× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: c9598fe89c9f4ca470ce47b556fea6289b05b1850c629c2c2f51f2efc995247c
File name: usb140201.zip
Detection ratio: 0 / 61
Analysis date: 2018-07-07 13:37:02 UTC ( 5 months, 2 weeks ago ) View latest
Antivirus Result Update
Ad-Aware 20180707
AegisLab 20180707
AhnLab-V3 20180707
ALYac 20180707
Antiy-AVL 20180707
Arcabit 20180707
Avast 20180707
Avast-Mobile 20180707
AVG 20180707
Avira (no cloud) 20180707
AVware 20180707
Babable 20180406
Baidu 20180706
BitDefender 20180707
Bkav 20180706
CAT-QuickHeal 20180707
ClamAV 20180707
CMC 20180707
Comodo 20180707
CrowdStrike Falcon (ML) 20180530
Cybereason 20180225
Cylance 20180707
Cyren 20180707
DrWeb 20180707
eGambit 20180707
Emsisoft 20180707
Endgame 20180612
ESET-NOD32 20180707
F-Prot 20180707
F-Secure 20180707
Fortinet 20180707
GData 20180707
Ikarus 20180707
Sophos ML 20180601
Jiangmin 20180707
K7AntiVirus 20180707
K7GW 20180707
Kaspersky 20180707
Kingsoft 20180707
Malwarebytes 20180707
MAX 20180707
McAfee 20180707
McAfee-GW-Edition 20180707
Microsoft 20180707
eScan 20180707
NANO-Antivirus 20180707
Palo Alto Networks (Known Signatures) 20180707
Panda 20180707
Qihoo-360 20180707
Rising 20180707
SentinelOne (Static ML) 20180701
Sophos AV 20180707
SUPERAntiSpyware 20180707
Symantec 20180706
TACHYON 20180707
Tencent 20180707
TheHacker 20180628
TotalDefense 20180707
TrendMicro 20180707
TrendMicro-HouseCall 20180707
Trustlook 20180707
VBA32 20180707
VIPRE 20180707
ViRobot 20180707
Webroot 20180707
Yandex 20180706
Zillya 20180706
ZoneAlarm by Check Point 20180707
Zoner 20180706
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
9
Uncompressed size
17573975
Highest datetime
2014-02-01 17:35:02
Lowest datetime
2011-05-11 18:39:56
Contained files by extension
cfg
2
cgz
2
bin
1
exe
1
msg
1
txt
1
Contained files by type
unknown
8
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x94376890

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
1517

ZipCompressedSize
550

FileTypeExtension
zip

ZipFileName
boot.msg

ZipBitFlag
0x0002

ZipModifyDate
2014:02:01 17:35:02

Compressed bundles
File identification
MD5 a60dbb91016d93ec5f11e64650394afb
SHA1 f70973e7e9d57a1d55c9c9122e437d20ea07eb3a
SHA256 c9598fe89c9f4ca470ce47b556fea6289b05b1850c629c2c2f51f2efc995247c
ssdeep
393216:/yEJemnY7kXwerEADaqaP7xktQjiwGJydlffAcM9Bai9bS:XY7kXweDaHP9htwyd2cMuGS

File size 16.5 MB ( 17334297 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe zip via-tor

VirusTotal metadata
First submission 2014-02-03 01:29:28 UTC ( 4 years, 10 months ago )
Last submission 2018-11-01 13:06:26 UTC ( 1 month, 2 weeks ago )
File names 17.zip
Offline NT Password
usb140201 (ntpasswd).zip
ntpasswd_usb140201.zip
usb140201 (1).zip
usb140201.zip
usb140201.zip
Offline.NT.Password.usb140201.zip
usb140201_2.zip
c9598fe89c9f4ca470ce47b556fea6289b05b1850c629c2c2f51f2efc995247c
usb140201.zip
Password editor.zip
12 - usb140201.zip
usb-boot.zip
file-6553733_zip
usb140201(1).zip
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!