× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: ff5bfbc81590d0f16037face9491b48428ec460cd7b48ad473b2aab50c6b65d4
File name: 74fc433cff901d52c9aa9e3e5465e037
Detection ratio: 16 / 54
Analysis date: 2014-07-04 09:58:15 UTC ( 4 years, 8 months ago )
Antivirus Result Update
Ad-Aware Gen:Variant.Kazy.401230 20140704
Avast Win32:Malware-gen 20140704
BitDefender Gen:Variant.Kazy.401230 20140704
ByteHero Trojan.Malware.Obscu.Gen.002 20140704
CMC Packed.Win32.Katusha.1!O 20140704
Emsisoft Gen:Variant.Kazy.401230 (B) 20140704
ESET-NOD32 a variant of Win32/Kryptik.CFIU 20140704
F-Secure Gen:Variant.Kazy.401230 20140704
Fortinet W32/Young.65D4!tr 20140704
GData Gen:Variant.Kazy.401230 20140704
Microsoft PWS:Win32/Zbot 20140704
eScan Gen:Variant.Kazy.401230 20140704
Panda Trj/CI.A 20140704
Qihoo-360 Malware.QVM20.Gen 20140704
Rising PE:Malware.XPACK-HIE/Heur!1.9C48 20140703
Symantec Trojan.Zbot 20140704
AegisLab 20140704
Yandex 20140703
AhnLab-V3 20140703
AntiVir 20140704
Antiy-AVL 20140703
AVG 20140704
Baidu-International 20140704
Bkav 20140702
CAT-QuickHeal 20140704
ClamAV 20140704
Commtouch 20140704
Comodo 20140703
DrWeb 20140704
F-Prot 20140704
Ikarus 20140704
Jiangmin 20140704
K7AntiVirus 20140703
K7GW 20140703
Kaspersky 20140704
Kingsoft 20140704
Malwarebytes 20140704
McAfee 20140704
McAfee-GW-Edition 20140704
NANO-Antivirus 20140704
Norman 20140704
nProtect 20140704
Sophos AV 20140704
SUPERAntiSpyware 20140704
Tencent 20140704
TheHacker 20140703
TotalDefense 20140704
TrendMicro 20140704
TrendMicro-HouseCall 20140704
VBA32 20140704
VIPRE 20140704
ViRobot 20140704
Zillya 20140703
Zoner 20140703
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
GPL

Publisher LCD Smartie Team
Product LCD Smartie
Original name LCDSmartie.exe
Internal name LCD Smartie
File version 5.4.2.92
Description LCD Smartie
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2014-02-08 20:06:27
Entry Point 0x000218F5
Number of sections 4
PE sections
PE imports
RegCloseKey
RegQueryValueExA
RegSetValueExA
RegDeleteValueA
RegOpenKeyExA
RegEnumKeyExA
GetLastError
GetOverlappedResult
DeviceIoControl
WaitForSingleObject
FreeLibrary
QueryPerformanceCounter
GetTickCount
OutputDebugStringA
TlsAlloc
VirtualProtect
GetVersionExA
LoadLibraryA
RtlUnwind
GetLocalTime
GetCurrentProcess
GetCurrentProcessId
UnhandledExceptionFilter
GetCommandLineA
GetProcAddress
InterlockedCompareExchange
GetSystemDefaultLangID
GetModuleHandleA
InterlockedExchange
SetUnhandledExceptionFilter
ConvertDefaultLocale
CloseHandle
GetSystemTimeAsFileTime
GetCurrentThreadId
SetEnvironmentVariableA
GetFullPathNameA
TerminateProcess
ConnectNamedPipe
CreateEventA
Sleep
FormatMessageA
CreateFileA
GetVersion
ResetEvent
SetupDiGetDeviceInstallParamsA
SetupDiGetClassDevsA
SetupDiSetDeviceRegistryPropertyA
SetupDiOpenDevRegKey
SetupDiGetDeviceRegistryPropertyA
SetupGetStringFieldA
SetupFindNextLine
SetupFindFirstLineA
SetupCloseInfFile
SetupDiEnumDeviceInfo
SetupOpenInfFileA
SetupDiSetClassInstallParamsA
CM_Get_DevNode_Status
SetupDiDestroyDeviceInfoList
SetupDiCallClassInstaller
FindWindowA
PostMessageA
malloc
realloc
memset
fclose
fprintf
fgets
fopen
strncpy
_amsg_exit
fputs
_strlwr
_XcptFilter
_snprintf
sprintf
free
getenv
atoi
memcpy
_vsnprintf
strstr
fputws
memmove
strerror
wcsstr
_initterm
fgetws
_iob
Number of PE resources by type
RT_STRING 45
RT_BITMAP 37
RT_GROUP_CURSOR 9
RT_CURSOR 9
RT_DIALOG 1
RT_ICON 1
RT_VERSION 1
RT_GROUP_ICON 1
Number of PE resources by language
NEUTRAL 92
GERMAN 9
ITALIAN 2
DUTCH 1
PE resources
ExifTool file metadata
UninitializedDataSize
0

InitializedDataSize
106496

ImageVersion
1.0

ProductName
LCD Smartie

FileVersionNumber
5.4.2.92

LanguageCode
English (U.S.)

FileFlagsMask
0x003f

FileDescription
LCD Smartie

CharacterSet
Windows, Latin1

LinkerVersion
6.56

OriginalFilename
LCDSmartie.exe

MIMEType
application/octet-stream

Subsystem
Windows GUI

FileVersion
5.4.2.92

TimeStamp
2014:02:08 21:06:27+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
LCD Smartie

FileAccessDate
2014:07:04 10:58:26+01:00

ProductVersion
5.4.2

SubsystemVersion
4.0

OSVersion
4.0

FileCreateDate
2014:07:04 10:58:26+01:00

FileOS
Win32

LegalCopyright
GPL

MachineType
Intel 386 or later, and compatibles

CompanyName
LCD Smartie Team

CodeSize
188416

FileSubtype
0

ProductVersionNumber
5.4.2.92

EntryPoint
0x218f5

ObjectFileType
Executable application

File identification
MD5 74fc433cff901d52c9aa9e3e5465e037
SHA1 7a85319a60e7f9377adecd0a8f6937729fce8cab
SHA256 ff5bfbc81590d0f16037face9491b48428ec460cd7b48ad473b2aab50c6b65d4
ssdeep
6144:lHzoQJcLpmpq15HSquzn2FPYpzfNlsHCp0lqnzZ:lHkQJjpq15HSquz2FPYprpzZ

imphash bdd3e1e7289897723cd62b3a3bac58d4
File size 289.5 KB ( 296448 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable MS Visual C++ (generic) (67.3%)
Win32 Dynamic Link Library (generic) (14.2%)
Win32 Executable (generic) (9.7%)
Generic Win/DOS Executable (4.3%)
DOS Executable Generic (4.3%)
Tags
peexe

VirusTotal metadata
First submission 2014-07-04 09:58:15 UTC ( 4 years, 8 months ago )
Last submission 2014-07-04 09:58:15 UTC ( 4 years, 8 months ago )
File names 74fc433cff901d52c9aa9e3e5465e037
LCD Smartie
LCDSmartie.exe
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Written files
Deleted files
Created processes
Code injections in the following processes
Created mutexes
Opened mutexes
Runtime DLLs
Additional details
The file sends control codes directly to certain device drivers making use of the DeviceIoControl Windows API function.