× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: e272f32a45aa342b823aaf26687357f45f39d4f836d3529169340e4893c08c37
File name: 86.exe
Detection ratio: 3 / 55
Analysis date: 2015-12-09 19:29:53 UTC ( 3 years, 5 months ago ) View latest
Antivirus Result Update
AhnLab-V3 Win-Trojan/Teslacrypt.Gen 20151209
Bkav HW32.Packed.78D9 20151209
Qihoo-360 HEUR/QVM20.1.Malware.Gen 20151209
Ad-Aware 20151209
AegisLab 20151209
Yandex 20151208
Alibaba 20151208
ALYac 20151209
Antiy-AVL 20151209
Arcabit 20151209
Avast 20151209
AVG 20151209
Avira (no cloud) 20151209
AVware 20151209
Baidu-International 20151209
BitDefender 20151209
ByteHero 20151209
CAT-QuickHeal 20151209
ClamAV 20151209
CMC 20151201
Comodo 20151209
Cyren 20151209
DrWeb 20151209
Emsisoft 20151209
ESET-NOD32 20151209
F-Prot 20151209
F-Secure 20151209
Fortinet 20151209
GData 20151209
Ikarus 20151209
Jiangmin 20151208
K7AntiVirus 20151209
K7GW 20151209
Kaspersky 20151209
Malwarebytes 20151209
McAfee 20151209
McAfee-GW-Edition 20151209
Microsoft 20151209
eScan 20151209
NANO-Antivirus 20151209
nProtect 20151209
Panda 20151209
Rising 20151209
Sophos AV 20151209
SUPERAntiSpyware 20151209
Symantec 20151208
Tencent 20151209
TheHacker 20151209
TrendMicro 20151209
TrendMicro-HouseCall 20151209
VBA32 20151209
VIPRE 20151209
ViRobot 20151209
Zillya 20151208
Zoner 20151209
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows command line subsystem.
FileVersionInfo properties
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2007-09-06 09:11:15
Entry Point 0x00009350
Number of sections 5
PE sections
PE imports
GetSecurityDescriptorGroup
GetTrusteeTypeA
SetSecurityDescriptorGroup
ImageList_GetIconSize
ImageList_Destroy
ImageList_GetImageInfo
ImageList_DragLeave
Ord(6)
ImageList_SetDragCursorImage
Ord(2)
PlayEnhMetaFileRecord
GetCharABCWidthsW
GetTextMetricsW
SetMapMode
GetWindowOrgEx
CreateMetaFileA
GetNearestColor
PolyPolyline
SetICMProfileA
ResizePalette
SetTextAlign
GetPaletteEntries
GetCharABCWidthsA
CombineRgn
PlayMetaFile
GetROP2
SetMetaFileBitsEx
GetObjectType
SetColorAdjustment
GdiGetBatchLimit
GetBoundsRect
GetTextExtentPointA
CopyEnhMetaFileW
ScaleWindowExtEx
StretchBlt
SetPixel
EndDoc
GetMetaFileA
DeleteObject
IntersectClipRect
AngleArc
GetFontLanguageInfo
GetTextFaceA
CopyEnhMetaFileA
ChoosePixelFormat
GetMiterLimit
CreateEllipticRgn
CreatePen
CreatePalette
EqualRgn
GetPolyFillMode
CreateEllipticRgnIndirect
GetICMProfileA
ExtCreateRegion
SetPixelFormat
GetEnhMetaFileBits
GetDCOrgEx
GetRasterizerCaps
Escape
SwapBuffers
StrokePath
EnumICMProfilesA
ScaleViewportExtEx
ArcTo
CloseFigure
GetColorAdjustment
GetICMProfileW
CloseMetaFile
GetSystemPaletteUse
Arc
GetKerningPairsA
WidenPath
ExtCreatePen
SetBkColor
SetWinMetaFileBits
SetRectRgn
CreateFontA
GetEnhMetaFileA
GetTextCharsetInfo
GetDIBColorTable
DeleteEnhMetaFile
PathToRegion
GetSystemPaletteEntries
OffsetRgn
GetCurrentPositionEx
Pie
TextOutA
CreateFontIndirectA
FillRgn
CreateRectRgnIndirect
EndPath
GetEnhMetaFileW
EnumFontsA
UpdateColors
GetBitmapBits
PolyDraw
SetWindowExtEx
OffsetViewportOrgEx
SetBkMode
GetCharacterPlacementW
CreateDiscardableBitmap
RectInRegion
GetArcDirection
OffsetClipRgn
EnumMetaFile
BitBlt
