED 3F 1D FC 6D 1A 10 C0 88
[+] DigiCert SHA2 Assured ID Code Signing CA
Status Valid
Issuer DigiCert Assured ID Root CA
Valid from 12:00 PM 10/22/2013
Valid to 12:00 PM 10/22/2028
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 92C1588E85AF2201CE7915E8538B492F605B80C6
Serial number 04 09 18 1B 5F D5 BB 66 75 53 43 B5 6F 95 50 08
[+] DigiCert
Status Valid
Issuer DigiCert Assured ID Root CA
Valid from 12:00 AM 11/10/2006
Valid to 12:00 AM 11/10/2031
Valid usage Server Auth, Client Auth, Email Protection, Code Signing, Timestamp Signing
Algorithm sha1RSA
Thumbprint 0563B8630D62D75ABBC8AB1E4BDFB5A899B24D43
Serial number 0C E7 E0 E5 17 D8 46 FE 8F E5 60 FC 1B F0 30 39
Counter signers
[+] Symantec SHA256 TimeStamping Signer - G2
Status Valid
Issuer Symantec SHA256 TimeStamping CA
Valid from 12:00 AM 01/02/2017
Valid to 11:59 PM 04/01/2028
Valid usage Timestamp Signing
Algorithm sha256RSA
Thumbrint 625AEC3AE4EDA1D169C4EE909E85B3BBC61076D3
Serial number 54 58 F2 AA D7 41 D6 44 BC 84 A9 7B A0 96 52 E6
[+] Symantec SHA256 TimeStamping CA
Status Valid
Issuer VeriSign Universal Root Certification Authority
Valid from 12:00 AM 01/12/2016
Valid to 11:59 PM 01/11/2031
Valid usage Timestamp Signing
Algorithm sha256RSA
Thumbrint 6FC9EDB5E00AB64151C1CDFCAC74AD2C7B7E3BE4
Serial number 7B 05 B1 D4 49 68 51 44 F7 C9 89 D2 9C 19 9D 12
[+] VeriSign Universal Root Certification Authority
Status Valid
Issuer VeriSign Universal Root Certification Authority
Valid from 12:00 AM 04/02/2008
Valid to 11:59 PM 12/01/2037
Valid usage Server Auth, Client Auth, Email Protection, Code Signing, Timestamp Signing
Algorithm sha256RSA
Thumbrint 3679CA35668772304D30A5FB873B0FA77BB70D54
Serial number 40 1A C4 64 21 B3 13 21 03 0E BB E4 12 1A C5 1D
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2019-03-08 06:31:19
Entry Point 0x0000A098
Number of sections 6
PE sections
Overlays
MD5 dd6197424d6d51c5502ac68783875807
File type data
Offset 57479168
Size 7104
Entropy 7.33
PE imports
GetStdHandle
GetDriveTypeW
FileTimeToSystemTime
SystemTimeToTzSpecificLocalTime
DeleteCriticalSection
GetCurrentProcess
GetConsoleMode
LocalAlloc
FreeEnvironmentStringsW
InitializeSListHead
SetStdHandle
WideCharToMultiByte
WriteFile
GetSystemTimeAsFileTime
HeapReAlloc
GetStringTypeW
GetOEMCP
LocalFree
FormatMessageW
GetTimeZoneInformation
LoadResource
FindClose
TlsGetValue
GetFullPathNameW
SetLastError
PeekNamedPipe
RemoveDirectoryW
IsDebuggerPresent
ExitProcess
UnhandledExceptionFilter
LoadLibraryExW
MultiByteToWideChar
SetFilePointerEx
MoveFileExW
SetUnhandledExceptionFilter
IsProcessorFeaturePresent
DecodePointer
SetEnvironmentVariableA
TerminateProcess
GetModuleHandleExW
SetCurrentDirectoryW
GetCurrentThreadId
WriteConsoleW
InitializeCriticalSectionAndSpinCount
HeapFree
EnterCriticalSection
FreeLibrary
QueryPerformanceCounter
TlsAlloc
FlushFileBuffers
RtlUnwind
SystemTimeToFileTime
OpenProcess
GetStartupInfoW
CreateDirectoryW
DeleteFileW
GetProcAddress
GetProcessHeap
GetTempFileNameW
CompareStringW
GetModuleFileNameW
FindNextFileW
DuplicateHandle
FindFirstFileExW
LocalSize
CreateFileW
GetFileType
TlsSetValue
HeapAlloc
LeaveCriticalSection
GetLastError
DosDateTimeToFileTime
LCMapStringW
GetConsoleCP
GetEnvironmentStringsW
SizeofResource
GetCurrentDirectoryW
GetCurrentProcessId
LockResource
SetFileTime
GetCommandLineW
GetCPInfo
HeapSize
GetCommandLineA
RaiseException
TlsFree
SetFilePointer
ReadFile
CloseHandle
GetACP
GetModuleHandleW
GetFileAttributesExW
IsValidCodePage
FindResourceW
CreateProcessW
Sleep
EnumProcesses
GetProcessImageFileNameW
SHFileOperationW
SHGetPathFromIDListW
SHBrowseForFolderW
CommandLineToArgvW
PathRemoveFileSpecW
PathFindFileNameW
MessageBeep
MessageBoxW
CoCreateInstance
CoUninitialize
CoInitialize
Number of PE resources by type
RT_ICON 9
EXTRA 1
RT_GROUP_ICON 1
RT_VERSION 1
RT_MANIFEST 1
Number of PE resources by language
ENGLISH US 13
PE resources
Debug information
ExifTool file metadata
CodeSize
111616

