× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: bc0673785f7544b9b28139033b363cb1d557224804a1f975f51fb167445f4c1f
File name: Samp (35)(2).vir0.rename
Detection ratio: 36 / 60
Analysis date: 2018-10-25 00:06:41 UTC ( 7 months ago )
Antivirus Result Update
AegisLab Trojan.ZIP.Generic.4!c 20181024
Alibaba TrojanDropper:MSIL/Injector.ce3d5e99 20180921
ALYac Trojan.Dropper.WVA 20181024
Antiy-AVL Trojan/Win32.TSGeneric 20181023
Arcabit Trojan.Dropper.WVA 20181024
Avast MSIL:Injector-IJ [Trj] 20181024
AVG MSIL:Injector-IJ [Trj] 20181024
Avira (no cloud) TR/Dropper.MSIL.Gen2 20181024
BitDefender Trojan.Dropper.WVA 20181024
ClamAV Legacy.Exploit.slvlight-33 20181024
Comodo UnclassifiedMalware 20181024
Cylance Unsafe 20181025
Cyren W32/CVE130074.B.gen!Eldorado 20181024
DrWeb Exploit.CVE2013-0074.22 20181024
Emsisoft Trojan.Dropper.WVA (B) 20181024
F-Prot W32/CVE130074.B.gen!Eldorado 20181024
F-Secure Trojan.Dropper.WVA 20181024
Fortinet W32/FVL_CVE2013.0074!exploit 20181024
GData Trojan.Dropper.WVA 20181024
Ikarus Trojan.Win32.Exploit 20181024
K7AntiVirus Trojan ( 700000121 ) 20181024
K7GW Trojan ( 700000121 ) 20181024
Kaspersky Exploit.MSIL.CVE-2013-0074.fr 20181024
MAX malware (ai score=82) 20181025
McAfee Exploit-FVL!CVE2013-0074 20181024
McAfee-GW-Edition Exploit-FVL!CVE2013-0074 20181024
Microsoft Trojan:Win32/Tiggre!rfn 20181024
NANO-Antivirus Exploit.Win32.CVE20130074.duihpx 20181024
Panda Trj/CI.A 20181024
Qihoo-360 Win32/Trojan.4e3 20181025
Sophos AV Mal/Generic-S 20181024
Symantec Trojan.Gen.2 20181024
TheHacker Trojan/Exploit.CVE-2013-0074.bf 20181024
Yandex Exploit.CVE-2013-0074! 20181024
Zillya Exploit.CVE.Win32.144 20181024
ZoneAlarm by Check Point Exploit.MSIL.CVE-2013-0074.fr 20181024
Ad-Aware 20181024
AhnLab-V3 20181024
Avast-Mobile 20181024
Babable 20180918
Baidu 20181024
Bkav 20181024
CAT-QuickHeal 20181024
CMC 20181024
CrowdStrike Falcon (ML) 20181022
Cybereason 20180225
eGambit 20181025
Endgame 20180730
ESET-NOD32 20181024
Sophos ML 20180717
Jiangmin 20181024
Kingsoft 20181025
Malwarebytes 20181024
eScan 20181024
Palo Alto Networks (Known Signatures) 20181025
Rising 20181024
SentinelOne (Static ML) 20181011
SUPERAntiSpyware 20181022
Symantec Mobile Insight 20181001
TACHYON 20181024
Tencent 20181025
TotalDefense 20181024
TrendMicro 20181024
TrendMicro-HouseCall 20181024
Trustlook 20181025
VBA32 20181024
ViRobot 20181024
Webroot 20181025
Zoner 20181024
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
2
Uncompressed size
25437
Highest datetime
2014-08-07 19:40:50
Lowest datetime
2014-08-07 19:40:48
Contained files by extension
dll
1
Contained files by type
unknown
1
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0xa8c70df9

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
349

ZipCompressedSize
203

FileTypeExtension
zip

ZipFileName
AppManifest.xaml

ZipBitFlag
0x0800

ZipModifyDate
2014:08:07 19:40:50

Compressed bundles
PCAP parents
File identification
MD5 eae9d09e581e7eb81f19fe3f7493a2a3
SHA1 aa341fddc2499139a0a54fbe21c13c9500d953a8
SHA256 bc0673785f7544b9b28139033b363cb1d557224804a1f975f51fb167445f4c1f
ssdeep
192:L5z7dviboEddu9lY/YyuA/qUgGEvms7wSSmZ6zNS1KCPq9SvkX1uUOwFkm/sMDYr:hdviS9lYVuUqUwvVA0cwKA3vklTN32r

File size 10.3 KB ( 10522 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID Silverlight Application Package (73.6%)
ZIP compressed archive (21.0%)
PrintFox/Pagefox bitmap (var. P) (5.2%)
Tags
contains-pe cve-2013-0074 exploit zip

VirusTotal metadata
First submission 2014-08-08 03:02:54 UTC ( 4 years, 9 months ago )
Last submission 2018-10-25 00:06:41 UTC ( 7 months ago )
File names Samp (35)(2).vir.rename
Samp (35)(2).vir0.rename
2014-08-08-Fiesta-EK-silverlight-exploit.xap
silver.zip
2014-08-09-Fiesta-EK-silverlight-exploit.xap
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!