× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 58ef070a55cfff7710b9c1bc67f9d64c005881f95fa71b995f017cec97eee922
File name: SpecialImagePlayer.zip
Detection ratio: 4 / 57
Analysis date: 2015-09-03 06:27:29 UTC ( 14 hours, 57 minutes ago )
Antivirus Result Update
Avast NSIS:Relevant-I [PUP] 20150903
Baidu-International Adware.Win32.RK.AP 20150902
ESET-NOD32 Win32/Adware.RK.AP 20150903
Rising PE:Malware.Generic/QRS!1.9E2D[F1] 20150902
ALYac 20150903
AVG 20150903
AVware 20150901
Ad-Aware 20150903
AegisLab 20150902
Agnitum 20150901
AhnLab-V3 20150903
Alibaba 20150902
Antiy-AVL 20150903
Arcabit 20150903
Avira 20150903
BitDefender 20150903
Bkav 20150901
ByteHero 20150903
CAT-QuickHeal 20150903
CMC 20150902
ClamAV 20150903
Comodo 20150903
Cyren 20150903
DrWeb 20150903
Emsisoft 20150903
F-Prot 20150903
F-Secure 20150903
Fortinet 20150903
GData 20150903
Ikarus 20150903
Jiangmin 20150902
K7AntiVirus 20150902
K7GW 20150903
Kaspersky 20150903
Kingsoft 20150903
Malwarebytes 20150903
McAfee 20150903
McAfee-GW-Edition 20150903
MicroWorld-eScan 20150902
Microsoft 20150902
NANO-Antivirus 20150903
Panda 20150902
Qihoo-360 20150903
SUPERAntiSpyware 20150903
Sophos 20150903
Symantec 20150902
Tencent 20150903
TheHacker 20150903
TotalDefense 20150903
TrendMicro 20150903
TrendMicro-HouseCall 20150903
VBA32 20150902
VIPRE 20150902
ViRobot 20150903
Zillya 20150902
Zoner 20150903
nProtect 20150902
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
1596899
Highest datetime
2013-05-16 22:28:22
Lowest datetime
2013-05-16 22:28:22
Contained files by extension
exe
1
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x6e741cd7

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
1596899

ZipCompressedSize
1571046

FileTypeExtension
zip

ZipFileName
SpecialImagePlayer.exe

ZipBitFlag
0

ZipModifyDate
2013:05:16 22:28:11

File identification
MD5 3056e4859f7671237e277fdb7fd5c0b8
SHA1 b40bb852dd859aabccb74d7d42f29b0a0941fa25
SHA256 58ef070a55cfff7710b9c1bc67f9d64c005881f95fa71b995f017cec97eee922
ssdeep
24576:N7I/MZNj7ZED6Xv/ZBB7W9cjP1Tl+HipzCEleVVku2aAITI+Q9I6KN4o/0BzCir6:N7siN/ZEWRWgP1Tl+H+OEcMt719I6ZoF

File size 1.5 MB ( 1571188 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (100.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2013-05-17 07:09:16 UTC ( 2 years, 3 months ago )
Last submission 2015-09-03 06:27:29 UTC ( 14 hours, 57 minutes ago )
File names SLIDE FOTOS - SpecialImagePlayer.zip
e4b2661ecbe54012f2e2a9bd66c8e23edf4ec1da
SpecialImagePlayer.zip
special-image-player-7194-jetelecharge.zip
file
SpecialImagePlayer.zip
file-5561116_zip
myfile
SpecialImagePlayer.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: http://www.clamav.net/doc/pua.html .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!