× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: ed0f364e04a426fb1593f838c99dc581608870014c7051523c51aafaa5daee0f
File name: wm24017.zip
Detection ratio: 0 / 62
Analysis date: 2018-05-21 03:30:14 UTC ( 10 months ago )
Antivirus Result Update
Ad-Aware 20180521
AegisLab 20180521
AhnLab-V3 20180521
Alibaba 20180518
ALYac 20180521
Antiy-AVL 20180521
Arcabit 20180521
Avast 20180521
Avast-Mobile 20180520
AVG 20180521
Avira (no cloud) 20180520
AVware 20180521
Babable 20180406
Baidu 20180518
BitDefender 20180521
Bkav 20180518
CAT-QuickHeal 20180520
ClamAV 20180520
CMC 20180520
Comodo 20180521
CrowdStrike Falcon (ML) 20180418
Cybereason None
Cylance 20180521
Cyren 20180521
DrWeb 20180521
eGambit 20180521
Emsisoft 20180521
Endgame 20180507
ESET-NOD32 20180521
F-Prot 20180521
F-Secure 20180521
Fortinet 20180521
GData 20180521
Ikarus 20180520
Sophos ML 20180503
Jiangmin 20180521
K7AntiVirus 20180521
K7GW 20180521
Kaspersky 20180521
Kingsoft 20180521
Malwarebytes 20180521
MAX 20180521
McAfee 20180521
McAfee-GW-Edition 20180521
Microsoft 20180521
eScan 20180521
NANO-Antivirus 20180521
nProtect 20180521
Palo Alto Networks (Known Signatures) 20180521
Panda 20180520
Qihoo-360 20180521
Rising 20180521
SentinelOne (Static ML) 20180225
Sophos AV 20180521
SUPERAntiSpyware 20180520
Symantec 20180520
Symantec Mobile Insight 20180518
Tencent 20180521
TheHacker 20180516
TotalDefense 20180520
TrendMicro 20180521
TrendMicro-HouseCall 20180521
Trustlook 20180521
VBA32 20180518
VIPRE 20180521
ViRobot 20180520
Webroot 20180521
Yandex 20180518
Zillya 20180519
ZoneAlarm by Check Point 20180521
Zoner 20180520
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
59
Uncompressed size
10704012
Highest datetime
2012-12-08 01:31:44
Lowest datetime
2003-08-18 09:05:00
Contained files by extension
wav
15
dll
14
txt
3
ogg
3
DLL
2
exe
1
chm
1
dic
1
pdf
1
Contained files by type
unknown
28
Portable Executable
17
directory
9
OGG
3
XML
1
PDF
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x00000000

FileType
ZIP

ZipCompression
None

ZipUncompressedSize
0

ZipCompressedSize
0

FileTypeExtension
zip

ZipFileName
WriteMonkey/

ZipBitFlag
0x0002

ZipModifyDate
2010:02:21 20:19:02

File identification
MD5 60aa5b5be482e20f97e354ca2634d36c
SHA1 74d8cc592f5b3efc2a2092b022165fe9348f3a2c
SHA256 ed0f364e04a426fb1593f838c99dc581608870014c7051523c51aafaa5daee0f
ssdeep
98304:obeb1yIfEB/ZAR7P9R6EM0ZjJmOwUASSNR71VesqxMJ41PXEZbUSPLQxm7MPCP/o:oSb1S/ZkPZwUAS8J1sVKWNUpUCLqiPjM

File size 6.6 MB ( 6885695 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID Mozilla Firefox browser extension (66.6%)
ZIP compressed archive (33.3%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2012-12-13 05:22:12 UTC ( 6 years, 3 months ago )
Last submission 2018-05-21 03:30:14 UTC ( 10 months ago )
File names file
12871693.zip
myfile
16258795
60aa5b5be482e20f97e354ca2634d36c
file-5289894_zip
writemonkey.zip
wm24017.zip
wm24017.zip
output.16258795.txt
wm24017.zip
wm24017 (1).zip
file
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!