× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 58ef070a55cfff7710b9c1bc67f9d64c005881f95fa71b995f017cec97eee922
File name: file
Detection ratio: 3 / 55
Analysis date: 2015-07-01 23:45:10 UTC ( 3 weeks, 6 days ago )
Antivirus Result Update
Baidu-International Adware.Win32.RK.AP 20150701
ESET-NOD32 Win32/Adware.RK.AP 20150701
Rising PE:Trojan.Win32.Generic.149F4B72!345983858 20150701
ALYac 20150701
AVG 20150701
AVware 20150702
Ad-Aware 20150701
AegisLab 20150702
Agnitum 20150630
AhnLab-V3 20150701
Alibaba 20150630
Antiy-AVL 20150702
Arcabit 20150630
Avast 20150702
Avira 20150701
BitDefender 20150701
Bkav 20150701
ByteHero 20150702
CAT-QuickHeal 20150701
ClamAV 20150701
Comodo 20150702
Cyren 20150701
DrWeb 20150701
Emsisoft 20150702
F-Prot 20150702
Fortinet 20150701
GData 20150702
Ikarus 20150701
Jiangmin 20150701
K7AntiVirus 20150701
K7GW 20150701
Kaspersky 20150701
Kingsoft 20150702
Malwarebytes 20150701
McAfee 20150701
McAfee-GW-Edition 20150701
MicroWorld-eScan 20150701
Microsoft 20150701
NANO-Antivirus 20150701
Panda 20150701
Qihoo-360 20150702
SUPERAntiSpyware 20150701
Sophos 20150701
Symantec 20150701
Tencent 20150702
TheHacker 20150701
TotalDefense 20150701
TrendMicro 20150701
TrendMicro-HouseCall 20150701
VBA32 20150701
VIPRE 20150701
ViRobot 20150701
Zillya 20150701
Zoner 20150701
nProtect 20150701
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
1596899
Highest datetime
2013-05-16 22:28:22
Lowest datetime
2013-05-16 22:28:22
Contained files by extension
exe
1
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x6e741cd7

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
1596899

ZipCompressedSize
1571046

FileTypeExtension
zip

ZipFileName
SpecialImagePlayer.exe

ZipBitFlag
0

ZipModifyDate
2013:05:16 22:28:11

File identification
MD5 3056e4859f7671237e277fdb7fd5c0b8
SHA1 b40bb852dd859aabccb74d7d42f29b0a0941fa25
SHA256 58ef070a55cfff7710b9c1bc67f9d64c005881f95fa71b995f017cec97eee922
ssdeep
24576:N7I/MZNj7ZED6Xv/ZBB7W9cjP1Tl+HipzCEleVVku2aAITI+Q9I6KN4o/0BzCir6:N7siN/ZEWRWgP1Tl+H+OEcMt719I6ZoF

File size 1.5 MB ( 1571188 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (100.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2013-05-17 07:09:16 UTC ( 2 years, 2 months ago )
Last submission 2015-07-01 23:45:10 UTC ( 3 weeks, 6 days ago )
File names SLIDE FOTOS - SpecialImagePlayer.zip
e4b2661ecbe54012f2e2a9bd66c8e23edf4ec1da
SpecialImagePlayer.zip
special-image-player-7194-jetelecharge.zip
file
SpecialImagePlayer.zip
file-5561116_zip
myfile
SpecialImagePlayer.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: http://www.clamav.net/doc/pua.html .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!