× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: c5cece4b9be314f25dde5ea24539ef2ce18e3cb39406f280b1a8f76e6c9161c2
File name: nfoviewer.exe
Detection ratio: 2 / 68
Analysis date: 2018-07-22 20:27:37 UTC ( 10 months ago ) View latest
Antivirus Result Update
TotalDefense Win32/LineZer0_i 20180722
Zillya Downloader.Small.Win32.97504 20180720
Ad-Aware 20180722
AegisLab 20180722
AhnLab-V3 20180721
Alibaba 20180713
ALYac 20180722
Antiy-AVL 20180722
Arcabit 20180722
Avast 20180722
Avast-Mobile 20180722
AVG 20180722
Avira (no cloud) 20180722
AVware 20180722
Babable 20180406
Baidu 20180717
BitDefender 20180722
Bkav 20180719
CAT-QuickHeal 20180722
ClamAV 20180722
CMC 20180722
Comodo 20180722
CrowdStrike Falcon (ML) 20180530
Cybereason 20180225
Cylance 20180722
Cyren 20180722
DrWeb 20180722
eGambit 20180722
Emsisoft 20180722
Endgame 20180711
ESET-NOD32 20180722
F-Prot 20180722
F-Secure 20180722
Fortinet 20180722
GData 20180722
Ikarus 20180722
Sophos ML 20180717
Jiangmin 20180722
K7AntiVirus 20180722
K7GW 20180722
Kaspersky 20180722
Kingsoft 20180722
Malwarebytes 20180722
MAX 20180722
McAfee 20180722
McAfee-GW-Edition 20180722
Microsoft 20180722
eScan 20180722
NANO-Antivirus 20180722
Palo Alto Networks (Known Signatures) 20180722
Panda 20180722
Qihoo-360 20180722
Rising 20180722
SentinelOne (Static ML) 20180701
Sophos AV 20180722
SUPERAntiSpyware 20180722
Symantec 20180722
TACHYON 20180722
Tencent 20180722
TheHacker 20180722
TrendMicro 20180722
TrendMicro-HouseCall 20180722
Trustlook 20180722
VBA32 20180720
VIPRE 20180722
ViRobot 20180722
Webroot 20180722
Yandex 20180720
ZoneAlarm by Check Point 20180722
Zoner 20180721
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © Private Use 2006

Product prjLZNFOViewer
Original name prjLZNFOViewer.exe
Internal name prjLZNFOViewer.exe
File version 1.0.0.0
Description prjLZNFOViewer
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2006-08-31 23:34:56
Entry Point 0x0002FF6E
Number of sections 4
.NET details
Module Version ID 07d8d9c8-2827-4f56-98a3-459ad30b05e0
TypeLib ID 8431633c-f07c-41f9-990e-6814ccb0c98e
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 3
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 5
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
4.0

LinkerVersion
8.0

ImageVersion
0.0

ProductName
prjLZNFOViewer

FileVersionNumber
1.0.0.0

UninitializedDataSize
0

LanguageCode
Neutral

FileFlagsMask
0x003f

ImageFileCharacteristics
Executable, No line numbers, No symbols, 32-bit

CharacterSet
Unicode

InitializedDataSize
20480

FileTypeExtension
exe

OriginalFileName
prjLZNFOViewer.exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
1.0.0.0

TimeStamp
2006:09:01 01:34:56+02:00

FileType
Win32 EXE

PEType
PE32

InternalName
prjLZNFOViewer.exe

ProductVersion
1.0.0.0

FileDescription
prjLZNFOViewer

OSVersion
4.0

FileOS
Win32

LegalCopyright
Copyright Private Use 2006

MachineType
Intel 386 or later, and compatibles

CompanyName
Private Use

CodeSize
188416

FileSubtype
0

ProductVersionNumber
1.0.0.0

EntryPoint
0x2ff6e

ObjectFileType
Executable application

AssemblyVersion
1.0.0.0

Execution parents
PE resource-wise parents
Compressed bundles
File identification
MD5 3c8f3c52cd8f6d241cc40f0660e643ba
SHA1 82f7511e07aef5c1d08f4c403de484f90c970750
SHA256 c5cece4b9be314f25dde5ea24539ef2ce18e3cb39406f280b1a8f76e6c9161c2
ssdeep
3072:K4ejXy49nMlqcjExYj1IsQM9eBOAaW8/gL+j4LnTVUmag8phe0Z++u:OW7jEx+IsQMVAaWHL+j4L5Umt8V

authentihash e2ba4b6c2c0131014989ce894517349e61f10ed4c8e055936b42f103185f58ad
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 208.0 KB ( 212992 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (55.0%)
Win64 Executable (generic) (20.7%)
Windows screen saver (9.8%)
Win32 Dynamic Link Library (generic) (4.9%)
Win32 Executable (generic) (3.3%)
Tags
peexe assembly

VirusTotal metadata
First submission 2008-12-02 19:14:08 UTC ( 10 years, 5 months ago )
Last submission 2018-07-22 20:27:37 UTC ( 10 months ago )
File names smona130839639033109075624
smona131984630440104789836
n.exe
smona131678879884262492676
smona131097967581343200866
smona130733338729314037191
smona130763172810495600342
~DP4.exe
smona132407266931101016715
smona132098531096794588753
smona132175479692177319352
NFOVIEWER.EXE
smona130718139699606806649
smona130686416580468356973
smona_c5cece4b9be314f25dde5ea24539ef2ce18e3cb39406f280b1a8f76e6c9161c2.bin
smona130685483986645203618
smona131345454334386024859
82f7511e07aef5c1d08f4c403de484f90c970750
smona131353975287530553875
NFOVIE~1.EXE
smona131742477790265958331
smona132249289499947146323
smona130744282763787091841
filename
smona131573646779283013914
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!