× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 9ca0c93334a0967b4cd54b2a75aa47013854ee4df4e14ad702fbafa68b063719
File name: firesheep-0.1-1.xpi
Detection ratio: 2 / 43
Analysis date: 2010-11-03 23:04:51 UTC ( 4 years, 7 months ago ) View latest
Antivirus Result Update
Microsoft HackTool:JS/Firesheep 20101103
TrendMicro-HouseCall HKTL_FYRSNIFF 20101103
AVG 20101103
AhnLab-V3 20101103
AntiVir 20101103
Antiy-AVL 20101103
Authentium 20101103
Avast 20101103
Avast5 20101103
BitDefender 20101103
CAT-QuickHeal 20101026
ClamAV 20101103
Comodo 20101103
DrWeb 20101103
Emsisoft 20101103
F-Prot 20101103
F-Secure 20101103
Fortinet 20101103
GData 20101103
Ikarus 20101103
Jiangmin 20101103
K7AntiVirus 20101103
Kaspersky 20101103
McAfee 20101103
McAfee-GW-Edition 20101103
NOD32 20101103
Norman 20101103
PCTools 20101103
Panda 20101103
Prevx 20101104
Rising 20101103
SUPERAntiSpyware 20101103
Sophos 20101103
Sunbelt 20101103
Symantec 20101103
TheHacker 20101102
TrendMicro 20101103
VBA32 20101103
ViRobot 20101103
VirusBuster 20101103
eSafe 20101103
eTrust-Vet 20101103
nProtect 20101103
The file being studied is a compressed stream! More specifically, it is a Mozilla Firefox Extension file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
113
Uncompressed size
13534950
Highest datetime
2010-10-24 11:41:38
Lowest datetime
2006-06-13 04:39:26
Contained files by extension
js
44
png
10
xul
8
css
5
dll
4
dtd
3
exe
1
jpg
1
rdf
1
pdb
1
xpt
1
Contained files by type
unknown
65
directory
21
XML
10
PNG
10
Portable Executable
5
JavaScript
1
JPG
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
10

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
chrome/

ZipBitFlag
0

ZipModifyDate
2010:06:13 18:05:06

Execution parents
Compressed bundles
File identification
MD5 d7693f555937f14789b51feaa40fea13
SHA1 17b78271db9128f4286cfc9c53b95417c596234f
SHA256 9ca0c93334a0967b4cd54b2a75aa47013854ee4df4e14ad702fbafa68b063719
ssdeep
49152:yGD8dUzLWTCdV6JnO83PUNc6zHz6cfY+cUOEuaAQnhJ8kT1Kwo0KgWzkvr4gAVTu:yb6Yb3uOcsUOdm5T9+kv8gD5+JKuo

File size 2.9 MB ( 3082723 bytes )
File type Mozilla Firefox Extension
Magic literal
Zip archive data, at least v1.0 to extract

TrID Mozilla Firefox browser extension (66.6%)
ZIP compressed archive (33.3%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
Tags
contains-pe xpi

VirusTotal metadata
First submission 2010-10-25 04:51:59 UTC ( 4 years, 7 months ago )
Last submission 2015-05-31 12:36:25 UTC ( 2 days, 15 hours ago )
File names 1337560
firesheep-0.1-1.xpi
firesheep-0.1-1.xpi.part
firesheep-0.1-1(2).xpi
file-1497876_xpi
firesheep-0.1-1.xpi
d7693f555937f14789b51feaa40fea13
firesheep v0.1.1.xpi
firesheep-0.1-1.xpi
prag.exe
vti-rescan
file-3184378_xpi
adder yt quote.exe
firesheep-0.1-1.xpi
firesheep-0.1-1(1).xpi
output.1337560.txt
firesheep-0.1-1.xpi
firesheep.xpi
d7693f555937f14789b51feaa40fea13.vir
firesheep-0.1-1.zip
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!