× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 881099e07208825e280ae5d775d452ab5e92a33a7490f82a315c9117173eb50b
File name: 533677
Detection ratio: 0 / 55
Analysis date: 2016-01-31 11:04:07 UTC ( 3 years ago ) View latest
Antivirus Result Update
Ad-Aware 20160130
AegisLab 20160130
Yandex 20160129
AhnLab-V3 20160129
Alibaba 20160129
ALYac 20160130
Antiy-AVL 20160130
Arcabit 20160130
Avast 20160130
AVG 20160130
Avira (no cloud) 20160130
Baidu-International 20160129
BitDefender 20160130
Bkav 20160129
ByteHero 20160131
CAT-QuickHeal 20160129
ClamAV 20160130
CMC 20160130
Comodo 20160130
Cyren 20160129
DrWeb 20160130
Emsisoft 20160130
ESET-NOD32 20160130
F-Prot 20160129
F-Secure 20160129
Fortinet 20160130
GData 20160130
Ikarus 20160129
Jiangmin 20160129
K7AntiVirus 20160129
K7GW 20160129
Kaspersky 20160129
Malwarebytes 20160130
McAfee 20160130
McAfee-GW-Edition 20160130
Microsoft 20160130
eScan 20160130
NANO-Antivirus 20160130
nProtect 20160129
Panda 20160129
Qihoo-360 20160131
Rising 20160129
Sophos AV 20160130
SUPERAntiSpyware 20160130
Symantec 20160129
Tencent 20160131
TheHacker 20160130
TotalDefense 20160129
TrendMicro 20160130
TrendMicro-HouseCall 20160130
VBA32 20160128
VIPRE 20160130
ViRobot 20160129
Zillya 20160130
Zoner 20160130
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
3230276
Highest datetime
2014-08-11 15:38:10
Lowest datetime
2014-08-11 15:38:10
Contained files by extension
exe
1
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x84d52ba4

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
3230276

ZipCompressedSize
3203282

FileTypeExtension
zip

ZipFileName
setup.exe

ZipBitFlag
0x0002

ZipModifyDate
2014:08:11 15:38:10

Compressed bundles
File identification
MD5 6e8c691be651d9bda33a648c229f3679
SHA1 15d456bcab957cae9dbe222cf1d9dc6047816cd7
SHA256 881099e07208825e280ae5d775d452ab5e92a33a7490f82a315c9117173eb50b
ssdeep
49152:cLm729z4wCZjGMTWsVf0169vPMhhOA5wWGcD5oetQoCF76hP5LaJE4pPPuar2nJk:cL02W6EW6fG8vUEizXxqFOl5+Et/g3

File size 3.1 MB ( 3203434 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2015-02-26 18:01:31 UTC ( 3 years, 11 months ago )
Last submission 2018-05-09 00:42:13 UTC ( 9 months, 2 weeks ago )
File names 533677
NuCode.zip
NuCode.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!