× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: bf96ebac71dcab6def25ef7b359c01f2993829248eddb6b944bf53c47ce41f81
File name: grabilla_setup.exe
Detection ratio: 0 / 54
Analysis date: 2015-11-13 18:06:51 UTC ( 2 years, 11 months ago ) View latest
Antivirus Result Update
AegisLab 20151113
Yandex 20151112
AhnLab-V3 20151113
Alibaba 20151119
ALYac 20151113
Antiy-AVL 20151113
Arcabit 20151113
Avast 20151113
AVG 20151113
Avira (no cloud) 20151113
AVware 20151113
Baidu-International 20151113
BitDefender 20151113
Bkav 20151113
ByteHero 20151113
CAT-QuickHeal 20151112
ClamAV 20151113
CMC 20151113
Comodo 20151113
Cyren 20151113
DrWeb 20151113
Emsisoft 20151113
ESET-NOD32 20151113
F-Prot 20151113
F-Secure 20151113
Fortinet 20151113
GData 20151113
Ikarus 20151113
Jiangmin 20151112
K7AntiVirus 20151113
K7GW 20151113
Kaspersky 20151113
Malwarebytes 20151113
McAfee 20151113
McAfee-GW-Edition 20151113
Microsoft 20151113
eScan 20151113
NANO-Antivirus 20151113
nProtect 20151113
Panda 20151113
Qihoo-360 20151113
Rising 20151112
Sophos AV 20151113
SUPERAntiSpyware 20151113
Symantec 20151113
Tencent 20151113
TheHacker 20151113
TrendMicro 20151113
TrendMicro-HouseCall 20151113
VBA32 20151113
VIPRE 20151113
ViRobot 20151113
Zillya 20151112
Zoner 20151113
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block and FileVersionInfo properties
Copyright
Copyright (c) 2006—2015 Grabilla.com

Product Grabilla
Original name Setup.exe
Internal name Setup.exe
File version 1.25.0.0
Description Grabilla Installer
Comments Copyright (c) 2006—2015
Signature verification Signed file, verified signature
Signing date 5:51 PM 11/13/2015
Signers
[+] DevXSoftware Inc
Status This certificate or one of the certificates in the certificate chain is not time valid.
Issuer DigiCert High Assurance Code Signing CA-1
Valid from 1:00 AM 4/30/2015
Valid to 1:00 PM 5/4/2016
Valid usage Code Signing
Algorithm sha1RSA
Thumbprint 3BAB4985A9358AE1FDA362270F4714405803B844
Serial number 09 A7 F2 DA 58 9F EE 14 E6 9D D6 52 E4 99 30 B7
[+] DigiCert High Assurance Code Signing CA-1
Status Valid
Issuer DigiCert High Assurance EV Root CA
Valid from 1:00 PM 2/11/2011
Valid to 1:00 PM 2/10/2026
Valid usage Code Signing
Algorithm sha1RSA
Thumbprint E308F829DC77E80AF15EDD4151EA47C59399AB46
Serial number 02 C4 D1 E5 8A 4A 68 0C 56 8D A3 04 7E 7E 4D 5F
[+] DigiCert
Status Valid
Issuer DigiCert High Assurance EV Root CA
Valid from 1:00 AM 11/10/2006
Valid to 1:00 AM 11/10/2031
Valid usage Server Auth, Client Auth, Email Protection, Code Signing, Timestamp Signing
Algorithm sha1RSA
Thumbprint 5FB7EE0633E259DBAD0C4C9AE6D38F1A61C7DC25
Serial number 02 AC 5C 26 6A 0B 40 9B 8F 0B 79 F2 AE 46 25 77
Counter signers
[+] COMODO Time Stamping Signer
Status This certificate or one of the certificates in the certificate chain is not time valid.
Issuer UTN-USERFirst-Object
Valid from 1:00 AM 5/5/2015
Valid to 12:59 AM 1/1/2016
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint DF946A5E503015777FD22F46B5624ECD27BEE376
Serial number 00 9F EA C8 11 B0 F1 62 47 A5 FC 20 D8 05 23 AC E6
[+] USERTrust (Code Signing)
Status Valid
Issuer UTN-USERFirst-Object
Valid from 7:31 PM 7/9/1999
Valid to 7:40 PM 7/9/2019
Valid usage EFS, Timestamp Signing, Code Signing
Algorithm sha1RSA
Thumbrint E12DFB4B41D7D9C32B30514BAC1D81D8385E2D46
Serial number 44 BE 0C 8B 50 00 24 B4 11 D3 36 2D E0 B3 5F 1B
Packers identified
F-PROT NSIS
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2012-02-24 19:19:59
Entry Point 0x000039E3
Number of sections 6
PE sections
Overlays
MD5 dcc9cd14a470c588820c874a3a9204a1
File type data
Offset 239616
Size 33149736
Entropy 8.00
PE imports
RegCreateKeyExW
RegDeleteValueW
RegCloseKey
RegSetValueExW
RegEnumValueW
RegOpenKeyExW
RegEnumKeyW
RegDeleteKeyW
RegQueryValueExW
ImageList_Create
Ord(17)
ImageList_Destroy
ImageList_AddMasked
GetDeviceCaps
CreateFontIndirectW
SetBkMode
CreateBrushIndirect
SelectObject
SetBkColor
DeleteObject
SetTextColor
GetLastError
WriteFile
CopyFileW
GetShortPathNameW
LoadLibraryA
lstrlenA
GetModuleFileNameW
GlobalFree
WaitForSingleObject
GetVersionExW
GetExitCodeProcess
FindFirstFileW
ExitProcess
GlobalUnlock
GetFileAttributesW
lstrlenW
GetCurrentProcess
CompareFileTime
FindNextFileW
GetFileSize
OpenProcess
SetFileTime
GetCommandLineW
GetWindowsDirectoryW
SetErrorMode
MultiByteToWideChar
CreateDirectoryW
SetFilePointer
GlobalLock
GetPrivateProfileStringW
WritePrivateProfileStringW
GetTempFileNameW
lstrcpynW
RemoveDirectoryW
ExpandEnvironmentStringsW
lstrcpyW
GetFullPathNameW
lstrcmpiA
CreateThread
LoadLibraryW
GetModuleHandleA
GetSystemDirectoryW
GetDiskFreeSpaceW
ReadFile
GetTempPathW
CloseHandle
DeleteFileW
lstrcmpA
lstrcmpW
GetModuleHandleW
lstrcatW
lstrcpynA
FreeLibrary
SearchPathW
WideCharToMultiByte
lstrcmpiW
SetCurrentDirectoryW
lstrcpyA
CreateFileW
GlobalAlloc
CreateProcessW
FindClose
Sleep
MoveFileW
SetFileAttributesW
GetTickCount
GetVersion
GetProcAddress
LoadLibraryExW
MulDiv
SHBrowseForFolderW
SHFileOperationW
ShellExecuteW
SHGetPathFromIDListW
SHGetSpecialFolderLocation
SHGetFileInfoW
EmptyClipboard
GetMessagePos
EndPaint
EndDialog
LoadBitmapW
SetClassLongW
DefWindowProcW
CharPrevW
PostQuitMessage
ShowWindow
SetWindowPos
wvsprintfW
GetSystemMetrics
SetWindowLongW
IsWindow
PeekMessageW
GetWindowRect
EnableWindow
GetDC
CharUpperW
DialogBoxParamW
GetClassInfoW
AppendMenuW
CharNextW
IsWindowEnabled
GetDlgItemTextW
MessageBoxIndirectW
GetSysColor
CheckDlgButton
DispatchMessageW
GetAsyncKeyState
BeginPaint
CreatePopupMenu
SendMessageW
SetCursor
SetClipboardData
GetWindowLongW
FindWindowExW
IsWindowVisible
SetForegroundWindow
SetWindowTextW
GetDlgItem
SystemParametersInfoW
LoadImageW
EnableMenuItem
ScreenToClient
InvalidateRect
CreateDialogParamW
wsprintfA
SetTimer
CallWindowProcW
TrackPopupMenu
RegisterClassW
FillRect
IsDlgButtonChecked
CharNextA
SetDlgItemTextW
LoadCursorW
GetSystemMenu
SendMessageTimeoutW
CreateWindowExW
wsprintfW
CloseClipboard
GetClientRect
DrawTextW
DestroyWindow
ExitWindowsEx
OpenClipboard
VerQueryValueW
GetFileVersionInfoW
GetFileVersionInfoSizeW
OleUninitialize
CoTaskMemFree
OleInitialize
CoCreateInstance
Number of PE resources by type
RT_DIALOG 48
RT_ICON 12
RT_MANIFEST 1
RT_BITMAP 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 64
PE resources
ExifTool file metadata
CodeSize
28672

