× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: b46eef8e96f55a480e7dc483c0964a99dd3f78b9d4d2dbaf2698d8bcdb910b6c
File name: MigrationTool.exe
Detection ratio: 0 / 48
Analysis date: 2013-10-19 10:10:44 UTC ( 3 years, 7 months ago ) View latest
Antivirus Result Update
Yandex 20131018
AhnLab-V3 20131018
AntiVir 20131019
Antiy-AVL 20131019
Avast 20131019
AVG 20131019
Baidu-International 20131019
BitDefender 20131012
Bkav 20131019
ByteHero 20131011
CAT-QuickHeal 20131019
ClamAV 20131019
Commtouch 20131019
Comodo 20131019
DrWeb 20131019
Emsisoft 20131019
ESET-NOD32 20131018
F-Prot 20131019
F-Secure 20131019
Fortinet 20131019
GData 20131019
Ikarus 20131019
Jiangmin 20131019
K7AntiVirus 20131018
K7GW 20131018
Kaspersky 20131019
Kingsoft 20130829
Malwarebytes 20131019
McAfee 20131019
McAfee-GW-Edition 20131019
Microsoft 20131019
eScan 20131019
NANO-Antivirus 20131019
Norman 20131019
nProtect 20131018
Panda 20131019
PCTools 20131002
Rising 20131018
Sophos 20131019
SUPERAntiSpyware 20131019
Symantec 20131019
TheHacker 20131018
TotalDefense 20131019
TrendMicro 20131019
TrendMicro-HouseCall 20131019
VBA32 20131018
VIPRE 20131019
ViRobot 20131019
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file.
FileVersionInfo properties
Copyright
© NGO Flightsim Estonia

Publisher NGO Flightsim Estonia
Product Migration Tool
File version 1.9.1.319
Description FSX to Prepar3D Migration Tool
Signature verification A certificate chain could not be built to a trusted root authority.
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2013-10-19 09:35:41
Entry Point 0x00015C2E
Number of sections 8
PE sections
PE imports
SHCopyKeyA
RegCloseKey
CreateFontA
GetProcAddress
GetModuleHandleA
ExitProcess
LoadLibraryA
CoTaskMemFree
SysFreeString
ShellExecuteA
MessageBoxA
GetFileVersionInfoA
Number of PE resources by type
RT_ICON 22
BIN 11
RT_GROUP_ICON 6
RT_DIALOG 4
RT_MANIFEST 1
RT_VERSION 1
Number of PE resources by language
ENGLISH US 45
PE resources
Compressed bundles
File identification
MD5 ccfd6b42f5b7bd43eccb7e996dd6d512
SHA1 60aa7ac507dba525a593a4b803f07b7a036870d1
SHA256 b46eef8e96f55a480e7dc483c0964a99dd3f78b9d4d2dbaf2698d8bcdb910b6c
ssdeep
49152:3QwSjVjwWcqXU5mcEJD/SOT80r2FU3Z3PbvYBDJFRE:WjVjwWcqXrNDFAkZ3TABDJTE

File size 2.2 MB ( 2282064 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable (generic) (52.9%)
Generic Win/DOS Executable (23.5%)
DOS Executable Generic (23.4%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
Tags
peexe

VirusTotal metadata
First submission 2013-10-19 10:10:44 UTC ( 3 years, 7 months ago )
Last submission 2013-11-16 17:20:15 UTC ( 3 years, 6 months ago )
File names MigrationTool.exe
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!