× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 58ef070a55cfff7710b9c1bc67f9d64c005881f95fa71b995f017cec97eee922
File name: special-image-player-7194-jetelecharge.zip
Detection ratio: 3 / 56
Analysis date: 2016-06-08 02:16:06 UTC ( 3 weeks, 1 day ago )
Antivirus Result Update
Avast NSIS:Relevant-I [PUP] 20160608
Baidu-International Adware.Win32.RK.AP 20160606
ESET-NOD32 Win32/Adware.RK.AP 20160607
ALYac 20160608
AVG 20160608
AVware 20160607
Ad-Aware 20160608
AegisLab 20160608
AhnLab-V3 20160607
Alibaba 20160607
Antiy-AVL 20160607
Arcabit 20160608
Baidu 20160606
BitDefender 20160608
Bkav 20160607
CAT-QuickHeal 20160607
CMC 20160607
ClamAV 20160607
Comodo 20160607
Cyren 20160608
DrWeb 20160608
Emsisoft 20160608
F-Prot 20160608
F-Secure 20160608
Fortinet 20160608
GData 20160608
Ikarus 20160607
Jiangmin 20160608
K7AntiVirus 20160607
K7GW 20160608
Kaspersky 20160608
Kingsoft 20160608
Malwarebytes 20160608
McAfee 20160608
McAfee-GW-Edition 20160608
eScan 20160608
Microsoft 20160608
NANO-Antivirus 20160607
Panda 20160607
Qihoo-360 20160608
Rising 20160608
SUPERAntiSpyware 20160607
Sophos 20160608
Symantec 20160608
Tencent 20160608
TheHacker 20160607
TotalDefense 20160607
TrendMicro 20160608
TrendMicro-HouseCall 20160608
VBA32 20160607
VIPRE 20160607
ViRobot 20160607
Yandex 20160607
Zillya 20160607
Zoner 20160608
nProtect 20160607
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
1596899
Highest datetime
2013-05-16 22:28:22
Lowest datetime
2013-05-16 22:28:22
Contained files by extension
exe
1
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x6e741cd7

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
1596899

ZipCompressedSize
1571046

FileTypeExtension
zip

ZipFileName
SpecialImagePlayer.exe

ZipBitFlag
0

ZipModifyDate
2013:05:16 22:28:11

File identification
MD5 3056e4859f7671237e277fdb7fd5c0b8
SHA1 b40bb852dd859aabccb74d7d42f29b0a0941fa25
SHA256 58ef070a55cfff7710b9c1bc67f9d64c005881f95fa71b995f017cec97eee922
ssdeep
24576:N7I/MZNj7ZED6Xv/ZBB7W9cjP1Tl+HipzCEleVVku2aAITI+Q9I6KN4o/0BzCir6:N7siN/ZEWRWgP1Tl+H+OEcMt719I6ZoF

File size 1.5 MB ( 1571188 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (100.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2013-05-17 07:09:16 UTC ( 3 years, 1 month ago )
Last submission 2016-06-08 02:16:06 UTC ( 3 weeks, 1 day ago )
File names special-image-player-7194-jetelecharge.zip
SLIDE FOTOS - SpecialImagePlayer.zip
e4b2661ecbe54012f2e2a9bd66c8e23edf4ec1da
SpecialImagePlayer.zip
special-image-player-7194-jetelecharge.zip
file
SpecialImagePlayer.zip
file-5561116_zip
myfile
SpecialImagePlayer.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: http://www.clamav.net/doc/pua.html .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!