SetBitmapDimensionEx
GetCharacterPlacementA
EnumICMProfilesW
GetLogColorSpaceA
CreateEnhMetaFileW
GetOutlineTextMetricsA
FrameRgn
GetMetaFileBitsEx
CreateBrushIndirect
DrawEscape
SelectPalette
CreatePenIndirect
GetAspectRatioFilterEx
PtVisible
CreateEnhMetaFileA
GetLogColorSpaceW
ExtSelectClipRgn
SetBoundsRect
GetRegionData
CloseEnhMetaFile
SetROP2
EndPage
CreateScalableFontResourceW
AbortDoc
GetTextExtentPoint32W
GetNearestPaletteIndex
UpdateICMRegKeyA
GetCharWidth32W
SetDIBColorTable
CreateScalableFontResourceA
CancelDC
GetTextColor
GetOutlineTextMetricsW
CreatePolyPolygonRgn
SetPixelV
UpdateICMRegKeyW
BeginPath
SetViewportExtEx
SelectClipPath
SetGraphicsMode
PlayMetaFileRecord
AddFontResourceA
SetBitmapBits
PatBlt
SetColorSpace
FloodFill
AnimatePalette
AddFontResourceW
GetMetaRgn
SetStretchBltMode
Rectangle
PolylineTo
GetObjectA
CreateDCA
LineTo
DeleteDC
GetMapMode
GetEnhMetaFileDescriptionA
GetWorldTransform
GetCharWidthW
StartPage
GetObjectW
CreateDCW
GetCharWidthA
GdiComment
RealizePalette
CreateHatchBrush
FixBrushOrgEx
CreatePatternBrush
Ellipse
ExtTextOutW
CreateBitmap
RectVisible
DeleteColorSpace
GetStockObject
GetPath
PlayEnhMetaFile
ExtTextOutA
GdiFlush
SelectClipRgn
RoundRect
GetTextAlign
ExtEscape
CreateBitmapIndirect
ColorMatchToTarget
CreateColorSpaceA
GetWinMetaFileBits
GetEnhMetaFileDescriptionW
GetViewportOrgEx
CreateColorSpaceW
SetWindowOrgEx
SelectObject
GetViewportExtEx
SetTextCharacterExtra
OffsetWindowOrgEx
LineDDA
MaskBlt
CreateDIBPatternBrushPt
CreatePolygonRgn
CreateICA
Polygon
GetGlyphOutlineW
GetBkMode
GetCharABCWidthsFloatA
SetDeviceGammaRamp
GetTextCharset
GetRgnBox
GetEnhMetaFilePaletteEntries
ModifyWorldTransform
GetGlyphOutlineA
GetDeviceGammaRamp
PolyPolygon
GetTextExtentExPointA
SetTextJustification
RestoreDC
SetMapperFlags
CreateDIBPatternBrush
GetBitmapDimensionEx
GetTextExtentExPointW
GetCharWidthFloatW
FillPath
SetDIBitsToDevice
CreateDIBSection
GdiSetBatchLimit
SetTextColor
CombineTransform
GetClipBox
GetCurrentObject
ExcludeClipRect
SetMiterLimit
MoveToEx
EnumFontFamiliesExW
SetViewportOrgEx
AbortPath
SetArcDirection
GetGraphicsMode
CreateRoundRectRgn
CreateCompatibleDC
PolyBezierTo
PolyBezier
Chord
CreateRectRgn
RemoveFontResourceA
GetClipRgn
GetEnhMetaFilePixelFormat
SetPolyFillMode
GetDeviceCaps
CreateICW
GetTextCharacterExtra
RemoveFontResourceW
CreateSolidBrush
Polyline
DPtoLP
ResetDCW
GetDIBits
CopyMetaFileA
StartDocW
CreateCompatibleBitmap
DeleteMetaFile
HeapDestroy
GetNamedPipeHandleStateW
GetEnvironmentVariableA
BeginUpdateResourceW
_memicmp
VARIANT_UserFree
IMPQueryIMEW
ChangeDisplaySettingsW
SetDlgItemTextA
GetForegroundWindow
ModifyMenuW
CallMsgFilterW
GetAsyncKeyState
DdeAccessData
DrawTextW
DrawStateA
GetInputState
EnumWindowStationsW
GetMessagePos
GetClipboardViewer
GetNextDlgTabItem
IsWindow
DispatchMessageA
ScrollWindowEx
GrayStringA
WindowFromPoint
OemToCharBuffW
SetClassLongA
SetCaretBlinkTime
CharUpperBuffW
ChildWindowFromPoint
CopyImage
ShowCaret
CreateDesktopW
DispatchMessageW
DestroyCursor
GetCursorPos
DdeInitializeA
GetDlgCtrlID
SendMessageW
UnregisterClassA
IsClipboardFormatAvailable
DefFrameProcA
GetClassInfoW
GetMenuItemInfoW
PackDDElParam
SetMenuDefaultItem
