× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 869b9e129a9a2a3b8ffa688851a9adff603e5b739b19201f394cf35a8bdd4ec7
File name: paket.exe
Detection ratio: 1 / 58
Analysis date: 2017-02-26 12:51:13 UTC ( 1 year, 12 months ago )
Antivirus Result Update
Qihoo-360 HEUR/QVM03.0.0000.Malware.Gen 20170226
Ad-Aware 20170226
AegisLab 20170226
AhnLab-V3 20170226
Alibaba 20170226
ALYac 20170225
Antiy-AVL 20170226
Arcabit 20170226
Avast 20170226
AVG 20170226
Avira (no cloud) 20170226
AVware 20170226
Baidu 20170224
BitDefender 20170226
Bkav 20170225
CAT-QuickHeal 20170225
ClamAV 20170226
CMC 20170226
Comodo 20170226
CrowdStrike Falcon (ML) 20170130
Cyren 20170226
Emsisoft 20170226
Endgame 20170222
ESET-NOD32 20170226
F-Prot 20170226
F-Secure 20170226
Fortinet 20170226
GData 20170226
Ikarus 20170226
Sophos ML 20170203
Jiangmin 20170226
K7AntiVirus 20170226
K7GW 20170226
Kaspersky 20170226
Kingsoft 20170226
Malwarebytes 20170226
McAfee 20170225
McAfee-GW-Edition 20170226
Microsoft 20170226
eScan 20170226
NANO-Antivirus 20170226
nProtect 20170226
Panda 20170226
Rising 20170226
Sophos AV 20170226
SUPERAntiSpyware 20170226
Symantec 20170226
Tencent 20170226
TheHacker 20170223
TotalDefense 20170226
TrendMicro 20170226
TrendMicro-HouseCall 20170226
Trustlook 20170226
VBA32 20170224
VIPRE 20170226
ViRobot 20170226
Webroot 20170226
WhiteArmor 20170222
Yandex 20170225
Zillya 20170224
Zoner 20170226
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows command line subsystem.
FileVersionInfo properties
Product Paket
Original name paket.exe
File version 4.0.0.0
Description Paket
Comments A dependency manager for .NET with support for NuGet packages and git repositories.
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2017-02-17 09:46:33
Entry Point 0x005997AE
Number of sections 3
.NET details
Module Version ID fb6d3a2f-5f7e-4da7-8d70-6cea8a9f45cb
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 6
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 7
NEUTRAL 1
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
4.0

Comments
A dependency manager for .NET with support for NuGet packages and git repositories.

InitializedDataSize
111616

ImageVersion
0.0

ProductName
Paket

FileVersionNumber
4.0.0.0

UninitializedDataSize
0

LanguageCode
Neutral

FileFlagsMask
0x003f

CharacterSet
Unicode

LinkerVersion
8.0

FileTypeExtension
exe

OriginalFileName
paket.exe

MIMEType
application/octet-stream

FileVersion
4.0.0.0

TimeStamp
2017:02:17 10:46:33+01:00

FileType
Win32 EXE

PEType
PE32

ProductVersion
4.0.0-beta013

FileDescription
Paket

OSVersion
4.0

FileOS
Win32

Subsystem
Windows command line

MachineType
Intel 386 or later, and compatibles

CompanyName
Paket team

CodeSize
5863424

FileSubtype
0

ProductVersionNumber
4.0.0.0

EntryPoint
0x5997ae

ObjectFileType
Executable application

AssemblyVersion
4.0.0.0

File identification
MD5 880ea51d9eb7b3f41244b0115b238bd6
SHA1 d071e95fe0e4ed5496b9e7dc290a2b656a2405f0
SHA256 869b9e129a9a2a3b8ffa688851a9adff603e5b739b19201f394cf35a8bdd4ec7
ssdeep
49152:GPTRrnzho7zZm9I8I3QG6cVlPIU/SJWM+quFhcD0Q+OoWg:GPkm9I8I3QG6c8U4WMN9

authentihash 01eb7a8be77f5700f376be7f3da65b0782389af2daf658b56319a2b80398d349
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 5.7 MB ( 5975552 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (console) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (62.0%)
Win64 Executable (generic) (23.3%)
Win32 Dynamic Link Library (generic) (5.5%)
Win32 Executable (generic) (3.8%)
Win16/32 Executable Delphi generic (1.7%)
Tags
peexe assembly

VirusTotal metadata
First submission 2017-02-26 12:51:13 UTC ( 1 year, 12 months ago )
Last submission 2017-02-26 12:51:13 UTC ( 1 year, 12 months ago )
File names paket.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!