SubsystemVersion
6.0

LinkerVersion
14.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
3.40.1.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
Calibre Portable Installer

ImageFileCharacteristics
Executable, 32-bit

CharacterSet
Windows, Latin1

InitializedDataSize
57370624

EntryPoint
0xa098

OriginalFileName
calibre-portable-installer-3.40.1.exe

MIMEType
application/octet-stream

LegalCopyright
GNU GPL v3.0

FileVersion
3.40.1.0

TimeStamp
2019:03:08 07:31:19+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
calibre-portable-installer-3.40.1

ProductVersion
3.40.1

UninitializedDataSize
0

OSVersion
6.0

FileOS
Windows NT 32-bit

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
calibre-ebook.com

LegalTrademarks
calibre is a registered U.S. trademark number 3,666,525

ProductName
calibre

ProductVersionNumber
3.40.1.0

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 bcbbff827e743ea8e0dcf7d64841aa1b
SHA1 facd187866e5c447a1056bbeec642d45412be6fd
SHA256 45761419841633f485e8efd820ad3f3795be35b356c37fe131f48c0a4f90311c
ssdeep
1572864:lq2Vi0T5p6/5zRx4oUtj7aixiwgj7UpvyQNixb:lPVK/tRtUtP7XxpvyH

authentihash 4a414576f9e8da1f79fb790cf501692056fd6d0055c195b54c4df23c0739d20f
imphash 9cc2c97c3b7210369a084fd98a703e37
File size 54.8 MB ( 57486272 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable (generic) (42.7%)
OS/2 Executable (generic) (19.2%)
Generic Win/DOS Executable (18.9%)
DOS Executable Generic (18.9%)
Tags
peexe via-tor signed overlay

VirusTotal metadata
First submission 2019-03-08 08:14:37 UTC ( 2 weeks, 1 day ago )
Last submission 2019-03-19 17:45:03 UTC ( 3 days, 17 hours ago )
File names calibre-portable-installer-3.40.1.exe
calibre-portable-installer-3.40.1.exe
calibre-portable-installer-3.40.1.exe
calibre-portable_3-40-1_fr_404678.exe
calibre-portable-installer-3.40.1
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!