× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 9b51d61c0a9f90e3e7ffe5c48916fe9909d7743fe34700758d5abdb82e04cc94
File name: Electra-qt.exe
Detection ratio: 0 / 62
Analysis date: 2017-07-18 23:26:15 UTC ( 1 month ago )
Antivirus Result Update
Ad-Aware 20170718
AegisLab 20170718
AhnLab-V3 20170718
Alibaba 20170718
ALYac 20170718
Antiy-AVL 20170718
Arcabit 20170718
Avast 20170718
AVG 20170718
Avira (no cloud) 20170718
AVware 20170718
Baidu 20170718
BitDefender 20170718
CAT-QuickHeal 20170718
ClamAV 20170718
CMC 20170718
Comodo 20170718
CrowdStrike Falcon (ML) 20170710
Cylance 20170719
Cyren 20170718
DrWeb 20170718
Emsisoft 20170718
Endgame 20170713
ESET-NOD32 20170719
F-Prot 20170718
F-Secure 20170718
Fortinet 20170718
GData 20170718
Ikarus 20170718
Sophos ML 20170607
Jiangmin 20170719
K7AntiVirus 20170718
K7GW 20170718
Kaspersky 20170718
Kingsoft 20170719
Malwarebytes 20170718
MAX 20170718
McAfee 20170718
McAfee-GW-Edition 20170718
Microsoft 20170718
eScan 20170718
NANO-Antivirus 20170718
nProtect 20170718
Palo Alto Networks (Known Signatures) 20170719
Panda 20170718
Qihoo-360 20170719
Rising 20170718
SentinelOne (Static ML) 20170718
Sophos AV 20170718
SUPERAntiSpyware 20170719
Symantec 20170718
Symantec Mobile Insight 20170718
Tencent 20170719
TheHacker 20170717
TrendMicro 20170718
TrendMicro-HouseCall 20170718
Trustlook 20170719
VBA32 20170718
VIPRE 20170718
ViRobot 20170718
Webroot 20170719
WhiteArmor 20170713
Yandex 20170717
Zillya 20170718
ZoneAlarm by Check Point 20170718
Zoner 20170718
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
2009-2014 The Bitcoin developers, 2017 The Electra Developers

