× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: b2839f1dda2ac1dddf8664d0f58c1c62d531c2eb0455009f9c11b0160eb67aca
File name: vja.exe
Detection ratio: 48 / 67
Analysis date: 2018-06-06 17:36:37 UTC ( 8 months, 2 weeks ago ) View latest
Antivirus Result Update
Ad-Aware Trojan.GenericKD.30904573 20180606
AegisLab Ml.Attribute.Gen!c 20180606
AhnLab-V3 Trojan/Win32.Emotet.R229514 20180606
ALYac Trojan.Agent.Emotet 20180606
Antiy-AVL Trojan[Banker]/Win32.Emotet 20180606
Arcabit Trojan.Generic.D1D790FD 20180606
Avast Win32:GenX 20180606
AVG Win32:GenX 20180606
AVware Trojan.Win32.Generic!BT 20180606
Baidu Win32.Trojan.WisdomEyes.16070401.9500.9999 20180606
BitDefender Trojan.GenericKD.30904573 20180606
CAT-QuickHeal Trojan.IGENERIC 20180606
Comodo TrojWare.Win32.Kryptik.~GHGF 20180606
CrowdStrike Falcon (ML) malicious_confidence_60% (W) 20180530
Cybereason malicious.fce1ab 20180225
Cylance Unsafe 20180606
Cyren W32/Trojan.GKHD-4270 20180606
DrWeb Trojan.EmotetENT.223 20180606
Emsisoft Trojan.GenericKD.30904573 (B) 20180606
Endgame malicious (high confidence) 20180507
ESET-NOD32 a variant of Win32/Kryptik.GHGF 20180606
F-Secure Trojan.GenericKD.30904573 20180606
Fortinet W32/Kryptik.GHGF!tr 20180606
GData Trojan.GenericKD.30904573 20180606
Ikarus Trojan-Banker.Emotet 20180606
Sophos ML heuristic 20180601
K7AntiVirus Trojan ( 0053316c1 ) 20180606
K7GW Trojan ( 0053316c1 ) 20180606
Kaspersky Trojan-Banker.Win32.Emotet.apvr 20180606
Malwarebytes Trojan.Emotet 20180606
MAX malware (ai score=83) 20180606
McAfee Emotet-FDM!81F55A5FCE1A 20180606
McAfee-GW-Edition Emotet-FDM!81F55A5FCE1A 20180606
Microsoft Trojan:Win32/Emotet 20180606
eScan Trojan.GenericKD.30904573 20180606
NANO-Antivirus Trojan.Win32.Emotet.fdhkvq 20180606
Palo Alto Networks (Known Signatures) generic.ml 20180606
Panda Trj/GdSda.A 20180606
Qihoo-360 HEUR/QVM20.1.8730.Malware.Gen 20180606
Sophos AV Mal/EncPk-ANX 20180606
Symantec Trojan.Gen.2 20180606
Tencent Win32.Trojan-banker.Emotet.Ebqr 20180606
TrendMicro TROJ_FRS.VSN01F18 20180606
TrendMicro-HouseCall TROJ_FRS.VSN01F18 20180606
VBA32 TrojanBanker.Emotet 20180606
ViRobot Trojan.Win32.Z.Agent.274432.AHF 20180605
Webroot W32.Trojan.Emotet 20180606
ZoneAlarm by Check Point Trojan-Banker.Win32.Emotet.apvr 20180606
Alibaba 20180606
Avast-Mobile 20180606
Avira (no cloud) 20180606
Babable 20180406
Bkav 20180606
ClamAV 20180606
CMC 20180606
eGambit 20180606
F-Prot 20180606
Jiangmin 20180606
Kingsoft 20180606
Rising 20180606
SentinelOne (Static ML) 20180225
SUPERAntiSpyware 20180606
Symantec Mobile Insight 20180605
TACHYON 20180605
TheHacker 20180606
TotalDefense 20180606
Trustlook 20180606
VIPRE 20180606
Yandex 20180529
Zoner 20180606
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright 2016 The Apache Software Foundation.

Product Apache HTTP Server
Original name htdigest.exe
Internal name htdigest.exe
File version 2.4.23
Description Apache htdigest command line utility
Comments Licensed under the Apache License, Version 2.0 (the "License"); you may not use this file except in compliance with the License. You may obtain a copy of the License at http://www.apache.org/licenses/LICENSE-2.0 Unless required by applicable law or agreed to in writing, software distributed under the License is distributed on an "AS IS" BASIS, WITHOUT WARRANTIES OR CONDITIONS OF ANY KIND, either express or implied. See the License for the specific language governing permissions and limitations under the License.
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2016-07-09 09:09:36
Entry Point 0x0000100F
Number of sections 6
PE sections
PE imports
CM_Get_Class_Name_ExW
CM_Free_Resource_Conflict_Handle
GetObjectType
ReleaseMutex
OpenEventW
CopyFileA
HeapAlloc
FlsGetValue
FindFirstFileNameTransactedW
FlsFree
NetShareDel
VarUdateFromDate
I_RpcServerUseProtseqEp2W
RpcStringFreeA
SetupDiInstallClassW
GetGUIThreadInfo
GetUpdatedClipboardFormats
GetMenuBarInfo
ChangeMenuA
midiInReset
Ord(30)
Number of PE resources by type
RT_MANIFEST 1
RT_VERSION 1
Number of PE resources by language
ENGLISH US 2
PE resources
Debug information
ExifTool file metadata
UninitializedDataSize
0

LinkerVersion
13.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
2.4.23.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
Apache htdigest command line utility

ImageFileCharacteristics
No relocs, Executable, 32-bit

CharacterSet
Unicode

InitializedDataSize
28672

EntryPoint
0x100f

OriginalFileName
htdigest.exe

MIMEType
application/octet-stream

LegalCopyright
Copyright 2016 The Apache Software Foundation.

FileVersion
2.4.23

TimeStamp
2016:07:09 10:09:36+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
htdigest.exe

ProductVersion
2.4.23

SubsystemVersion
5.0

OSVersion
5.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Apache Software Foundation

CodeSize
0

ProductName
Apache HTTP Server

ProductVersionNumber
2.4.23.0

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 81f55a5fce1abe619aca7fde5948af10
SHA1 50e47843edce332df976b43fb11256431d73e343
SHA256 b2839f1dda2ac1dddf8664d0f58c1c62d531c2eb0455009f9c11b0160eb67aca
ssdeep
1536:t3h2kRd9FEYan8MDSxNZ1jGZSlc3bDp4u1dbTZMPJpb6nu+c/qIWNPOq8:Bh2kRUjM38Ec3D1dbTUbbb/qIsPw

authentihash 77d0c9a428e8b02252035a1360a1e7a46e908f4342e4f5bb6ef634fb18c847cc
imphash 07fd6a3c557be9d93af7e305aa117bbc
File size 268.0 KB ( 274432 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID OS/2 Executable (generic) (33.6%)
Generic Win/DOS Executable (33.1%)
DOS Executable Generic (33.1%)
Tags
peexe

VirusTotal metadata
First submission 2018-05-31 12:21:12 UTC ( 8 months, 3 weeks ago )
Last submission 2018-09-14 02:14:00 UTC ( 5 months, 1 week ago )
File names 73782.exe
22384f.exe
90026.exe
(100).exe
htdigest.exe
81f55a5fce1abe619aca7fde5948af10.virobj
1088.exe
vja.exe
03967.exe
1481eb.exe
slsquota.exe
28649.exe
4852.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!