× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: cfba769d9e4c17d6dbb949ebaac398232da38aeadb1515d43fdcfc6775a556bb
File name: YouTubeParser.exe
Detection ratio: 4 / 41
Analysis date: 2012-08-25 13:51:27 UTC ( 5 years, 1 month ago ) View latest
Antivirus Result Update
AntiVir TR/Dropper.Gen 20120825
Emsisoft Trojan-Dropper!IK 20120825
Ikarus Trojan-Dropper 20120825
Symantec WS.Reputation.1 20120825
Antiy-AVL 20120824
Avast 20120825
AVG 20120825
BitDefender 20120825
ByteHero 20120817
CAT-QuickHeal 20120825
ClamAV 20120825
Commtouch 20120824
Comodo 20120825
DrWeb 20120825
eSafe 20120823
ESET-NOD32 20120825
F-Prot 20120824
F-Secure 20120825
Fortinet 20120825
GData 20120825
Jiangmin 20120825
K7AntiVirus 20120825
Kaspersky 20120825
McAfee 20120825
McAfee-GW-Edition 20120825
Microsoft 20120825
Norman 20120825
nProtect 20120825
Panda 20120825
PCTools 20120825
Rising 20120824
Sophos AV 20120825
SUPERAntiSpyware 20120825
TheHacker 20120824
TotalDefense 20120824
TrendMicro 20120825
TrendMicro-HouseCall 20120825
VBA32 20120824
VIPRE 20120825
ViRobot 20120825
VirusBuster 20120824
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © WhiteDemon 2012

Product YouTubeParser
Original name YouTubeParser.exe
Internal name YouTubeParser.exe
File version 1.6.0312
Description YouTubeParser
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2012-05-12 14:46:53
Entry Point 0x0003FD6E
Number of sections 4
.NET details
Module Version ID d42adc51-96db-4049-92b1-9c810e9e00c1
TypeLib ID 98a95c6c-81ef-4a38-a45a-b62e9d8fb154
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 5
RT_MANIFEST 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 8
PE resources
ExifTool file metadata
SubsystemVersion
4.0

LinkerVersion
6.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
1.6.312.0

UninitializedDataSize
0

LanguageCode
Neutral

FileFlagsMask
0x003f

CharacterSet
Unicode

InitializedDataSize
102912

EntryPoint
0x3fd6e

OriginalFileName
YouTubeParser.exe

MIMEType
application/octet-stream

LegalCopyright
Copyright WhiteDemon 2012

FileVersion
1.6.0312

TimeStamp
2012:05:12 15:46:53+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
YouTubeParser.exe

ProductVersion
1.6.0312

FileDescription
YouTubeParser

OSVersion
4.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CodeSize
253440

ProductName
YouTubeParser

ProductVersionNumber
1.6.312.0

FileTypeExtension
exe

ObjectFileType
Executable application

AssemblyVersion
1.6.312.0

File identification
MD5 604a2a7a269f96ca26936072bacf3dd3
SHA1 b9ef2834530ea58c586b2c84a3fbbae2de65f612
SHA256 cfba769d9e4c17d6dbb949ebaac398232da38aeadb1515d43fdcfc6775a556bb
ssdeep
6144:gYO74wtTvTak6lscAW49HvDrR4U3HR00MN/GvzHv077SL4sHZ2ECUn7iH108v:JwtCflsc3ivDrRR30Uvbv0PJsRCUuW

authentihash fb259e88358f73eda5eb859c78ea65240a0e28d91cc129a9bb4bd92d959aa731
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 349.0 KB ( 357376 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (45.1%)
Win32 Executable MS Visual C++ (generic) (19.2%)
Win64 Executable (generic) (17.0%)
Windows screen saver (8.0%)
Win32 Dynamic Link Library (generic) (4.0%)
Tags
peexe assembly

VirusTotal metadata
First submission 2012-06-02 02:00:45 UTC ( 5 years, 4 months ago )
Last submission 2016-01-26 04:01:50 UTC ( 1 year, 8 months ago )
File names 604a2a7a269f96ca26936072bacf3dd3
YouTubeParser.exe
cfba769d9e4c17d6dbb949ebaac398232da38aeadb1515d43fdcfc6775a556bb.vir
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!