Product Electra-Qt
Original name Electra-qt.exe
Internal name Electra-qt
File version 1.0.0.0
Description Electra-Qt (OSS GUI client for Electra)
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 1999-05-08 13:16:31
Entry Point 0x000014C0
Number of sections 9
PE sections
PE imports
RegCreateKeyExW
RegCloseKey
CopySid
RegQueryValueExA
OpenEventLogA
RegDeleteKeyW
RegQueryValueExW
SetSecurityDescriptorDacl
RegFlushKey
OpenProcessToken
DeregisterEventSource
RegOpenKeyExW
RegisterEventSourceA
RegOpenKeyExA
GetTokenInformation
CloseEventLog
RegQueryInfoKeyW
RegDeleteValueW
RegEnumKeyExW
GetLengthSid
ReadEventLogA
RegSetValueExW
FreeSid
RegEnumValueW
InitializeSecurityDescriptor
ReportEventA
GetSaveFileNameW
GetOpenFileNameW
SetGraphicsMode
GetCharABCWidthsW
GetCharABCWidthsFloatW
CreateFontIndirectW
SetBkMode
GetGlyphOutlineW
CreatePen
GetBkMode
SaveDC
SetTextAlign
GetPaletteEntries
EndPath
CombineRgn
GetTextMetricsW
GetBitmapBits
StretchBlt
GetDeviceCaps
CreateDCA
LineTo
OffsetRgn
DeleteDC
SetWorldTransform
RestoreDC
PolyBezierTo
SetPolyFillMode
EndDoc
PtInRegion
StartPage
GetRegionData
FillPath
CreateDCW
CreateDIBSection
RealizePalette
SetTextColor
GetObjectA
MoveToEx
ExtTextOutW
GetObjectW
CreateEllipticRgn
CreateBitmap
BitBlt
CreatePalette
EnumFontFamiliesExW
GetStockObject
SelectPalette
GetOutlineTextMetricsW
GetDIBits
GdiFlush
SelectClipRgn
CreateCompatibleDC
GetTextExtentPoint32W
StartDocW
StrokePath
EndPage
CreateRectRgn
CloseFigure
AbortDoc
GetNearestPaletteIndex
CreateSolidBrush
GetTextFaceW
ExtCreatePen
SelectObject
GetFontData
ResetDCW
BeginPath
DeleteObject
CreateCompatibleBitmap
SelectClipPath
ImmSetCompositionFontW
ImmSetCompositionWindow
ImmGetDefaultIMEWnd
ImmNotifyIME
ImmGetContext
ImmSetCandidateWindow
ImmReleaseContext
ImmGetCompositionStringW
ImmAssociateContext
GetStdHandle
GetDriveTypeW
ReleaseMutex
FileTimeToSystemTime
CreateFileMappingA
GetFileAttributesA
WaitForSingleObject
FindFirstFileW
GetHandleInformation
GetFileAttributesW
lstrcmpW
GetLocalTime
DeleteCriticalSection
GetCurrentProcess
MoveFileW
MapViewOfFileEx
UnhandledExceptionFilter
IsValidLanguageGroup
OpenFileMappingA
SetErrorMode
GetLogicalDrives
GetFileInformationByHandle
GetThreadContext
GetLocaleInfoW
GetFileTime
IsDBCSLeadByteEx
GetTempPathA
WideCharToMultiByte
GetTempPathW
GetTimeZoneInformation
GetSystemTimeAsFileTime
GetDiskFreeSpaceA
ResumeThread
SetEvent
LocalFree
FormatMessageW
GetThreadPriority
SetWaitableTimer
GetEnvironmentVariableA
OutputDebugStringW
FindClose
TlsGetValue
FormatMessageA
GetFullPathNameW
QueueUserWorkItem
OutputDebugStringA
VirtualQuery
SetLastError
GetUserDefaultUILanguage
GetSystemTime
DeviceIoControl
InitializeCriticalSection
CopyFileW
GetUserDefaultLangID
GetModuleFileNameW
TryEnterCriticalSection
ExitProcess
GetVersionExA
GetModuleFileNameA
FlushViewOfFile
QueueUserAPC
VerSetConditionMask
SetThreadPriority
CreateDirectoryExW
GetVolumeInformationW
LoadLibraryExW
MultiByteToWideChar
SystemTimeToTzSpecificLocalTime
SetFilePointerEx
SetProcessAffinityMask
FindNextChangeNotification
CreateMutexA
SetFilePointer
SetFileAttributesW
LockFileEx
CreateSemaphoreA
CreateThread
VirtualLock
MoveFileExW
GetSystemDirectoryW
CreateSemaphoreW
CreateMutexW
ExitThread
MoveFileExA
SetThreadContext
MoveFileA
GlobalMemoryStatus
FindCloseChangeNotification
SetUnhandledExceptionFilter
GetVersion
SetCurrentDirectoryW
GlobalAlloc
GetDiskFreeSpaceExW
SetEndOfFile
GetCurrentThreadId
SleepEx
CloseHandle
AreFileApisANSI
InitializeCriticalSectionAndSpinCount
HeapFree
EnterCriticalSection
TerminateThread
LoadLibraryW
GetVersionExW
FreeLibrary
QueryPerformanceCounter
GetTickCount
TlsAlloc
VirtualProtect
FlushFileBuffers
LoadLibraryA
GlobalSize
GetStartupInfoA
UnlockFile
OpenProcess
CreateDirectoryA
DeleteFileA
GetDateFormatW
GetStartupInfoW
ReadProcessMemory
CreateDirectoryW
DeleteFileW
GetProcAddress
GetProcessHeap
CreateFileMappingW
GetProfileStringW
CompareStringW
SetCriticalSectionSpinCount
GetFileSizeEx
RemoveDirectoryW
ExpandEnvironmentStringsW
FindNextFileW
ResetEvent
CreateWaitableTimerA
FindNextFileA
IsValidLocale
DuplicateHandle
FindFirstFileExW
GetUserDefaultLCID
GetProcessAffinityMask
CreateEventW
CreateFileW
CreateEventA
GetFileType
TlsSetValue
CreateFileA
HeapAlloc
GetCurrencyFormatW
LeaveCriticalSection
GetLastError
SystemTimeToFileTime
CreateWaitableTimerW
VirtualAllocEx
GetSystemInfo
lstrlenA
GlobalFree
GetTimeFormatW
GetProcessTimes
GlobalUnlock
LockFile
RemoveDirectoryA
FindFirstChangeNotificationW
GetQueuedCompletionStatus
