× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 6fd21acbb06e0fb73528de99a760c57017acd76004bf7c9477c1ced1e06ff4eb
File name: SNB.exe
Detection ratio: 0 / 55
Analysis date: 2016-02-21 08:36:23 UTC ( 1 year, 5 months ago ) View latest
Antivirus Result Update
Ad-Aware 20160221
AegisLab 20160221
Yandex 20160220
AhnLab-V3 20160220
Alibaba 20160221
ALYac 20160221
Antiy-AVL 20160220
Arcabit 20160221
Avast 20160221
AVG 20160221
Avira (no cloud) 20160220
AVware 20160221
Baidu-International 20160221
BitDefender 20160221
Bkav 20160220
ByteHero 20160221
CAT-QuickHeal 20160220
ClamAV 20160221
CMC 20160219
Comodo 20160221
Cyren 20160221
DrWeb 20160221
Emsisoft 20160221
ESET-NOD32 20160221
F-Prot 20160221
F-Secure 20160219
Fortinet 20160220
GData 20160221
Ikarus 20160221
Jiangmin 20160221
K7AntiVirus 20160221
K7GW 20160221
Kaspersky 20160221
Malwarebytes 20160221
McAfee 20160221
McAfee-GW-Edition 20160220
Microsoft 20160221
eScan 20160221
NANO-Antivirus 20160221
nProtect 20160219
Panda 20160220
Qihoo-360 20160221
Rising 20160221
Sophos AV 20160221
SUPERAntiSpyware 20160221
Symantec 20160219
Tencent 20160221
TheHacker 20160217
TrendMicro 20160221
TrendMicro-HouseCall 20160221
VBA32 20160220
VIPRE 20160221
ViRobot 20160221
Zillya 20160219
Zoner 20160221
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright (C) 2014

Product Skype: No Border
Original name SNB.exe
Internal name SNB.exe
File version 1.2.3.0
Description Skype: No Border
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2016-02-21 08:35:53
Entry Point 0x00003799
Number of sections 5
PE sections
PE imports
RegCreateKeyExW
RegDeleteValueW
RegCloseKey
RegQueryValueExW
RegSetValueExW
GetStockObject
GetLastError
GetSystemTimeAsFileTime
GetCurrentProcessId
GetModuleFileNameW
QueryPerformanceCounter
IsDebuggerPresent
EncodePointer
IsProcessorFeaturePresent
GetCurrentThreadId
DecodePointer
GetModuleHandleW
?_Xout_of_range@std@@YAXPBD@Z
?_Xlength_error@std@@YAXPBD@Z
?_Syserror_map@std@@YAPBDH@Z
?_Winerror_map@std@@YAPBDH@Z
?_Xbad_alloc@std@@YAXXZ
_purecall
__wgetmainargs
??1type_info@@UAE@XZ
__crtTerminateProcess
memset
__dllonexit
_controlfp_s
swprintf_s
wcscpy_s
_invoke_watson
_onexit
_fmode
_cexit
?terminate@@YAXXZ
??2@YAPAXI@Z
_lock
memcpy
exit
??_V@YAXPAX@Z
_commode
__setusermatherr
_initterm_e
_wcmdln
_amsg_exit
_CxxThrowException
_unlock
_crt_debugger_hook
??3@YAXPAX@Z
__CxxFrameHandler3
_except_handler4_common
_initterm
_XcptFilter
__crtUnhandledException
__crtGetShowWindowMode
memmove
_calloc_crt
__crtSetUnhandledExceptionFilter
_configthreadlocale
_exit
__set_app_type
Shell_NotifyIconW
RegisterWindowMessageW
PostQuitMessage
DefWindowProcW
FindWindowW
KillTimer
GetMessageW
ShowWindow
GetSystemMetrics
MessageBoxW
RegisterClassExW
AppendMenuW
TranslateMessage
PostMessageW
DispatchMessageW
GetCursorPos
CreatePopupMenu
CheckMenuItem
SendMessageW
SetTimer
LoadImageW
TrackPopupMenu
GetMenuState
LoadCursorW
LoadIconW
CreateWindowExW
GetWindowLongW
SetForegroundWindow
DestroyWindow
VerQueryValueW
GetFileVersionInfoW
GetFileVersionInfoSizeW
Number of PE resources by type
RT_ICON 4
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 7
PE resources
ExifTool file metadata
SubsystemVersion
6.0

LinkerVersion
12.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
1.2.3.0

UninitializedDataSize
0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

CharacterSet
Unicode

InitializedDataSize
47104

EntryPoint
0x3799

OriginalFileName
SNB.exe

MIMEType
application/octet-stream

LegalCopyright
Copyright (C) 2014

FileVersion
1.2.3.0

TimeStamp
2016:02:21 09:35:53+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
SNB.exe

ProductVersion
1.2.3.0

FileDescription
Skype: No Border

OSVersion
6.0

FileOS
Windows NT 32-bit

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Recelate

CodeSize
12288

ProductName
Skype: No Border

ProductVersionNumber
1.2.3.0

FileTypeExtension
exe

ObjectFileType
Unknown

Compressed bundles
File identification
MD5 fc576c3f93b23cdb505269e899415c26
SHA1 e5acf3ee6f46749fabf09fe983777e8dbb1f50c6
SHA256 6fd21acbb06e0fb73528de99a760c57017acd76004bf7c9477c1ced1e06ff4eb
ssdeep
768:oZ6uDKQFrY6QwSzEt6zhKGvnZnzSyUHqKDZo3:SDnrMwk5FKGfZnzXihZo3

authentihash d64a81ffdbdc57c3dcf58e341731306e18a8ca629f220ffae3684c8494ad2af7
imphash edb0c4f7b2adb072722a10dd2b52c24c
File size 58.0 KB ( 59392 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win64 Executable (generic) (64.6%)
Win32 Dynamic Link Library (generic) (15.4%)
Win32 Executable (generic) (10.5%)
Generic Win/DOS Executable (4.6%)
DOS Executable Generic (4.6%)
Tags
peexe

VirusTotal metadata
First submission 2016-02-21 08:36:23 UTC ( 1 year, 5 months ago )
Last submission 2017-03-01 04:55:35 UTC ( 4 months, 3 weeks ago )
File names SNB.exe
SNB.exe
SNB.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!