LoadCursorA
SetScrollPos
InSendMessage
LoadAcceleratorsA
GetWindowTextLengthA
CharUpperA
LoadImageW
GetKeyboardState
BlockInput
DdeQueryStringW
GetTopWindow
ShowCursor
MapVirtualKeyExW
SendMessageCallbackW
CopyAcceleratorTableW
MsgWaitForMultipleObjects
MapVirtualKeyExA
InvalidateRgn
RegisterClassExA
DdeQueryStringA
DestroyWindow
DrawEdge
GetParent
IsCharAlphaNumericA
DdeCmpStringHandles
CharPrevW
CallMsgFilterA
CheckRadioButton
CreateCaret
GetWindowTextW
GetCaretPos
DrawFrameControl
GetNextDlgGroupItem
CharToOemBuffA
IsCharAlphaW
PeekMessageW
TranslateMDISysAccel
IMPSetIMEW
CharUpperW
ShowWindowAsync
GetDlgItemTextA
GetClipboardFormatNameW
PeekMessageA
ScrollDC
ArrangeIconicWindows
TranslateMessage
DdeEnableCallback
GetWindow
DestroyCaret
GetDlgItemInt
GetTabbedTextExtentW
CharNextExA
GetIconInfo
LoadAcceleratorsW
GetMenuItemRect
SetClipboardData
IsCharLowerA
GetWindowPlacement
SendNotifyMessageW
LoadStringW
CloseWindow
DrawMenuBar
IsCharLowerW
IsIconic
InvertRect
GetScrollPos
GetWindowLongA
CreateMenu
DlgDirListA
GetKeyboardLayout
FillRect
EnumThreadWindows
CopyRect
GetSysColorBrush
IsWindowUnicode
EnumPropsW
PostThreadMessageA
GetGUIThreadInfo
CharToOemA
DragDetect
IsDialogMessageA
MapWindowPoints
SendNotifyMessageA
SwitchDesktop
BeginPaint
OffsetRect
SetCaretPos
SetLastErrorEx
GetKeyboardLayoutNameW
KillTimer
TileWindows
MapVirtualKeyW
GetClipboardOwner
RegisterWindowMessageA
CheckMenuRadioItem
ToAsciiEx
SetClipboardViewer
GetClassNameA
ToUnicodeEx
SendDlgItemMessageA
SetWindowLongW
DrawIcon
SendDlgItemMessageW
SetKeyboardState
SetWindowsHookW
CreatePopupMenu
CheckMenuItem
GetSubMenu
GetClassLongW
GetLastActivePopup
DrawIconEx
SetWindowTextW
SetTimer
DdeGetLastError
GetMenuCheckMarkDimensions
SetDlgItemTextW
ClientToScreen
CloseWindowStation
CreateDialogIndirectParamA
FindWindowExA
OpenWindowStationA
SetMenuItemBitmaps
LoadIconA
CountClipboardFormats
DialogBoxIndirectParamW
SetActiveWindow
GetMenuState
CreateIconFromResource
GetSystemMenu
ReuseDDElParam
GetMenuItemID
InsertMenuW
SetForegroundWindow
NotifyWinEvent
SendMessageTimeoutW
DialogBoxIndirectParamA
WindowFromDC
EmptyClipboard
GetCaretBlinkTime
GetWindowTextA
GetScrollInfo
LoadMenuA
HideCaret
CreateWindowExW
SendInput
GetCapture
IMPQueryIMEA
SetWinEventHook
FindWindowA
MessageBeep
LoadMenuW
DrawTextExA
RemoveMenu
GetWindowThreadProcessId
FreeDDElParam
ShowScrollBar
GetQueueStatus
DdeUninitialize
SetMenu
SendMessageCallbackA
MessageBoxIndirectA
CallWindowProcA
MessageBoxA
AppendMenuW
ChangeClipboardChain
MessageBoxExW
DialogBoxParamA
LoadKeyboardLayoutA
keybd_event
RegisterClipboardFormatW
SetScrollInfo
GetKeyState
SystemParametersInfoA
SetSysColors
GetDoubleClickTime
DestroyIcon
DdeQueryNextServer
WinHelpW
SetDoubleClickTime
CreateMDIWindowA
SystemParametersInfoW
FrameRect
DeleteMenu
GetKeyNameTextW
GetClassNameW
DragObject
DefDlgProcA
AdjustWindowRect
GetClientRect
CloseDesktop
IsRectEmpty
ToUnicode
GetFocus
ModifyMenuA
ChangeDisplaySettingsA
Number of PE resources by type
RT_CURSOR 8
RT_ICON 6
RT_GROUP_ICON 6
RT_ACCELERATOR 1
RT_VERSION 1
Number of PE resources by language
SERBIAN ARABIC LIBYA 22
PE resources
ExifTool file metadata
UninitializedDataSize
0