WaitForSingleObjectEx
SwitchToThread
GetCurrentDirectoryW
VirtualFreeEx
GetCurrentProcessId
CreateIoCompletionPort
SetFileTime
GetCommandLineW
GetCurrentThread
SuspendThread
QueryPerformanceFrequency
ReleaseSemaphore
MapViewOfFile
TlsFree
GetModuleHandleA
VirtualUnlock
ReadFile
PulseEvent
FindFirstFileA
VerifyVersionInfoW
GlobalLock
GetModuleHandleW
GetFileAttributesExW
GetLongPathNameW
UnmapViewOfFile
WriteFile
PostQueuedCompletionStatus
CreateProcessW
WaitForMultipleObjects
Sleep
TerminateProcess
OpenEventA
GetAcceptExSockaddrs
AcceptEx
VariantInit
SysAllocStringLen
Shell_NotifyIconW
ShellExecuteW
SHGetSpecialFolderPathA
SHGetFileInfoW
PathFileExistsW
PathRemoveFileSpecW
SetFocus
SetWindowRgn
SetWindowPos
EndPaint
ScrollWindowEx
WindowFromPoint
SetCaretBlinkTime
SetMenuItemInfoW
GetDC
DestroyCursor
GetCursorPos
ReleaseDC
GetMenu
TranslateMessage
UnregisterClassW
GetClassInfoW
ToAscii
SetCaretPos
CallNextHookEx
GetSysColor
LoadImageW
ClientToScreen
GetActiveWindow
InvalidateRgn
DestroyWindow
GetUserObjectInformationW
GetParent
UpdateWindow
CreateCaret
GetMessageW
ShowWindow
FlashWindowEx
ValidateRgn
PeekMessageW
SetWindowPlacement
GetClipboardFormatNameW
GetSystemMenu
SetParent
DestroyCaret
CreateCursor
CharNextExA
GetIconInfo
GetQueueStatus
RegisterClassW
IsZoomed
GetWindowPlacement
SetWindowLongW
GetKeyboardLayoutList
IsIconic
TrackPopupMenuEx
SetTimer
GetKeyboardLayout
GetSysColorBrush
CreateWindowExW
GetWindowLongW
GetUpdateRect
IsChild
MapWindowPoints
RegisterWindowMessageW
BeginPaint
DefWindowProcW
KillTimer
MapVirtualKeyW
ClipCursor
SetClipboardViewer
GetSystemMetrics
EnableMenuItem
GetWindowRect
SetCapture
ReleaseCapture
GetProcessWindowStation
DrawIconEx
SetWindowTextW
CreateIconIndirect
ScreenToClient
PostMessageW
GetKeyboardState
GetDesktopWindow
SetWindowsHookExW
LoadIconW
FindWindowExW
DispatchMessageW
SetForegroundWindow
GetAsyncKeyState
GetCaretBlinkTime
HideCaret
FindWindowW
MessageBeep
GetWindowThreadProcessId
MessageBoxW
SendMessageW
RegisterClassExW
UnhookWindowsHookEx
MoveWindow
MessageBoxA
ChangeClipboardChain
AdjustWindowRectEx
MsgWaitForMultipleObjectsEx
RegisterClipboardFormatW
GetKeyState
GetWindowRgn
GetDoubleClickTime
DestroyIcon
IsWindowVisible
SetDoubleClickTime
SetCursorPos
SystemParametersInfoW
InvalidateRect
GetClientRect
ToUnicode
GetFocus
SetCursor
PlaySoundW
DeviceCapabilitiesW
GetPrinterW
EnumFormsW
EnumPrintersW
ClosePrinter
OpenPrinterW
getaddrinfo
htonl
WSARecv
accept
ioctlsocket
WSAStartup
freeaddrinfo
WSASocketW
shutdown
WSAAddressToStringA
htons
getnameinfo
WSAGetLastError
gethostname
getsockopt
recv
send
ntohl
WSASend
ntohs
select
listen
__WSAFDIsSet
WSACleanup
WSASetLastError
WSAAsyncSelect
closesocket
setsockopt
socket
bind
connect
__lconv_init
wcsftime
fseek
fclose
_snwprintf
strtoul
fflush
isxdigit
_fmode
strtol
fputc
system
_wgetenv
fwrite
frexp
fputs
_fstat64
exit
isspace
_close
puts
iswctype
wcscoll
_exit
__dllonexit
_wfopen
_write
_clearfp
memcpy
strstr
ctime
memmove
localtime
signal
freopen
_initterm
strcmp
memchr
strncmp
fgetc
memset
strcat
_stricmp
_setmode
fgets
__pioinfo
strchr
asin
fopen
_beginthread
fgetpos
fsetpos
strftime
ftell
__initenv
_strlwr
sprintf
strrchr
_acmdln
ferror
gmtime
free
ungetc
_getdrive
__getmainargs
ungetwc
_stat
_lseeki64
_vsnprintf
putchar
_flushall
_read
wcsxfrm
strcpy
__mb_cur_max
islower
acos
isupper
_ftime
_iob
rand
_putenv
setlocale
realloc
_getcwd
strxfrm
__doserrno
_open_osfhandle
fwprintf
isprint
_setjmp3
toupper
printf
_commit
strncpy
_cexit
raise
isalnum
mktime
qsort
_tzset
_open
_onexit
wcslen
isalpha
_snprintf
putc
memcmp
__setusermatherr
log10
srand
_fdopen
getenv
atoi
vfprintf
atol
atof
strcoll
localeconv
strerror
wcscpy
_beginthreadex
strspn
_strnicmp
putwc
_tzname
malloc
sscanf
fread
_waccess
abort
fprintf
getwc
tan
ispunct
feof
_endthreadex
_amsg_exit
_control87
strlen
_lock
_get_osfhandle
towlower
_fileno
wcsrchr
longjmp
tolower
atan
_unlock
calloc
setbuf
_getch
towupper
iswprint
_errno
atan2
_filelengthi64
setvbuf
time
wcsstr
_wgetdcwd
getc
_wchmod
__set_app_type
OleUninitialize
CoUninitialize
CoInitialize
OleFlushClipboard
CoLockObjectExternal
ReleaseStgMedium
CoCreateGuid
RegisterDragDrop
CoCreateInstance
DoDragDrop
RevokeDragDrop
OleSetClipboard
CoGetMalloc
OleGetClipboard
OleIsCurrentClipboard
CoTaskMemFree
StringFromGUID2
OleInitialize
Number of PE resources by type
RT_ICON 13
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 15
PE resources
ExifTool file metadata
UninitializedDataSize
38400

