× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: c7d9b449c6ecedff830830e01624dbfa7405f2cac5d08034310da32f7aeceadc
File name: php_zend_test.dll
Detection ratio: 0 / 65
Analysis date: 2019-03-07 11:21:20 UTC ( 1 month, 2 weeks ago )
Antivirus Result Update
Acronis 20190222
Ad-Aware 20190307
AegisLab 20190307
AhnLab-V3 20190307
Alibaba 20190306
ALYac 20190307
Antiy-AVL 20190307
Arcabit 20190307
Avast 20190307
Avast-Mobile 20190306
AVG 20190307
Avira (no cloud) 20190306
Babable 20180918
Baidu 20190306
BitDefender 20190307
Bkav 20190306
CAT-QuickHeal 20190306
ClamAV 20190306
CMC 20190307
Comodo 20190307
CrowdStrike Falcon (ML) 20190212
Cybereason 20190109
Cyren 20190307
DrWeb 20190307
eGambit 20190307
Emsisoft 20190307
Endgame 20190215
ESET-NOD32 20190307
F-Prot 20190307
F-Secure 20190306
Fortinet 20190307
GData 20190307
Ikarus 20190306
Sophos ML 20181128
Jiangmin 20190307
K7AntiVirus 20190307
K7GW 20190307
Kaspersky 20190307
Kingsoft 20190307
Malwarebytes 20190307
MAX 20190307
McAfee 20190307
McAfee-GW-Edition 20190307
Microsoft 20190307
eScan 20190307
NANO-Antivirus 20190307
Palo Alto Networks (Known Signatures) 20190307
Panda 20190306
Qihoo-360 20190307
Rising 20190307
SentinelOne (Static ML) 20190203
Sophos AV 20190307
SUPERAntiSpyware 20190307
Symantec Mobile Insight 20190220
TACHYON 20190307
Tencent 20190307
TheHacker 20190304
TotalDefense 20190306
Trapmine 20190301
TrendMicro-HouseCall 20190307
Trustlook 20190307
VBA32 20190306
VIPRE 20190307
ViRobot 20190307
Yandex 20190306
ZoneAlarm by Check Point 20190307
Zoner 20190307
The file being studied is a Portable Executable file! More specifically, it is a Win32 DLL file for the Windows GUI subsystem that targets 64bit architectures.
FileVersionInfo properties
Copyright
Copyright © 1997-2018 The PHP Group

Product PHP
Original name php_zend_test.dll
Internal name ZEND_TEST extension
File version 7.3.3
Description php_zend_test.dll
PE header basic information
Target machine x64
Compilation timestamp 2019-03-06 22:25:54
Entry Point 0x00001980
Number of sections 6
PE sections
PE imports
GetCurrentProcess
TerminateProcess
IsProcessorFeaturePresent
SetUnhandledExceptionFilter
GetCurrentProcessId
UnhandledExceptionFilter
RtlVirtualUnwind
QueryPerformanceCounter
RtlLookupFunctionEntry
IsDebuggerPresent
RtlCaptureContext
DisableThreadLibraryCalls
GetSystemTimeAsFileTime
GetCurrentThreadId
InitializeSListHead
__std_type_info_destroy_list
memset
memcpy
__C_specific_handler
_configure_narrow_argv
_cexit
_seh_filter_dll
_execute_onexit_table
_initialize_onexit_table
_initialize_narrow_environment
_initterm
_initterm_e
zend_error
php_info_print_table_end
zend_register_internal_class_ex
zend_class_implements
_emalloc@@8
zend_register_internal_class
zend_string_init_interned
std_object_handlers
zend_declare_class_constant_long
zend_register_internal_interface
zend_register_class_alias_ex
zend_declare_property_null
zend_objects_new@@8
php_info_print_table_header
php_info_print_table_start
zend_parse_parameters
zend_set_function_arg_flags
PE exports
Number of PE resources by type
RT_MANIFEST 1
RT_VERSION 1
Number of PE resources by language
ENGLISH US 2
PE resources
Debug information
ExifTool file metadata
CodeSize
5632

SubsystemVersion
6.0

LinkerVersion
14.15

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
7.3.3.0

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
php_zend_test.dll

ImageFileCharacteristics
Executable, Large address aware, DLL

CharacterSet
Unicode

InitializedDataSize
9728

EntryPoint
0x1980

OriginalFileName
php_zend_test.dll

MIMEType
application/octet-stream

LegalCopyright
Copyright 1997-2018 The PHP Group

FileVersion
7.3.3

URL
http://www.php.net

TimeStamp
2019:03:06 23:25:54+01:00

FileType
Win64 DLL

PEType
PE32+

InternalName
ZEND_TEST extension

ProductVersion
7.3.3

UninitializedDataSize
0

OSVersion
6.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
AMD AMD64

CompanyName
The PHP Group

LegalTrademarks
PHP

ProductName
PHP

ProductVersionNumber
7.3.3.0

FileTypeExtension
dll

ObjectFileType
Dynamic link library

Compressed bundles
File identification
MD5 8635f18c60026335ca188ced9ade29eb
SHA1 cdd41ff4238f7517378d2eee7fe5e8d79ddb7048
SHA256 c7d9b449c6ecedff830830e01624dbfa7405f2cac5d08034310da32f7aeceadc
ssdeep
192:wqyFQV4JB69VeeYApWXO1HdynQD8Ld8Zgg06fDAj6Jnd8swc6V48VkfozX:BHV4Jo9wNA+igms6g6PHk48VkfoD

authentihash 2034bb4c59e324d0520d31fbd580d02d33c1314532be548245f8d0c8c25b88ee
imphash 61d671f20fb2fc9b3dca7a35ceb5acef
File size 16.0 KB ( 16384 bytes )
File type Win32 DLL
Magic literal
PE32+ executable for MS Windows (DLL) (GUI) Mono/.Net assembly

TrID Win64 Executable (generic) (82.0%)
OS/2 Executable (generic) (6.0%)
Generic Win/DOS Executable (5.9%)
DOS Executable Generic (5.9%)
Tags
64bits assembly pedll

VirusTotal metadata
First submission 2019-03-07 11:21:20 UTC ( 1 month, 2 weeks ago )
Last submission 2019-03-07 11:21:20 UTC ( 1 month, 2 weeks ago )
File names php_zend_test.dll
ZEND_TEST extension
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!