× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: f78da944c348e7f9df99c1c9073f47b25c95f9d44567c6c48d3ab4746237b03b
File name: autoupdate.zip
Detection ratio: 29 / 56
Analysis date: 2015-07-31 12:05:38 UTC ( 1 year, 11 months ago )
Antivirus Result Update
Ad-Aware Application.SearchProtect.CM 20150731
Yandex Riskware.Agent! 20150730
Antiy-AVL Trojan/Win32.TSGeneric 20150731
Avast Win32:Conduit-B [PUP] 20150731
AVG Generic.ABF 20150731
Avira (no cloud) PUA/SearchProtect.2857744 20150730
AVware Conduit (fs) 20150731
Baidu-International Adware.Win32.Conduit.bH 20150731
Bkav W32.HfsAdware.A5D5 20150731
CAT-QuickHeal PUA.Clientconn.Gen 20150731
Cyren W32/Application.BZBR-5054 20150731
DrWeb Adware.Conduit.298 20150731
ESET-NOD32 a variant of Win32/ClientConnect.A potentially unwanted 20150731
F-Secure Application.SearchProtect.CM 20150731
Fortinet Riskware/Conduit_SearchProtect 20150731
GData Win32.Application.SearchProtect.AA@gen 20150731
Ikarus PUA.ClientConnect 20150731
Jiangmin AdWare/SearchProtect.ar 20150730
K7AntiVirus Adware ( 004ba4e01 ) 20150731
K7GW Adware ( 004ba4e01 ) 20150730
Malwarebytes PUP.Optional.SearchProtect.A 20150731
eScan Application.SearchProtect.CM 20150731
NANO-Antivirus Riskware.Win32.Conduit.dtlmtg 20150731
Panda PUP/SearchProtect 20150731
Qihoo-360 HEUR/QVM10.1.Malware.Gen 20150731
Sophos AV Conduit Search Protect 20150731
Symantec PUA.SearchProtect 20150731
VIPRE Conduit (fs) 20150731
Zillya Adware.SearchProtect.Win32.84 20150731
AegisLab 20150731
AhnLab-V3 20150731
Alibaba 20150731
ALYac 20150731
Arcabit 20150731
BitDefender 20150731
ByteHero 20150731
ClamAV 20150731
Comodo 20150731
Emsisoft 20150731
F-Prot 20150731
Kaspersky 20150731
Kingsoft 20150731
McAfee 20150731
McAfee-GW-Edition 20150731
Microsoft 20150731
nProtect 20150731
Rising 20150731
SUPERAntiSpyware 20150730
Tencent 20150731
TheHacker 20150731
TotalDefense 20150731
TrendMicro 20150731
TrendMicro-HouseCall 20150731
VBA32 20150731
ViRobot 20150731
Zoner 20150731
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
1
Uncompressed size
8443808
Highest datetime
2015-07-02 10:17:00
Lowest datetime
2015-07-02 10:17:00
Contained files by extension
exe
1
Contained files by type
Portable Executable
1
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x78b54c81

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
8443808

ZipCompressedSize
8348478

FileTypeExtension
zip

ZipFileName
Setup.exe

ZipBitFlag
0

ZipModifyDate
2015:07:02 10:17:00

File identification
MD5 3a11f5bceb3e52e95fcf4578f2b433f1
SHA1 20e13107612eba6a597b0ab50029435d71e74d17
SHA256 f78da944c348e7f9df99c1c9073f47b25c95f9d44567c6c48d3ab4746237b03b
ssdeep
196608:F8SpeNwvUMxx8FPZY2hkSGfha67d6JwUOFcwMYRstluQObJhH3S+F:6NfMxxc+B9sJIcwMYi2jPF

File size 8.0 MB ( 8348630 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (100.0%)
Tags
nsis contains-pe zip

VirusTotal metadata
First submission 2015-07-02 20:11:26 UTC ( 2 years ago )
Last submission 2015-07-31 12:05:38 UTC ( 1 year, 11 months ago )
File names AutoUpdate.zip
3dd98c015feeff1386665a7c2a5b67a20c5445f7
autoupdate.zip
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!