× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 47fa20c5a1f2d3538fc60e26ac194a15434f6452c469cd848ca88949602939aa
File name: rsload.net.WinRAR.v4.11.keygen-FFF.zip
Detection ratio: 23 / 59
Analysis date: 2018-05-12 05:29:48 UTC ( 5 months, 1 week ago )
Antivirus Result Update
Antiy-AVL Trojan/Win32.Tgenic 20180512
AVware Trojan.Win32.Generic!BT 20180428
CAT-QuickHeal Hacktool.Keygen 20180511
ClamAV Win.Trojan.Keygen-44 20180512
Comodo ApplicUnwnt.Win32.Keygen.~A 20180512
Cylance Unsafe 20180512
Cyren W32/Risk.BIXN-7248 20180512
ESET-NOD32 Win32/Keygen.AI potentially unsafe 20180512
F-Prot W32/MalwareS.TUI 20180512
Fortinet W32/Dx.QIC 20180512
GData Win32.Application.Agent.OUS8IB 20180512
Ikarus not-a-virus.Keygen.WinRAR 20180511
Sophos ML heuristic 20180503
K7AntiVirus Trojan ( 0045769b1 ) 20180512
K7GW Trojan ( 0045769b1 ) 20180512
Malwarebytes RiskWare.Tool.HCK 20180512
McAfee RDN/Generic PUP.z 20180512
Microsoft HackTool:Win32/Keygen 20180511
NANO-Antivirus Trojan.Win32.MalwareS.ipxqy 20180512
Panda Generic Malware 20180511
Sophos AV Keygen (PUA) 20180511
TrendMicro CRCK_KEYGEN 20180512
Yandex Trojan.MalwareS!5WcBZHxKWMA 20180511
Ad-Aware 20180512
AegisLab 20180512
AhnLab-V3 20180511
Alibaba 20180511
ALYac 20180512
Arcabit 20180512
Avast 20180512
Avast-Mobile 20180511
AVG 20180512
Avira (no cloud) 20180512
Babable 20180406
Baidu 20180511
BitDefender 20180512
Bkav 20180511
CMC 20180511
CrowdStrike Falcon (ML) 20180418
Cybereason None
eGambit 20180512
Emsisoft 20180512
Endgame 20180507
F-Secure 20180511
Jiangmin 20180512
Kaspersky 20180512
Kingsoft 20180512
MAX 20180512
eScan 20180512
nProtect 20180512
Palo Alto Networks (Known Signatures) 20180512
Qihoo-360 20180512
Rising 20180512
SentinelOne (Static ML) 20180225
SUPERAntiSpyware 20180512
Symantec 20180511
Symantec Mobile Insight 20180511
Tencent 20180512
TheHacker 20180509
Trustlook 20180512
VBA32 20180511
VIPRE 20180512
ViRobot 20180512
Webroot 20180512
Zillya 20180511
ZoneAlarm by Check Point 20180512
Zoner 20180511
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
10
Uncompressed size
5501648
Highest datetime
2012-02-20 17:47:22
Lowest datetime
2009-07-14 03:16:14
Contained files by extension
exe
3
url
2
NFO
1
DIZ
1
dll
1
Contained files by type
unknown
4
Portable Executable
4
directory
2
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
rsload.net.WinRAR.v4.11.keygen-FFF/

ZipBitFlag
0

ZipModifyDate
2012:02:20 17:47:22

File identification
MD5 f34cfac806ecc4862b5cf8e48f338f1c
SHA1 568954d1e0fb85cc33b305e7b8fe9e660b601a9f
SHA256 47fa20c5a1f2d3538fc60e26ac194a15434f6452c469cd848ca88949602939aa
ssdeep
98304:b2BwPfCaLPVKJ8gWGwsw79U8iKm5DCEP8RfsSHlN:S6PdM82wsw7+V5IXHD

File size 3.6 MB ( 3808912 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID Mozilla Firefox browser extension (66.6%)
ZIP compressed archive (33.3%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2012-02-24 15:58:09 UTC ( 6 years, 7 months ago )
Last submission 2018-05-12 05:29:48 UTC ( 5 months, 1 week ago )
File names rsload.net.WinRAR.v4.11.keygen-FFF.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!