× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: f200894d6c96a843f0df99807b5dafb409e92893f388d00bcd160f19a8d12219
File name: paket.exe
Detection ratio: 0 / 70
Analysis date: 2018-12-16 10:31:01 UTC ( 2 months ago )
Antivirus Result Update
Ad-Aware 20181216
AegisLab 20181214
AhnLab-V3 20181216
Alibaba 20180921
ALYac 20181216
Antiy-AVL 20181216
Arcabit 20181216
Avast 20181216
Avast-Mobile 20181215
AVG 20181216
Avira (no cloud) 20181216
Babable 20180918
Baidu 20181207
BitDefender 20181216
Bkav 20181214
CAT-QuickHeal 20181216
ClamAV 20181216
CMC 20181216
Comodo 20181216
CrowdStrike Falcon (ML) 20181022
Cybereason 20180225
Cylance 20181216
Cyren 20181216
DrWeb 20181216
eGambit 20181216
Emsisoft 20181216
Endgame 20181108
ESET-NOD32 20181216
F-Prot 20181216
F-Secure 20181216
Fortinet 20181216
GData 20181216
Ikarus 20181216
Sophos ML 20181128
Jiangmin 20181216
K7AntiVirus 20181216
K7GW 20181216
Kaspersky 20181216
Kingsoft 20181216
Malwarebytes 20181216
MAX 20181216
McAfee 20181216
McAfee-GW-Edition 20181216
Microsoft 20181216
eScan 20181216
NANO-Antivirus 20181216
Palo Alto Networks (Known Signatures) 20181216
Panda 20181215
Qihoo-360 20181216
Rising 20181216
SentinelOne (Static ML) 20181011
Sophos AV 20181216
SUPERAntiSpyware 20181212
Symantec 20181215
Symantec Mobile Insight 20181215
TACHYON 20181214
Tencent 20181216
TheHacker 20181213
TotalDefense 20181215
Trapmine 20181205
TrendMicro 20181216
TrendMicro-HouseCall 20181216
Trustlook 20181216
VBA32 20181214
VIPRE 20181215
ViRobot 20181215
Webroot 20181216
Yandex 20181214
Zillya 20181215
ZoneAlarm by Check Point 20181216
Zoner 20181216
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows command line subsystem.
Authenticode signature block and FileVersionInfo properties
Product Paket
Original name paket.exe
File version 5.189.0.0
Description Paket
Comments A dependency manager for .NET with support for NuGet packages and git repositories.
Signature verification Signed file, verified signature
Signing date 9:40 AM 11/16/2018
Signers
[+] Groß, Weber & Partner Dipl.-Ing.(BA)/Dipl.-Wirt.-Inf./Dipl.-Inf.
Status Valid
Issuer COMODO RSA Code Signing CA
Valid from 1:00 AM 9/1/2017
Valid to 12:59 AM 9/1/2020
Valid usage Code Signing
Algorithm sha256RSA
Thumbprint 0449E2BE0CFA403718DAACB4B4662BC1BBC585BD
Serial number 37 0F 38 00 96 B6 BD D9 DB AA 38 6D 6A 71 55 56
[+] COMODO RSA Code Signing CA
Status Valid
Issuer COMODO RSA Certification Authority
Valid from 1:00 AM 5/9/2013
Valid to 12:59 AM 5/9/2028
Valid usage Code Signing
Algorithm sha384RSA
Thumbprint B69E752BBE88B4458200A7C0F4F5B3CCE6F35B47
Serial number 2E 7C 87 CC 0E 93 4A 52 FE 94 FD 1C B7 CD 34 AF
[+] COMODO SECURE™
Status Valid
Issuer COMODO RSA Certification Authority
Valid from 1:00 AM 1/19/2010
Valid to 12:59 AM 1/19/2038
Valid usage Server Auth, Client Auth, Email Protection, Code Signing, Timestamp Signing, EFS, IPSEC Tunnel, IPSEC User
Algorithm sha384RSA
Thumbprint AFE5D244A8D1194230FF479FE2F897BBCD7A8CB4
Serial number 4C AA F9 CA DB 63 6F E0 1F F7 4E D8 5B 03 86 9D
Counter signers
[+] COMODO SHA-1 Time Stamping Signer
Status Valid
Issuer UTN-USERFirst-Object
Valid from 1:00 AM 12/31/2015
Valid to 7:40 PM 7/9/2019
Valid usage Timestamp Signing
Algorithm sha1RSA
Thumbrint 03A5B14663EB12023091B84A6D6A68BC871DE66B
Serial number 16 88 F0 39 25 5E 63 8E 69 14 39 07 E6 33 0B
[+] USERTrust (Code Signing)
Status Valid
Issuer UTN-USERFirst-Object
Valid from 7:31 PM 7/9/1999
Valid to 7:40 PM 7/9/2019
Valid usage EFS, Timestamp Signing, Code Signing
Algorithm sha1RSA
Thumbrint E12DFB4B41D7D9C32B30514BAC1D81D8385E2D46
Serial number 44 BE 0C 8B 50 00 24 B4 11 D3 36 2D E0 B3 5F 1B
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2018-11-16 08:39:59
Entry Point 0x0081C8FE
Number of sections 3
.NET details
Module Version ID 29820dd2-8472-41e3-85a0-6218bb695bb1
PE sections
Overlays
MD5 826cc4fcf5dd2d269d61aad7475e332c
File type data
Offset 8609792
Size 5416
Entropy 7.42
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 6
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
ENGLISH US 7
NEUTRAL 1
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
4.0

