× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 52734e7cb98c81e7d6505256f97aab768138a526ad11c4f0311786c825537535
File name: 52734e7cb98c81e7d6505256f97aab768138a526ad11c4f0311786c825537535
Detection ratio: 27 / 66
Analysis date: 2018-05-15 04:10:01 UTC ( 9 months, 1 week ago )
Antivirus Result Update
Ad-Aware Gen:Variant.Symmi.67433 20180515
AegisLab Gen.Variant.Symmi!c 20180515
ALYac Gen:Variant.Symmi.67433 20180515
Arcabit Trojan.Symmi.D10769 20180514
AVware LooksLike.Win32.Dridex.e (v) 20180428
Baidu Win32.Trojan.WisdomEyes.16070401.9500.9999 20180511
BitDefender Gen:Variant.Symmi.67433 20180515
CrowdStrike Falcon (ML) malicious_confidence_100% (W) 20180418
Cylance Unsafe 20180515
Emsisoft Gen:Variant.Symmi.67433 (B) 20180515
Endgame malicious (high confidence) 20180507
F-Secure Gen:Variant.Symmi.67433 20180515
Fortinet W32/Kryptik.GAWO!tr 20180515
GData Gen:Variant.Symmi.67433 20180515
Sophos ML heuristic 20180503
Kaspersky Trojan-Banker.Win32.Shiotob.wpu 20180515
MAX malware (ai score=98) 20180515
McAfee GenericRXDX-TS!06E820E50F33 20180515
McAfee-GW-Edition GenericRXDX-TS!06E820E50F33 20180514
eScan Gen:Variant.Symmi.67433 20180515
Palo Alto Networks (Known Signatures) generic.ml 20180515
Panda Trj/CI.A 20180514
Symantec ML.Attribute.HighConfidence 20180514
TrendMicro-HouseCall TROJ_GEN.R020H0CEE18 20180515
VIPRE LooksLike.Win32.Dridex.e (v) 20180515
Webroot W32.Trojan.Gen 20180515
ZoneAlarm by Check Point Trojan-Banker.Win32.Shiotob.wpu 20180515
AhnLab-V3 20180514
Alibaba 20180515
Antiy-AVL 20180515
Avast 20180515
Avast-Mobile 20180514
AVG 20180515
Avira (no cloud) 20180515
Babable 20180406
Bkav 20180514
CAT-QuickHeal 20180514
ClamAV 20180514
CMC 20180514
Comodo 20180515
Cybereason None
Cyren 20180515
eGambit 20180515
ESET-NOD32 20180515
F-Prot 20180515
Ikarus 20180514
Jiangmin 20180515
K7AntiVirus 20180514
K7GW 20180515
Kingsoft 20180515
Malwarebytes 20180515
Microsoft 20180515
NANO-Antivirus 20180515
nProtect 20180515
Qihoo-360 20180515
Rising 20180515
SentinelOne (Static ML) 20180225
Sophos AV 20180515
SUPERAntiSpyware 20180515
Symantec Mobile Insight 20180515
Tencent 20180515
TheHacker 20180509
TotalDefense 20180514
TrendMicro 20180515
Trustlook 20180515
VBA32 20180514
ViRobot 20180514
Yandex 20180513
Zillya 20180514
Zoner 20180514
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
© Microsoft Corporation. All rights reserved.

Product Microsoft® Visual Studio® 2015
Original name MFC140JPN.DLL
Internal name MFC140JPN.DLL
File version 14.0.23026.0 built by: WCSETUP
Description MFC Language Specific Resources
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2028-12-25 04:27:37
Entry Point 0x000021C4
Number of sections 5
PE sections
PE imports
CryptEncrypt
QueryThreadCycleTime
FlsGetValue
NetGetAnyDCName
LogicalToPhysicalPoint
DrawCaption
Number of PE resources by type
RT_STRING 60
RT_DIALOG 27
RT_MENU 1
RT_VERSION 1
Struct(240) 1
Number of PE resources by language
JAPANESE DEFAULT 90
PE resources
ExifTool file metadata
MIMEType
application/octet-stream

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

TimeStamp
2028:12:25 05:27:37+01:00

FileType
Win32 EXE

PEType
PE32

CodeSize
0

LinkerVersion
12.0

FileTypeExtension
exe

InitializedDataSize
221184

SubsystemVersion
5.0

EntryPoint
0x21c4

OSVersion
5.0

ImageVersion
0.0

UninitializedDataSize
0

File identification
MD5 06e820e50f33c1c45d97441346b78699
SHA1 8dccfa8813a57b3f51a2641be8a80d4f9d55aa1f
SHA256 52734e7cb98c81e7d6505256f97aab768138a526ad11c4f0311786c825537535
ssdeep
1536:/cqFk6/mrc8H4HyRWluKahU4jSK/rxviEQdQqHLEPVzM/xSr9uPrVv:NRmrRWluBK4j+5QqGzmSErV

authentihash 87a48975fb8f30b862de0af27f7173da51dbebf157dcfdca29e72e969a2f9fa7
imphash f739b6a73b8310523644cfcc1956a7f7
File size 224.0 KB ( 229376 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable (generic) (35.7%)
Win16/32 Executable Delphi generic (16.4%)
OS/2 Executable (generic) (16.0%)
Generic Win/DOS Executable (15.8%)
DOS Executable Generic (15.8%)
Tags
peexe

VirusTotal metadata
First submission 2018-05-14 20:13:07 UTC ( 9 months, 1 week ago )
Last submission 2018-05-15 04:10:01 UTC ( 9 months, 1 week ago )
File names MFC140JPN.DLL
5450.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!