SubsystemVersion
5.0

Comments
Copyright (c) 2006 2015

LinkerVersion
10.0

ImageVersion
6.0

FileSubtype
0

FileVersionNumber
1.25.0.0

LanguageCode
English (U.S.)

FileFlagsMask
0x0000

FileDescription
Grabilla Installer

ImageFileCharacteristics
Executable, 32-bit

CharacterSet
ASCII

InitializedDataSize
445952

EntryPoint
0x39e3

OriginalFileName
Setup.exe

MIMEType
application/octet-stream

LegalCopyright
Copyright (c) 2006 2015 Grabilla.com

FileVersion
1.25.0.0

TimeStamp
2012:02:24 20:19:59+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
Setup.exe

ProductVersion
1.25.0.0

UninitializedDataSize
16896

OSVersion
5.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Grabilla.com

LegalTrademarks
Copyright (c) 2006 2015 Grabilla.com

ProductName
Grabilla

ProductVersionNumber
1.25.0.0

FileTypeExtension
exe

ObjectFileType
Executable application

Compressed bundles
File identification
MD5 749b5b2920971b02d5da3a2bf3c49f2e
SHA1 3e9877de8213110095f586bec9b415f139a9cffd
SHA256 bf96ebac71dcab6def25ef7b359c01f2993829248eddb6b944bf53c47ce41f81
ssdeep
786432:B9v4cjiAaxfO0FvSs2ynpDC2mZa+qTPzrRYaJTE6Eii:B9v4W0fOifnrV3r6a1ET

authentihash 7edf2d80a8826e7b0859c5cba6d83332e3f72de2457c8cd1e3bbf4282a5b47ec
imphash 32f3282581436269b3a75b6675fe3e08
File size 31.8 MB ( 33389352 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win64 Executable (generic) (72.3%)
Win32 Executable (generic) (11.8%)
OS/2 Executable (generic) (5.3%)
Generic Win/DOS Executable (5.2%)
DOS Executable Generic (5.2%)
Tags
nsis peexe signed overlay

VirusTotal metadata
First submission 2015-11-13 18:06:51 UTC ( 2 years, 11 months ago )
Last submission 2018-10-11 17:17:24 UTC ( 6 days, 16 hours ago )
File names grabilla_setup.exe
grabilla_setup (15).exe
grabilla_setup.exe
filename
764724
BF96EBAC71DCAB6DEF25EF7B359C01F2993829248EDDB6B944BF53C47CE41F81
Setup.exe
grabilla_setup.exe
grabilla125_setup20170630-18719-160t6ut.exe
grabilla_setup.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!