Comments
A dependency manager for .NET with support for NuGet packages and git repositories.

LinkerVersion
8.0

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
5.189.0.0

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
Paket

ImageFileCharacteristics
Executable, 32-bit

CharacterSet
Unicode

InitializedDataSize
111616

EntryPoint
0x81c8fe

OriginalFileName
paket.exe

MIMEType
application/octet-stream

FileVersion
5.189.0.0

TimeStamp
2018:11:16 09:39:59+01:00

FileType
Win32 EXE

PEType
PE32

ProductVersion
5.189.0.0

UninitializedDataSize
0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows command line

MachineType
Intel 386 or later, and compatibles

CompanyName
Paket team

CodeSize
8497664

ProductName
Paket

ProductVersionNumber
5.189.0.0

FileTypeExtension
exe

ObjectFileType
Executable application

AssemblyVersion
5.189.0.0

File identification
MD5 3a6e5aa4d748e6df1894687074a9b1a2
SHA1 da7d2df71743f8f0bc1e4823ff519c210016c11e
SHA256 f200894d6c96a843f0df99807b5dafb409e92893f388d00bcd160f19a8d12219
ssdeep
49152:h5WkXzs7FnMZLnvUK6J+KRSCnVViRZOi8BL2A0BlRMMXh4W/TkZuQ+jfduuy6T2:fWkXzs7FnuvUK6J+FMERki8pcKW/V92

authentihash 92671b98a5a9950f5453be6b6cd192ce4d540706254bc998c3cd31863619f682
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 8.2 MB ( 8615208 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (console) Intel 80386 32-bit Mono/.Net assembly

TrID Win64 Executable (generic) (61.7%)
Win32 Dynamic Link Library (generic) (14.7%)
Win32 Executable (generic) (10.0%)
OS/2 Executable (generic) (4.5%)
Generic Win/DOS Executable (4.4%)
Tags
peexe assembly signed overlay

VirusTotal metadata
First submission 2018-11-16 12:35:05 UTC ( 3 months ago )
Last submission 2018-11-16 12:35:05 UTC ( 3 months ago )
File names paket_CE921DF8675A1BA656AE55F784DA0D8203129874783DC080BC24B4B77C34BA60.exe
paket.exe
paket_844203B3B9C0F15AB939613530CCA7616D80F5585F23345B8BCBE6BA84410087.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!