LinkerVersion
6.6

ImageVersion
0.0

FileVersionNumber
0.72.94.237

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
Footway

ImageFileCharacteristics
No relocs, Executable, No line numbers, No symbols, 32-bit

CharacterSet
Unicode

InitializedDataSize
3223552

EntryPoint
0x9350

OriginalFileName
Disable.exe

MIMEType
application/octet-stream

LegalCopyright
Divination (C) 2015

TimeStamp
2007:09:06 11:11:15+02:00

FileType
Win32 EXE

PEType
PE32

InternalName
Elapse

SubsystemVersion
4.0

OSVersion
4.0

FileOS
Windows NT 32-bit

Subsystem
Windows command line

MachineType
Intel 386 or later, and compatibles

CompanyName
Maxotek

CodeSize
294912

FileSubtype
0

ProductVersionNumber
0.74.214.231

FileTypeExtension
exe

ObjectFileType
Executable application

File identification
MD5 d0d3086cd72eb31385bf6406042cc404
SHA1 11f9bb5c17fe32b48d44575a29e94dd082d38483
SHA256 e272f32a45aa342b823aaf26687357f45f39d4f836d3529169340e4893c08c37
ssdeep
6144:/uTS7jkGKlY1DI/D4ANTLfWHenmxadef3msPbnSLavUg0T1SmhGMvX/J+:/uTS7BKxDfTLuHenmx5msPbnSLavUwSx

authentihash 5c750ab4c45c7c47ab6f8cd60dd58a43bef9d9431ae4b9cd2fec461a00e804b0
imphash 2ae5482f47bc32c90b7f727af16ff235
File size 348.0 KB ( 356352 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (console) Intel 80386 32-bit

TrID Win32 Executable (generic) (42.7%)
OS/2 Executable (generic) (19.2%)
Generic Win/DOS Executable (18.9%)
DOS Executable Generic (18.9%)
Tags
peexe

VirusTotal metadata
First submission 2015-12-09 19:27:04 UTC ( 3 years, 5 months ago )
Last submission 2019-03-27 04:45:54 UTC ( 1 month, 3 weeks ago )
File names DuIMP.tar.gz
GQAfFn2xv.ps1
d0d3086cd72eb31385bf6406042cc404.exe
e272f32a45aa342b823aaf26687357f45f39d4f836d3529169340e4893c08c37.bin
86.exe
86
lkcvkacroic.exe
VirusShare_d0d3086cd72eb31385bf6406042cc404
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
DNS requests