× Çerezler devre dışı bırakılmış! Bu sitenin düzgün bir şekilde çalışabilmesi için çerezlerin açık olması gerekir.
SHA256: 6e4174bd7478ae84b37d241c6b03ef7bd6869bf93b74f7432c9f4839cd18cbe1
Dosya adı: Crypter Generator.exe
Tespit edilme orani 1 / 55
Analiz tarihi: 2015-06-30 13:51:54 UTC ( 3 yıl, 10 ay önce) En sonuncusunu görüntüle
Antivirus Sonuç Güncelle
VBA32 Trojan.MSIL.gen.8 20150630
Ad-Aware 20150630
AegisLab 20150630
Yandex 20150629
AhnLab-V3 20150630
Alibaba 20150630
ALYac 20150630
Antiy-AVL 20150630
Arcabit 20150630
Avast 20150630
AVG 20150630
Avira (no cloud) 20150630
AVware 20150630
Baidu-International 20150630
BitDefender 20150630
Bkav 20150630
ByteHero 20150630
CAT-QuickHeal 20150630
ClamAV 20150630
Comodo 20150630
Cyren 20150630
DrWeb 20150630
Emsisoft 20150630
ESET-NOD32 20150630
F-Prot 20150630
F-Secure 20150630
Fortinet 20150630
GData 20150630
Ikarus 20150630
Jiangmin 20150629
K7AntiVirus 20150630
K7GW 20150630
Kaspersky 20150630
Kingsoft 20150630
Malwarebytes 20150630
McAfee 20150630
McAfee-GW-Edition 20150630
Microsoft 20150630
eScan 20150630
NANO-Antivirus 20150630
nProtect 20150630
Panda 20150630
Qihoo-360 20150630
Rising 20150630
Sophos AV 20150630
SUPERAntiSpyware 20150630
Symantec 20150630
Tencent 20150630
TheHacker 20150630
TrendMicro 20150630
TrendMicro-HouseCall 20150630
VIPRE 20150630
ViRobot 20150630
Zillya 20150630
Zoner 20150630
The file being studied is a Portable Executable file! More specifically, it is a Win32 EXE file for the Windows GUI subsystem.
FileVersionInfo properties
Copyright
Copyright © WarGameS 2015

Product Multi Crypter Code Generator
Original name Crypter Generator.exe
Internal name Crypter Generator.exe
File version 3.0.0.0
Description Multi Crypter Code Generator
Comments Multi Crypter Code Generator
PE header basic information
Target machine Intel 386 or later processors and compatible processors
Compilation timestamp 2015-06-29 15:21:06
Entry Point 0x000CBBCE
Number of sections 4
.NET details
Module Version ID 06d44728-ed26-4fb7-85ea-70068be8302e
TypeLib ID 1a8013fd-41f2-4b64-b80f-ac4051040170
PE sections
PE imports
_CorExeMain
Number of PE resources by type
RT_ICON 27
RT_GROUP_ICON 1
RT_VERSION 1
RT_MANIFEST 1
Number of PE resources by language
NEUTRAL 30
PE resources
Debug information
ExifTool file metadata
CodeSize
826368

SubsystemVersion
4.0

Comments
Multi Crypter Code Generator

InitializedDataSize
341504

ImageVersion
0.0

FileSubtype
0

FileVersionNumber
3.0.0.0

LanguageCode
Neutral

FileFlagsMask
0x003f

FileDescription
Multi Crypter Code Generator

ImageFileCharacteristics
Executable, 32-bit

CharacterSet
Unicode

LinkerVersion
11.0

EntryPoint
0xcbbce

OriginalFileName
Crypter Generator.exe

MIMEType
application/octet-stream

LegalCopyright
Copyright WarGameS 2015

FileVersion
3.0.0.0

TimeStamp
2015:06:29 16:21:06+01:00

FileType
Win32 EXE

PEType
PE32

InternalName
Crypter Generator.exe

ProductVersion
3.0.0.0

UninitializedDataSize
0

OSVersion
4.0

FileOS
Win32

Subsystem
Windows GUI

MachineType
Intel 386 or later, and compatibles

CompanyName
Multi Crypter Code Generator

LegalTrademarks
Multi Crypter Code Generator

ProductName
Multi Crypter Code Generator

ProductVersionNumber
3.0.0.0

FileTypeExtension
exe

ObjectFileType
Executable application

AssemblyVersion
3.0.0.0

Execution parents
File identification
MD5 01bcd0815ee719db6651579daa03e971
SHA1 d086332a5deac614ccfbf1b3b32623bc1a5d50f8
SHA256 6e4174bd7478ae84b37d241c6b03ef7bd6869bf93b74f7432c9f4839cd18cbe1
ssdeep
24576:rFGD4Gm79CFLvYFGD4Gm79CFqBGD4em79CF:rkD4GmRCNwkD4GmRCo4D4emRC

authentihash 286ed26228a31da3cb37a151d0c402254cc0cd313a7bec8e5bad46d551dae022
imphash f34d5f2d4577ed6d9ceec516c1f5a744
Dosya boyutu 1.1 MB ( 1168896 bytes )
Dosya türü Win32 EXE
Magic lafzı
PE32 executable for MS Windows (GUI) Intel 80386 32-bit Mono/.Net assembly

TrID Generic CIL Executable (.NET, Mono, etc.) (44.5%)
Win32 Executable MS Visual C++ (generic) (18.9%)
Win64 Executable (generic) (16.8%)
Windows screen saver (7.9%)
Win32 Dynamic Link Library (generic) (4.0%)
Tags
peexe assembly

VirusTotal metadata
First submission 2015-06-30 13:51:54 UTC ( 3 yıl, 10 ay önce)
Last submission 2018-02-10 18:15:39 UTC ( 1 yıl, 3 ay önce)
Dosya isimleri Crypter Generator [zHacker.NeT].exe
Crypter Generator.exe
Crypter Generator.exe
Crypter Generator [zHacker.NeT].exe
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
Yorum yok.. Henüz hiçbir VirusTotal Topluluğu üyesi bu öğeye yorum yapmadı.Bunu yapan ilk sen ol!

Yorum ekleyin...

?
Yorumu gönder.

Üye girişi yapmadınız..Sadece kayıtlı kullanıcılar yorum yapabilir.Sesinizi duyurmak için giriş yapın.

Oy yok.. Bu öğeyi daha önce hiç kimse oylamadı.Bunu yapan ilk sen ol!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
DNS requests
UDP communications