LinkerVersion
2.24

ImageVersion
1.0

FileSubtype
0

FileVersionNumber
1.0.0.0

LanguageCode
English (U.S.)

FileFlagsMask
0x0000

FileDescription
Electra-Qt (OSS GUI client for Electra)

CharacterSet
Windows, Latin1

InitializedDataSize
20600832

EntryPoint
0x14c0

OriginalFileName
Electra-qt.exe

MIMEType
application/octet-stream

LegalCopyright
2009-2014 The Bitcoin developers, 2017 The Electra Developers

FileVersion
1.0.0.0

LegalTrademarks1
Distributed under the MIT/X11 software license, see the accompanying file COPYING or http://www.opensource.org/licenses/mit-license.php.

TimeStamp
1999:05:08 14:16:31+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
Electra-qt

ProductVersion
1.0.0.0

SubsystemVersion
4.0

OSVersion
4.0

FileOS
Windows NT 32-bit

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Electra

CodeSize
13837312

ProductName
Electra-Qt

ProductVersionNumber
1.0.0.0

FileTypeExtension
exe

ObjectFileType
Executable application

Compressed bundles
File identification
MD5 48de9fd0e72c7281b7461726de3079f2
SHA1 6142764792c2ca4eee5644aa0ee22bc6f7fcceda
SHA256 9b51d61c0a9f90e3e7ffe5c48916fe9909d7743fe34700758d5abdb82e04cc94
ssdeep
393216:+rtldTxjQ6+qjwD/Yo7lb4nYc/oO5DSbw3bWyq0Lh9QwTxDWyMSc2gotxfpIMsGj:MWjqglY/oO50yxIM35

authentihash 01774cdf3a09bef6f256eca7c76c8e984d59684c065e00cb2a93933817e300be
imphash 34cb9d90d49465dffeeb0d3d5892c296
File size 19.6 MB ( 20601856 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID InstallShield setup (46.2%)
Win32 EXE PECompact compressed (generic) (44.6%)
Win32 Executable (generic) (4.8%)
Generic Win/DOS Executable (2.1%)
DOS Executable Generic (2.1%)
Tags
peexe

VirusTotal metadata
First submission 2017-04-10 21:38:49 UTC ( 4 months, 1 week ago )
Last submission 2017-07-18 23:26:15 UTC ( 1 month ago )
File names Electra-qt.exe
Electra-qt
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Moved files
Deleted files
Created mutexes
Opened mutexes
Searched windows
Opened service managers
Opened services
Hooking activity
Runtime DLLs
Additional details
The file installs an application-defined hook procedure into a hook chain. You would install a hook procedure to monitor the system for certain types of events. These events are associated either with a specific thread or with all threads in the same desktop as the calling thread. This is done making use of the SetWindowsHook Windows API function.
HTTP requests
TCP connections
UDP communications