× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: ac9ba7ba1c0d4b36937f7e6eadfe02f8f76bd2d34bf60fcc1e6f39dd2b21a285
File name: MsgMan32
Detection ratio: 0 / 63
Analysis date: 2018-07-03 08:03:41 UTC ( 8 months, 2 weeks ago )
Antivirus Result Update
Ad-Aware 20180703
AegisLab 20180703
AhnLab-V3 20180703
ALYac 20180703
Antiy-AVL 20180703
Arcabit 20180703
Avast 20180703
Avast-Mobile 20180703
AVG 20180703
Avira (no cloud) 20180703
AVware 20180703
Babable 20180406
Baidu 20180703
BitDefender 20180703
Bkav 20180702
CAT-QuickHeal 20180702
ClamAV 20180703
CMC 20180702
Comodo 20180703
CrowdStrike Falcon (ML) 20180530
Cybereason 20180225
Cyren 20180703
DrWeb 20180703
eGambit 20180703
Emsisoft 20180703
Endgame 20180612
ESET-NOD32 20180703
F-Prot 20180703
F-Secure 20180703
Fortinet 20180703
GData 20180703
Ikarus 20180703
Sophos ML 20180601
Jiangmin 20180703
K7AntiVirus 20180703
K7GW 20180703
Kaspersky 20180703
Kingsoft 20180703
Malwarebytes 20180703
MAX 20180703
McAfee 20180703
McAfee-GW-Edition 20180703
Microsoft 20180703
eScan 20180703
NANO-Antivirus 20180703
Palo Alto Networks (Known Signatures) 20180703
Panda 20180702
Qihoo-360 20180703
SentinelOne (Static ML) 20180701
Sophos AV 20180703
SUPERAntiSpyware 20180703
Symantec 20180702
TACHYON 20180703
Tencent 20180703
TheHacker 20180628
TotalDefense 20180703
Trustlook 20180703
VBA32 20180629
VIPRE 20180703
ViRobot 20180703
Webroot 20180703
Yandex 20180702
Zillya 20180702
ZoneAlarm by Check Point 20180703
Zoner 20180702
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © 1994-2007

Original name MsgMan32.dll
Internal name MsgMan32
File version 2.25
Description Common Message File Manager
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2007-02-14 14:53:53
Entry Point 0x00005BCD
Number of sections 5
PE sections
PE imports
HeapFree
GetStdHandle
LCMapStringW
ReleaseMutex
SetHandleCount
lstrlenA
lstrcmpiA
WaitForSingleObject
GetOEMCP
LCMapStringA
HeapDestroy
HeapAlloc
IsBadWritePtr
GetEnvironmentStringsW
GetVersionExA
LoadLibraryA
RtlUnwind
IsDBCSLeadByte
FreeEnvironmentStringsA
OpenFile
GetCurrentProcess
GetEnvironmentStrings
lstrcatA
WideCharToMultiByte
MultiByteToWideChar
HeapSize
FreeEnvironmentStringsW
GetCommandLineA
GetProcAddress
_lread
GetFileType
CreateMutexA
_lclose
GetCPInfo
GetStringTypeA
GetModuleHandleA
lstrcmpA
SetUnhandledExceptionFilter
lstrcpyA
GetStartupInfoA
CloseHandle
lstrcpynA
GetACP
HeapReAlloc
GetStringTypeW
TerminateProcess
GetModuleFileNameA
GetEnvironmentVariableA
HeapCreate
WriteFile
VirtualFree
IsBadReadPtr
IsBadCodePtr
ExitProcess
GetVersion
VirtualAlloc
DisableThreadLibraryCalls
GetMenuState
ModifyMenuA
SetWindowTextA
GetSubMenu
GetMenuItemCount
CharNextA
EnumChildWindows
SendMessageA
MessageBoxA
GetClassNameA
GetDlgItem
CharUpperBuffA
GetMenuStringA
GetWindowTextA
CharUpperA
wsprintfA
GetMenuItemID
PE exports
Number of PE resources by type
RT_STRING 1
RT_VERSION 1
Number of PE resources by language
ENGLISH UK 2
PE resources
ExifTool file metadata
SubsystemVersion
4.0

LinkerVersion
6.0

ImageVersion
0.0

FileVersionNumber
1.0.0.1

UninitializedDataSize
0

LanguageCode
English (British)

FileFlagsMask
0x003f

CharacterSet
Unicode

InitializedDataSize
32768

EntryPoint
0x5bcd

OriginalFileName
MsgMan32.dll

MIMEType
application/octet-stream

LegalCopyright
Copyright 1994-2007

FileVersion
2.25

TimeStamp
2007:02:14 15:53:53+01:00

FileType
Win32 DLL

PEType
PE32

InternalName
MsgMan32

FileDescription
Common Message File Manager

OSVersion
4.0

FileOS
Windows NT 32-bit

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Wordcraft International Ltd.

CodeSize
36864

FileSubtype
0

ProductVersionNumber
1.0.0.1

FileTypeExtension
dll

ObjectFileType
Dynamic link library

File identification
MD5 1bf0837dc7b11e07d1dcb852a4fe285f
SHA1 afa8eea8a6099b89495da3c345bec53a5a494984
SHA256 ac9ba7ba1c0d4b36937f7e6eadfe02f8f76bd2d34bf60fcc1e6f39dd2b21a285
ssdeep
1536:itLmLJuXaRDroXwEePiBuu1PtFuC6aKzN:HIXwEaottqzN

authentihash dd5e1e2d4284ac095fdcdde8c74921bb80df6f8da5f04e2b637a96a34d612725
imphash f2558091cd13c55d9ccfdd9609f08ec5
File size 68.0 KB ( 69632 bytes )
File type Win32 DLL
Magic literal
PE32 executable for MS Windows (DLL) (GUI) Intel 80386 32-bit

TrID Win32 Executable MS Visual C++ (generic) (41.0%)
Win64 Executable (generic) (36.3%)
Win32 Dynamic Link Library (generic) (8.6%)
Win32 Executable (generic) (5.9%)
OS/2 Executable (generic) (2.6%)
Tags
pedll

VirusTotal metadata
First submission 2009-10-15 17:12:47 UTC ( 9 years, 5 months ago )
Last submission 2009-10-15 17:12:47 UTC ( 9 years, 5 months ago )
File names MSGMAN32.DLL
MSGMAN32.DLL
aa
MSGMAN32.dll
MSGMAN32.DLL
msgman32.dll
MSGMAN32.DLL
MsgMan32.dll
MsgMan32
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!