× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: d4fc33ad823a3dc61e6d3584a8e55f8e7a6d758d6f8a88e573da5e09a6b59a2a
File name: AmIcoSinglun32.exe
Detection ratio: 0 / 44
Analysis date: 2012-10-07 15:08:41 UTC ( 1 year, 6 months ago )
Antivirus Result Update
AVG 20121005
Agnitum 20121006
AhnLab-V3 20121005
AntiVir 20121005
Antiy-AVL 20121004
Avast 20121005
BitDefender 20121005
ByteHero 20121004
CAT-QuickHeal 20121004
ClamAV 20121005
Commtouch 20121005
Comodo 20121005
DrWeb 20121005
ESET-NOD32 20121005
Emsisoft 20120919
F-Prot 20121005
F-Secure 20121003
Fortinet 20121005
GData 20121005
Ikarus 20121005
Jiangmin 20121004
K7AntiVirus 20121005
Kaspersky 20121005
Kingsoft 20120925
McAfee 20121005
McAfee-GW-Edition 20121005
MicroWorld-eScan 20121005
Microsoft 20121005
Norman 20121005
PCTools 20121005
Panda 20121005
Rising 20120928
SUPERAntiSpyware 20120911
Sophos 20121005
Symantec 20121005
TheHacker 20121005
TotalDefense 20121004
TrendMicro 20121005
TrendMicro-HouseCall 20121005
VBA32 20121005
VIPRE 20121005
ViRobot 20121005
eSafe 20121002
nProtect 20121005
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
Authenticode signature block
Copyright
Copyright (c) 2010 CyberLink

Publisher CyberLink
Product AmIcoSinglun32
Original name cryen.exe
Internal name cryen.exe
File version 1.0.0.0
Description AmIcoSinglun32
Comments AmIcoSinglun32
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2012-10-06 17:11:25
Entry Point 0x0001309A
Number of sections 3
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_MANIFEST 1
RT_VERSION 1
Number of PE resources by language
NEUTRAL 2
ExifTool file metadata
LegalTrademarks
CyberLink

SubsystemVersion
4.0

Comments
AmIcoSinglun32

InitializedDataSize
71680

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
1.0.0.0

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
AmIcoSinglun32

CharacterSet
Unicode

LinkerVersion
6.0

FileOS
Win32

MIMEType
application/octet-stream

LegalCopyright
Copyright 2010 CyberLink

FileVersion
1.0.0.0

TimeStamp
2012:10:06 18:11:25+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
cryen.exe

ProductVersion
1.0.0.0

UninitializedDataSize
0

OSVersion
4.0

OriginalFilename
cryen.exe

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
CyberLink

CodeSize
70144

ProductName
AmIcoSinglun32

ProductVersionNumber
1.0.0.0

EntryPoint
0x1309a

ObjectFileType
Executable application

AssemblyVersion
1.0.0.0

File identification
MD5 0b06eb1ed254790e38d7b5accc0fe072
SHA1 13ea55abdd97bfc252dfc1a3889e81279533d938
SHA256 d4fc33ad823a3dc61e6d3584a8e55f8e7a6d758d6f8a88e573da5e09a6b59a2a
ssdeep
1536:113QGRhcyOdKvjm5hNGuVtYUC0ujsI64S7D+adVVT6MfDUK+JZOrVBUi0oxx7lRp:113QGRhcyOdKvjm5hNGuVtYURujsI63r

File size 71.0 KB ( 72704 bytes )
File type Win32 EXE
Magic literal
MS-DOS executable PE for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (78.4%)
Win32 Executable Generic (9.1%)
Win32 Dynamic Link Library (generic) (8.1%)
Generic Win/DOS Executable (2.1%)
DOS Executable Generic (2.1%)
Tags
peexe

VirusTotal metadata
First submission 2012-10-07 15:08:41 UTC ( 1 year, 6 months ago )
Last submission 2012-10-07 15:08:41 UTC ( 1 year, 6 months ago )
File names cryen.exe
AmIcoSinglun32.exe
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!