× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 6151dc6a6dab2b92d05a4ddd17da419594c6341d9509536d0c33d45df745055d
File name: 24d0.vir.tar
Detection ratio: 36 / 56
Analysis date: 2017-05-16 01:22:09 UTC ( 6 months, 1 week ago )
Antivirus Result Update
AegisLab Troj.Ransom.W32.Wanna.toNz 20170515
AhnLab-V3 Trojan/Win32.WannaCryptor.R200572 20170515
ALYac Trojan.Ransom.WannaCryptor 20170516
Antiy-AVL Trojan[Ransom]/Win32.Scatter 20170515
Arcabit Trojan.Generic.D4D2151 20170516
Avast Win32:WanaCry-A [Trj] 20170515
AVG Ransom_r.CGA 20170515
Avira (no cloud) BDS/Agent.ilyda 20170516
Baidu Win32.Worm.Rbot.a 20170503
BitDefender Trojan.GenericKD.5054801 20170515
CAT-QuickHeal Ransom.WannaCrypt.A4 20170515
ClamAV Win.Trojan.Agent-6313931-0 20170515
Comodo TrojWare.Win32.Ransom.WannaCryptor.B 20170515
Cyren W32/Trojan.AHAZ-1193 20170515
DrWeb Trojan.Encoder.11432 20170515
Emsisoft Trojan.GenericKD.5054801 (B) 20170515
ESET-NOD32 Win32/Exploit.CVE-2017-0147.A 20170515
F-Prot W32/WannaCrypt.D 20170515
F-Secure Trojan.GenericKD.5054801 20170515
Fortinet W32/WannaCryptor.D!tr 20170515
GData Trojan.GenericKD.5054801 20170515
Ikarus Trojan-Ransom.WanaCrypt 20170515
Sophos ML virtool.win32.injector.eg 20170413
Jiangmin Trojan.WanaCry.i 20170516
Kaspersky Trojan-Ransom.Win32.Wanna.m 20170516
McAfee Ransom-O 20170515
McAfee-GW-Edition Ransom-O 20170515
Microsoft Ransom:Win32/WannaCrypt 20170516
eScan Trojan.GenericKD.5054801 20170516
NANO-Antivirus Trojan.Win32.Wanna.eoqegc 20170515
Panda Trj/RansomCrypt.K 20170515
Rising Ransom.FileCryptor!8.1A7 (cloud:pN1yUsg5xNU) 20170516
Sophos AV Troj/Ransom-EMG 20170516
TrendMicro-HouseCall WORM_WCRY.A 20170515
VBA32 Trojan.Filecoder 20170515
ZoneAlarm by Check Point Trojan-Ransom.Win32.Wanna.m 20170516
Ad-Aware 20170516
Alibaba 20170515
AVware 20170515
Bkav 20170515
CMC 20170515
CrowdStrike Falcon (ML) 20170130
Endgame 20170515
K7AntiVirus 20170515
K7GW 20170515
Kingsoft 20170516
Malwarebytes 20170516
nProtect 20170516
Palo Alto Networks (Known Signatures) 20170516
Qihoo-360 20170516
SentinelOne (Static ML) 20170330
SUPERAntiSpyware 20170516
Symantec 20170515
Symantec Mobile Insight 20170516
Tencent 20170516
TheHacker 20170514
Trustlook 20170516
VIPRE 20170515
ViRobot 20170515
Webroot 20170516
WhiteArmor 20170512
Yandex 20170515
Zillya 20170511
Zoner 20170516
The file being studied is a compressed stream! More specifically, it is a TAR file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
3723264
Highest datetime
2017-05-15 13:31:00
Lowest datetime
2017-05-15 13:31:00
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/x-tar

FileType
TAR

Warning
Unsupported file type

FileTypeExtension
tar

File identification
MD5 75cfc74041d51a202982fd708bd4c0d3
SHA1 fb1ca96a8e3535d0648d1c10b218171301f9fac6
SHA256 6151dc6a6dab2b92d05a4ddd17da419594c6341d9509536d0c33d45df745055d
ssdeep
98304:YDqPoBhz1aRxcSUDk36SAEdhvxWa9P593R8yAVp2g3:YDqPe1Cxcxk3ZAEUadzR8yc4g

File size 3.6 MB ( 3724800 bytes )
File type TAR
Magic literal
POSIX tar archive

TrID TAR - Tape ARchive (100.0%)
Tags
exploit cve-2017-0147 contains-pe tar

VirusTotal metadata
First submission 2017-05-16 01:22:09 UTC ( 6 months, 1 week ago )
Last submission 2017-05-16 01:22:09 UTC ( 6 months, 1 week ago )
File names 24d0.vir.tar
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!