× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: b9e9254fa54b6e423b64173630a6e64291969c412243ed6dc2b272dd5548754c
File name: youtube-dl.exe
Detection ratio: 0 / 54
Analysis date: 2017-01-05 12:51:21 UTC ( 2 years, 4 months ago )
Antivirus Result Update
Ad-Aware 20170105
AegisLab 20170105
AhnLab-V3 20170105
Alibaba 20170105
ALYac 20170105
Antiy-AVL 20170105
Arcabit 20170105
Avast 20170105
AVG 20170105
Avira (no cloud) 20170105
AVware 20170105
Baidu 20170105
BitDefender 20170105
CAT-QuickHeal 20170105
ClamAV 20170105
CMC 20170105
Comodo 20170105
CrowdStrike Falcon (ML) 20161024
Cyren 20170105
DrWeb 20170105
ESET-NOD32 20170105
F-Prot 20170105
F-Secure 20170105
Fortinet 20170105
GData 20170105
Ikarus 20170105
Sophos ML 20161216
Jiangmin 20170105
K7AntiVirus 20170105
K7GW 20170105
Kaspersky 20170105
Kingsoft 20170105
Malwarebytes 20170105
McAfee 20170105
McAfee-GW-Edition 20170105
Microsoft 20170105
eScan 20170105
NANO-Antivirus 20170105
nProtect 20170105
Panda 20170104
Qihoo-360 20170105
Rising 20170105
Sophos AV 20170105
SUPERAntiSpyware 20170105
Symantec 20170105
Tencent 20170105
TheHacker 20170104
TrendMicro-HouseCall 20170105
Trustlook 20170105
VBA32 20170103
VIPRE 20170105
ViRobot 20170105
WhiteArmor 20161221
Yandex 20170105
Zillya 20170104
Zoner 20170105
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows command line subsystem.
FileVersionInfo properties
Product youtube-dl
Original name youtube-dl.exe
File version 2016.11.22
Description YouTube video downloader
Comments Command-line program to download videos from YouTube.com and other video sites
Packers identified
F-PROT ZIP
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2014-10-21 15:22:55
Entry Point 0x0000367A
Number of sections 5
PE sections
Overlays
MD5 9bc5b29e4756ca3919ccbc8cc31bee62
File type application/zip
Offset 2769408
Size 4801291
Entropy 7.99
PE imports
GetLastError
HeapFree
lstrlenA
GetModuleFileNameW
FreeLibrary
QueryPerformanceCounter
IsDebuggerPresent
HeapAlloc
GetThreadLocale
VirtualProtect
LoadLibraryA
HeapSetInformation
GetCurrentProcess
SizeofResource
GetCurrentProcessId
LockResource
UnhandledExceptionFilter
LoadLibraryExW
GetProcAddress
InterlockedCompareExchange
EncodePointer
GetProcessHeap
GetModuleHandleA
SetDllDirectoryA
GetCurrentThreadId
InterlockedExchange
SetUnhandledExceptionFilter
GetSystemTimeAsFileTime
SetDllDirectoryW
DecodePointer
GetModuleHandleW
LocalFree
TerminateProcess
FormatMessageA
LoadResource
VirtualFree
Sleep
IsBadReadPtr
GetTickCount
OutputDebugStringA
FindResourceA
VirtualAlloc
SetLastError
strncmp
__wgetmainargs
malloc
realloc
memset
__dllonexit
_stricmp
_snwprintf
_controlfp_s
_setmode
_invoke_watson
_onexit
_fmode
__winitenv
_cexit
?terminate@@YAXXZ
strncpy
strtol
_lock
memcpy
exit
_XcptFilter
_commode
_strdup
__setusermatherr
_initterm_e
wcsrchr
_amsg_exit
_unlock
_crt_debugger_hook
_fileno
free
getenv
_except_handler4_common
atoi
wcsncmp
_initterm
wcstombs
__iob_func
_configthreadlocale
fprintf
_exit
setvbuf
__set_app_type
SHGetSpecialFolderPathW
MessageBoxA
PE exports
Number of PE resources by type
PYTHON34.DLL 1
RT_VERSION 1
PYTHONSCRIPT 1
Number of PE resources by language
NEUTRAL 3
PE resources
ExifTool file metadata
SubsystemVersion
5.1

Comments
Command-line program to download videos from YouTube.com and other video sites

InitializedDataSize
2757120

ImageVersion
0.0

ProductName
youtube-dl

FileVersionNumber
2016.11.22.0

UninitializedDataSize
0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

CharacterSet
Unicode

LinkerVersion
10.0

FileTypeExtension
exe

OriginalFileName
youtube-dl.exe

MIMEType
application/octet-stream

FileVersion
2016.11.22

TimeStamp
2014:10:21 16:22:55+01:00

FileType
Win32 EXE

PEType
PE32

ProductVersion
2016.11.22

FileDescription
YouTube video downloader

OSVersion
5.1

FileOS
Windows NT 32-bit

Subsystem
Windows command line

MachineType
Intel 386 or later, and compatibles

CodeSize
11264

FileSubtype
0

ProductVersionNumber
1.0.0.1

EntryPoint
0x367a

ObjectFileType
Executable application

Compressed bundles
File identification
MD5 166e846af78d9c6f879e5b215afb178b
SHA1 cf21a472f7550326a2ec666a31fb5d9b105f25dc
SHA256 b9e9254fa54b6e423b64173630a6e64291969c412243ed6dc2b272dd5548754c
ssdeep
98304:AgJRHgOjfrjHumMb1hsjYlJeCVkTbaOWf4K/h/9TRM7VrZL/A1qpxVETuZIHaWFe:v/8L/XCTbapfvFTWjUcVETN6WFceI5

authentihash 2b0e22898814960bad373ece1c12d5c6cfcbebd143972d8b9e4ad576ec8ee4dd
imphash 985a7b86c383570b8555b38c1f270b55
File size 7.2 MB ( 7570699 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (console) Intel 80386 32-bit

TrID Win32 EXE PECompact compressed (generic) (47.3%)
Win32 Executable MS Visual C++ (generic) (35.5%)
Win32 Dynamic Link Library (generic) (7.4%)
Win32 Executable (generic) (5.1%)
Generic Win/DOS Executable (2.2%)
Tags
peexe overlay

VirusTotal metadata
First submission 2016-11-22 15:44:07 UTC ( 2 years, 5 months ago )
Last submission 2017-01-05 12:51:21 UTC ( 2 years, 4 months ago )
File names hacked.exe
youtube-dl.exe
tmp83F0.tmp.exe
youtube-dl.exe
tmp1076.tmp.exe
youtube-dl.exe
youtube-dl.exe
youtube-dl-2016.11.22.exe
YouTube-DL.exe
youtube-dl.exe
youtube-dl.exe
youtube-dl.exe
youtube-dl.exe
youtube-dl.exe
ApowersoftVideoHelper.dll
youtube-dl.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!