× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: c9598fe89c9f4ca470ce47b556fea6289b05b1850c629c2c2f51f2efc995247c
File name: usb140201.zip
Detection ratio: 0 / 61
Analysis date: 2018-06-11 11:11:02 UTC ( 5 months, 1 week ago ) View latest
Antivirus Result Update
Ad-Aware 20180611
AegisLab 20180611
AhnLab-V3 20180611
Alibaba 20180611
ALYac 20180611
Antiy-AVL 20180611
Arcabit 20180611
Avast 20180611
Avast-Mobile 20180611
AVG 20180611
Avira (no cloud) 20180611
AVware 20180611
Babable 20180406
Baidu 20180611
BitDefender 20180611
Bkav 20180611
CAT-QuickHeal 20180611
ClamAV 20180611
CMC 20180611
Comodo 20180611
CrowdStrike Falcon (ML) 20180202
Cybereason 20180308
Cylance 20180611
Cyren 20180611
DrWeb 20180611
eGambit 20180611
Emsisoft 20180611
Endgame 20180507
ESET-NOD32 20180611
F-Prot 20180611
F-Secure 20180611
Fortinet 20180611
GData 20180611
Sophos ML 20180601
Jiangmin 20180611
K7AntiVirus 20180611
K7GW 20180611
Kaspersky 20180611
Kingsoft 20180611
Malwarebytes 20180611
MAX 20180611
McAfee 20180611
McAfee-GW-Edition 20180610
Microsoft 20180611
eScan 20180611
NANO-Antivirus 20180611
Palo Alto Networks (Known Signatures) 20180611
Panda 20180610
Qihoo-360 20180611
Rising 20180611
SentinelOne (Static ML) 20180225
Sophos AV 20180611
SUPERAntiSpyware 20180611
Symantec 20180611
Symantec Mobile Insight 20180605
TACHYON 20180611
Tencent 20180611
TheHacker 20180608
TotalDefense 20180611
TrendMicro 20180611
TrendMicro-HouseCall 20180611
Trustlook 20180611
VBA32 20180611
VIPRE 20180611
ViRobot 20180611
Webroot 20180611
Yandex 20180609
Zillya 20180608
ZoneAlarm by Check Point 20180611
Zoner 20180611
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
9
Uncompressed size
17573975
Highest datetime
2014-02-01 17:35:02
Lowest datetime
2011-05-11 18:39:56
Contained files by extension
cfg
2
cgz
2
bin
1
exe
1
msg
1
txt
1
Contained files by type
unknown
8
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x94376890

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
1517

ZipCompressedSize
550

FileTypeExtension
zip

ZipFileName
boot.msg

ZipBitFlag
0x0002

ZipModifyDate
2014:02:01 17:35:02

Compressed bundles
File identification
MD5 a60dbb91016d93ec5f11e64650394afb
SHA1 f70973e7e9d57a1d55c9c9122e437d20ea07eb3a
SHA256 c9598fe89c9f4ca470ce47b556fea6289b05b1850c629c2c2f51f2efc995247c
ssdeep
393216:/yEJemnY7kXwerEADaqaP7xktQjiwGJydlffAcM9Bai9bS:XY7kXweDaHP9htwyd2cMuGS

File size 16.5 MB ( 17334297 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe zip via-tor

VirusTotal metadata
First submission 2014-02-03 01:29:28 UTC ( 4 years, 9 months ago )
Last submission 2018-11-01 13:06:26 UTC ( 2 weeks, 5 days ago )
File names 17.zip
Offline NT Password
usb140201 (ntpasswd).zip
ntpasswd_usb140201.zip
usb140201 (1).zip
usb140201.zip
usb140201.zip
Offline.NT.Password.usb140201.zip
usb140201_2.zip
c9598fe89c9f4ca470ce47b556fea6289b05b1850c629c2c2f51f2efc995247c
usb140201.zip
Password editor.zip
12 - usb140201.zip
usb-boot.zip
file-6553733_zip
usb140201(1).zip
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!