× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: f90f46a618d70c1436dd9aba38ea9f68b2cccc354274e63faf3b82b1344c8da7
File name: KeyboardLockTool.exe
Detection ratio: 1 / 54
Analysis date: 2015-11-19 15:36:31 UTC ( 1 year, 11 months ago ) View latest
Antivirus Result Update
Qihoo-360 HEUR/QVM03.0.Malware.Gen 20151119
AegisLab 20151119
Yandex 20151118
AhnLab-V3 20151119
Alibaba 20151119
ALYac 20151119
Antiy-AVL 20151119
Arcabit 20151119
Avast 20151119
AVG 20151119
Avira (no cloud) 20151119
AVware 20151119
Baidu-International 20151119
BitDefender 20151119
Bkav 20151118
ByteHero 20151119
CAT-QuickHeal 20151118
ClamAV 20151119
CMC 20151118
Comodo 20151119
Cyren 20151119
DrWeb 20151119
Emsisoft 20151119
ESET-NOD32 20151119
F-Prot 20151119
F-Secure 20151119
Fortinet 20151119
GData 20151119
Ikarus 20151119
Jiangmin 20151118
K7AntiVirus 20151119
K7GW 20151119
Kaspersky 20151119
Malwarebytes 20151119
McAfee 20151119
McAfee-GW-Edition 20151119
Microsoft 20151119
eScan 20151119
NANO-Antivirus 20151119
nProtect 20151119
Panda 20151118
Rising 20151117
Sophos AV 20151119
SUPERAntiSpyware 20151119
Symantec 20151118
Tencent 20151119
TheHacker 20151118
TrendMicro 20151119
TrendMicro-HouseCall 20151119
VBA32 20151119
VIPRE 20151119
ViRobot 20151119
Zillya 20151119
Zoner 20151119
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © 2015

Product WindowsApplication1
Original name KeyboardLockTool.exe
Internal name KeyboardLockTool.exe
File version 1.0.0.0
Description WindowsApplication1
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2015-11-19 14:20:45
Entry Point 0x0006578E
Number of sections 4
.NET details
Module Version ID 193bdf54-7a48-4160-af8f-08d1f1ccaf27
TypeLib ID 84be6b04-e781-4654-8460-30a82ff446ae
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 7
RT_GROUP_ICON 1
RT_VERSION 1
RT_MANIFEST 1
Number of PE resources by language
NEUTRAL 10
PE resources
Debug information
ExifTool file metadata
SubsystemVersion
6.0

InitializedDataSize
14336

ImageVersion
0.0

ProductName
WindowsApplication1

FileVersionNumber
1.0.0.0

UninitializedDataSize
0

LanguageCode
Neutral

FileFlagsMask
0x003f

CharacterSet
Unicode

LinkerVersion
11.0

FileTypeExtension
exe

OriginalFileName
KeyboardLockTool.exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
1.0.0.0

TimeStamp
2015:11:19 15:20:45+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
KeyboardLockTool.exe

ProductVersion
1.0.0.0

FileDescription
WindowsApplication1

OSVersion
4.0

FileOS
Win32

LegalCopyright
Copyright 2015

MachineType
Intel 386 or later, and compatibles

CodeSize
407552

FileSubtype
0

ProductVersionNumber
1.0.0.0

EntryPoint
0x6578e

ObjectFileType
Executable application

AssemblyVersion
1.0.0.0

Compressed bundles
File identification
MD5 a7d6ef9c0a528c28198cee4c907a8671
SHA1 d7fb99d796575a6a1b4331beb122d7008dc13c04
SHA256 f90f46a618d70c1436dd9aba38ea9f68b2cccc354274e63faf3b82b1344c8da7
ssdeep
12288:AWF2BM4heUj2g3gyAR/XCLbydf4KcZEhA2AT:5M8x/R/wbIc2M

authentihash 2e8a1f8ce1d8a3cc5fdc4cc2e289a5cb4ad274fce9577b16fbac899f340c5c27
imphash f34d5f2d4577ed6d9ceec516c1f5a744
File size 413.0 KB ( 422912 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (55.8%)
Win64 Executable (generic) (21.0%)
Windows screen saver (9.9%)
Win32 Dynamic Link Library (generic) (5.0%)
Win32 Executable (generic) (3.4%)
Tags
peexe assembly

VirusTotal metadata
First submission 2015-11-19 15:36:31 UTC ( 1 year, 11 months ago )
Last submission 2017-07-31 18:30:00 UTC ( 2 months, 3 weeks ago )
File names VirusShare_a7d6ef9c0a528c28198cee4c907a8671
gBdI0p.xlsb
7018ac75e705fc6ffa8a75e47def8c422d9618b2
20161212131344
KeyboardLockTool.exe
VirusShare_a7d6ef9c0a528c28198cee4c907a8671
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!