× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 88c6fa7fffbe9557096021e970eefa283046db53b41eb351149967bb0e396164
File name: 88c6fa7fffbe9557096021e970eefa283046db53b41eb351149967bb0e396164
Detection ratio: 15 / 69
Analysis date: 2018-11-27 18:26:51 UTC ( 2 months, 3 weeks ago ) View latest
Antivirus Result Update
Avast FileRepMalware 20181127
AVG FileRepMalware 20181127
ClamAV Win.Trojan.Emotet-6748801-0 20181127
CrowdStrike Falcon (ML) malicious_confidence_100% (W) 20181022
Cybereason malicious.8132c5 20180225
Cylance Unsafe 20181127
Emsisoft Trojan.Emotet (A) 20181127
ESET-NOD32 a variant of Win32/Kryptik.GNFC 20181127
Sophos ML heuristic 20181108
McAfee Emotet-FKN!959CF8C8132C 20181127
Microsoft Trojan:Win32/Emotet.AC!bit 20181127
Palo Alto Networks (Known Signatures) generic.ml 20181127
SentinelOne (Static ML) static engine - malicious 20181011
Trapmine malicious.moderate.ml.score 20181126
Webroot W32.Trojan.Emotet 20181127
Ad-Aware 20181127
AegisLab 20181127
AhnLab-V3 20181127
Alibaba 20180921
ALYac 20181127
Antiy-AVL 20181127
Arcabit 20181127
Avast-Mobile 20181127
Avira (no cloud) 20181127
Babable 20180918
Baidu 20181127
BitDefender 20181127
Bkav 20181127
CAT-QuickHeal 20181127
CMC 20181127
Comodo 20181127
Cyren 20181127
DrWeb 20181127
eGambit 20181127
Endgame 20181108
F-Prot 20181127
F-Secure 20181127
Fortinet 20181127
GData 20181127
Ikarus 20181127
Jiangmin 20181127
K7AntiVirus 20181127
K7GW 20181127
Kaspersky 20181127
Kingsoft 20181127
Malwarebytes 20181127
MAX 20181127
McAfee-GW-Edition 20181127
eScan 20181127
NANO-Antivirus 20181127
Panda 20181127
Qihoo-360 20181127
Rising 20181127
Sophos AV 20181127
SUPERAntiSpyware 20181121
Symantec 20181127
Symantec Mobile Insight 20181121
TACHYON 20181127
Tencent 20181127
TheHacker 20181126
TotalDefense 20181127
TrendMicro 20181127
TrendMicro-HouseCall 20181127
Trustlook 20181127
VBA32 20181127
ViRobot 20181127
Yandex 20181127
Zillya 20181127
ZoneAlarm by Check Point 20181127
Zoner 20181127
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
© Microsoft Corporation

Product Microsoft®
Internal name securit
File version 3.00.
Description V
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2018-11-27 18:01:29
Entry Point 0x00049F49
Number of sections 5
PE sections
PE imports
GetNamedPipeClientProcessId
GetCurrentProcess
GetTimeZoneInformation
GetStringScripts
GetUserDefaultLangID
DeleteFileA
GetTickCount
GetModuleHandleA
LZSeek
RpcServerUnregisterIfEx
MapVirtualKeyA
DdeConnect
timeGetTime
CoGetCallerTID
CoInvalidateRemoteMachineBindings
Number of PE resources by type
RT_STRING 5
RT_RCDATA 1
RT_VERSION 1
Number of PE resources by language
NEUTRAL 6
ENGLISH US 1
PE resources
Debug information
ExifTool file metadata
SpecialBuild
[pre-release version: pre-alpha]

SubsystemVersion
5.0

LinkerVersion
12.1

ImageVersion
5.0

FileSubtype
0

FileVersionNumber
8.0.0.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
V

ImageFileCharacteristics
Executable, 32-bit

CharacterSet
Windows, Latin1

InitializedDataSize
61440

EntryPoint
0x49f49

MIMEType
application/octet-stream

LegalCopyright
Microsoft Corporation

FileVersion
3.00.

TimeStamp
2018:11:27 19:01:29+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
securit

UninitializedDataSize
0

OSVersion
5.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
S Corpora

CodeSize
689152

ProductName
Microsoft

ProductVersionNumber
0.0.0.0

FileTypeExtension
exe

ObjectFileType
Dynamic link library

File identification
MD5 959cf8c8132c5b3ccdcedf620d2890db
SHA1 262292d56fbe3d39b4a2cf146d766ada0f1aa042
SHA256 88c6fa7fffbe9557096021e970eefa283046db53b41eb351149967bb0e396164
ssdeep
3072:gugN5WzegWOmWDXERcS2KRXtDBgjgZEh5XFBS0x3+4:g3N5Cegj7oLJ1mhdb

authentihash 7e1ac837810511e7bef3121d6ca377d740ce6229cd996b66734e5fcea249d5c8
imphash 805f6b0ae5a68e274a051d361d4f1ff0
File size 356.0 KB ( 364544 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Dynamic Link Library (generic) (38.4%)
Win32 Executable (generic) (26.3%)
OS/2 Executable (generic) (11.8%)
Generic Win/DOS Executable (11.6%)
DOS Executable Generic (11.6%)
Tags
peexe

VirusTotal metadata
First submission 2018-11-27 18:26:51 UTC ( 2 months, 3 weeks ago )
Last submission 2018-11-28 01:00:36 UTC ( 2 months, 3 weeks ago )
File names muestra_AD
securit
Advanced heuristic and reputation engines
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!