× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: ff351fd523f6448ac4b94f21b2b041c367025dc0eedc4ac4b57e9dfa4d547661
File name: 1028445
Detection ratio: 0 / 59
Analysis date: 2018-09-13 00:25:05 UTC ( 1 month, 1 week ago )
Antivirus Result Update
Ad-Aware 20180912
AegisLab 20180912
AhnLab-V3 20180912
Alibaba 20180713
ALYac 20180913
Antiy-AVL 20180913
Arcabit 20180913
Avast 20180913
Avast-Mobile 20180912
AVG 20180913
Avira (no cloud) 20180912
AVware 20180912
Babable 20180907
Baidu 20180912
BitDefender 20180912
Bkav 20180912
CAT-QuickHeal 20180912
ClamAV 20180912
CMC 20180912
Comodo 20180912
CrowdStrike Falcon (ML) 20180723
Cybereason 20180225
Cylance 20180913
Cyren 20180912
DrWeb 20180912
eGambit 20180913
Emsisoft 20180912
Endgame 20180730
ESET-NOD32 20180913
F-Prot 20180912
F-Secure 20180912
Fortinet 20180912
GData 20180912
Ikarus 20180912
Sophos ML 20180717
Jiangmin 20180912
K7AntiVirus 20180912
K7GW 20180912
Kaspersky 20180912
Kingsoft 20180913
Malwarebytes 20180912
MAX 20180913
McAfee 20180912
McAfee-GW-Edition 20180912
Microsoft 20180912
eScan 20180913
NANO-Antivirus 20180912
Palo Alto Networks (Known Signatures) 20180913
Panda 20180912
Qihoo-360 20180913
SentinelOne (Static ML) 20180830
Sophos AV 20180912
SUPERAntiSpyware 20180907
Symantec 20180912
Symantec Mobile Insight 20180911
TACHYON 20180912
Tencent 20180913
TheHacker 20180907
TotalDefense 20180912
TrendMicro-HouseCall 20180913
Trustlook 20180913
VBA32 20180912
VIPRE 20180913
ViRobot 20180912
Webroot 20180913
Yandex 20180912
Zillya 20180912
ZoneAlarm by Check Point 20180913
Zoner 20180912
The file being studied is a compressed stream! More specifically, it is a ZIP file.
Interesting properties
The studied file contains at least one Portable Executable.
Contained files
Compression metadata
Contained files
4
Uncompressed size
2782438
Highest datetime
2010-06-01 12:10:58
Lowest datetime
2010-05-21 12:03:26
Contained files by extension
pdf
2
exe
2
Contained files by type
PDF
2
Portable Executable
2
ExifTool file metadata
MIMEType
application/zip

ZipRequiredVersion
20

ZipCRC
0x8de3b35b

FileType
ZIP

ZipCompression
Deflated

ZipUncompressedSize
735232

ZipCompressedSize
355602

FileTypeExtension
zip

ZipFileName
Phonetracker_Locator_PC.exe

ZipBitFlag
0

ZipModifyDate
2010:06:01 12:10:58

File identification
MD5 f89e5dfcbe3ee7ce5f16b964ffb9a687
SHA1 41a476574fd0d40750498ec071e671b660af5e4c
SHA256 ff351fd523f6448ac4b94f21b2b041c367025dc0eedc4ac4b57e9dfa4d547661
ssdeep
49152:ipeVSeWyho8EQjwaraBth23kCjBe5MTYWcDcj9OlJ:yytjgJCZiDC9e

File size 2.1 MB ( 2200022 bytes )
File type ZIP
Magic literal
Zip archive data, at least v2.0 to extract

TrID ZIP compressed archive (80.0%)
PrintFox/Pagefox bitmap (var. P) (20.0%)
Tags
contains-pe zip

VirusTotal metadata
First submission 2010-07-22 22:30:32 UTC ( 8 years, 3 months ago )
Last submission 2018-05-22 21:58:02 UTC ( 5 months ago )
File names file-5476041_zip
1028445
PLC4F_PLGPRS.zip
Advanced heuristic and reputation engines
ClamAV
Possibly Unwanted Application. While not necessarily malicious, the scanned file presents certain characteristics which depending on the user policies and environment may or may not represent a threat. For full details see: https://www.clamav.net/documents/potentially-unwanted-applications-pua .

Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!