× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 5ca56075cfa99fc9ebc25478ea20d89db8657480516124f7bc01a07eeb469875
File name: avz00002.dta
Detection ratio: 0 / 47
Analysis date: 2013-06-29 21:53:39 UTC ( 5 years, 4 months ago )
Antivirus Result Update
Yandex 20130629
AhnLab-V3 20130629
AntiVir 20130629
Antiy-AVL 20130627
Avast 20130630
AVG 20130629
BitDefender 20130629
ByteHero 20130613
CAT-QuickHeal 20130629
ClamAV 20130629
Commtouch 20130629
Comodo 20130629
DrWeb 20130629
Emsisoft 20130629
eSafe 20130625
ESET-NOD32 20130629
F-Prot 20130629
F-Secure 20130629
Fortinet 20130629
GData 20130629
Ikarus 20130629
Jiangmin 20130629
K7AntiVirus 20130628
K7GW 20130628
Kaspersky 20130629
Kingsoft 20130506
Malwarebytes 20130629
McAfee 20130629
McAfee-GW-Edition 20130629
Microsoft 20130629
eScan 20130629
NANO-Antivirus 20130629
Norman 20130629
nProtect 20130628
Panda 20130629
PCTools 20130629
Rising 20130628
Sophos AV 20130629
SUPERAntiSpyware 20130629
Symantec 20130629
TheHacker 20130629
TotalDefense 20130628
TrendMicro 20130629
TrendMicro-HouseCall 20130629
VBA32 20130628
VIPRE 20130629
ViRobot 20130629
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
Copyright (C) 2010, International Business Machines Corporation and others. All Rights Reserved.

Publisher Opera Software ASA
Product International Components for Unicode
Version 4, 6, 0, 0
Original name icudt46.dll
File version 4, 6, 0, 0
Description ICU Data DLL
Comments http://icu-project.org
Signature verification Signed file, verified signature
Signing date 11:25 AM 6/24/2013
Signers
[+] Opera Software ASA
Status Valid
Issuer None
Valid from 1:00 AM 1/17/2013
Valid to 12:59 AM 2/17/2016
Valid usage Code Signing
Algorithm SHA1
Thumbprint 4DAEB250DAB07EC890E9F7A796FFC1D26C7B09D2
Serial number 76 95 2F FF 53 96 24 55 B3 52 C6 61 C2 CA 65 E5
[+] VeriSign Class 3 Code Signing 2010 CA
Status Valid
Issuer None
Valid from 1:00 AM 2/8/2010
Valid to 12:59 AM 2/8/2020
Valid usage Client Auth, Code Signing
Algorithm SHA1
Thumbprint 495847A93187CFB8C71F840CB7B41497AD95C64F
Serial number 52 00 E5 AA 25 56 FC 1A 86 ED 96 C9 D4 4B 33 C7
[+] VeriSign
Status Valid
Issuer None
Valid from 1:00 AM 11/8/2006
Valid to 12:59 AM 7/17/2036
Valid usage Server Auth, Client Auth, Email Protection, Code Signing
Algorithm SHA1
Thumbprint 4EB6D578499B1CCF5F581EAD56BE3D9B6744A5E5
Serial number 18 DA D1 9E 26 7D E8 BB 4A 21 58 CD CC 6B 3B 4A
Counter signers
[+] Symantec Time Stamping Services Signer - G4
Status Valid
Issuer None
Valid from 1:00 AM 10/18/2012
Valid to 12:59 AM 12/30/2020
Valid usage Timestamp Signing
Algorithm SHA1
Thumbrint 65439929B67973EB192D6FF243E6767ADF0834E4
Serial number 0E CF F4 38 C8 FE BF 35 6E 04 D8 6A 98 1B 1A 50
[+] Symantec Time Stamping Services CA - G2
Status Valid
Issuer None
Valid from 1:00 AM 12/21/2012
Valid to 12:59 AM 12/31/2020
Valid usage Timestamp Signing
Algorithm SHA1
Thumbrint 6C07453FFDDA08B83707C09B82FB3D15F35336B1
Serial number 7E 93 EB FB 7C C6 4E 59 EA 4B 9A 77 D4 06 FC 3B
[+] Thawte Timestamping CA
Status Valid
Issuer None
Valid from 1:00 AM 1/1/1997
Valid to 12:59 AM 1/1/2021
Valid usage Timestamp Signing
Algorithm MD5
Thumbrint BE36A4562FB2EE05DBB3D32323ADF445084ED656
Serial number 00
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2012-02-02 00:49:04
Number of sections 2
PE sections
PE exports
Number of PE resources by type
RT_VERSION 1
Number of PE resources by language
NEUTRAL 1
PE resources
ExifTool file metadata
UninitializedDataSize
0

Comments
http://icu-project.org

LinkerVersion
9.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
4.6.0.0

LanguageCode
Neutral

FileFlagsMask
0x003f

CharacterSet
ASCII

InitializedDataSize
9955840

FileOS
Win32

MIMEType
application/octet-stream

LegalCopyright
Copyright (C) 2010, International Business Machines Corporation and others. All Rights Reserved.

FileVersion
4, 6, 0, 0

TimeStamp
2012:02:02 01:49:04+01:00

FileType
Win32 DLL

PEType
PE32

SubsystemVersion
5.0

ProductVersion
4, 6, 0, 0

FileDescription
ICU Data DLL

OSVersion
5.0

OriginalFilename
icudt46.dll

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
The ICU Project

CodeSize
0

ProductName
International Components for Unicode

ProductVersionNumber
4.6.0.0

EntryPoint
0x0000

ObjectFileType
Dynamic link library

Compressed bundles
File identification
MD5 b9ac21d9256ff91ee911b9410f098125
SHA1 c5819f14771beae92662f55f6c8fbf1a5f79eb73
SHA256 5ca56075cfa99fc9ebc25478ea20d89db8657480516124f7bc01a07eeb469875
ssdeep
98304:syIexx5hdtkqAYvuCagQZhzvilh2WhHaF807suLw03:syIej5hdOqeCagQZhzvilh2WknbP

File size 9.5 MB ( 9963360 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (GUI) Intel 80386 32-bit

TrID Win32 Dynamic Link Library (generic) (43.5%)
Win32 Executable (generic) (29.8%)
Generic Win/DOS Executable (13.2%)
DOS Executable Generic (13.2%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
Tags
pedll signed

VirusTotal metadata
First submission 2013-06-29 21:53:39 UTC ( 5 years, 4 months ago )
Last submission 2013-06-29 21:53:39 UTC ( 5 years, 4 months ago )
File names icudt46.dll
avz00002.dta
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!