ربيع المدخلي.exe

MD5:
6ac738b8a31332bfc053cf97b0770ae1

SHA-1:
03a883c51491f19f1d57c476e1587194b47f7651

SHA-256:
c3c919aa0ac4acc73ccf686867c2e0cf0f67ceda21e45e7cbbf80ed37c1f3cc3

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
2/19/2014 6:20:01 PM UTC  (nine months ago)

Scan engine
Detection
Engine version

ByteHero BDV
Virus.Win32.Part.a
2.19.2014.10

File size:
6.9 MB (7,260,192 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\saadi soft\مكتبة اهل السنة و الجماعة\maktaba\docs\مكتبة أهل السنة و الحماعة\ربيع المدخلي.exe

File PE Metadata
Compilation timestamp:
7/6/2000 5:17:53 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
98304:qKncCoN05mRznI6oEcjlXd1GtXdc+wV1D+/1iXPpFGHIxfkJN/GK85XNl293IP/K:K725crIC2lXdcwS/Wfkb/76Ha4Pzbq

Entry address:
0xB367

Entry point:
55, 8B, EC, 6A, FF, 68, 20, F4, 40, 00, 68, C0, D9, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 68, F1, 40, 00, 33, D2, 8A, D4, 89, 15, 94, 1C, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 90, 1C, 41, 00, C1, E1, 08, 03, CA, 89, 0D, 8C, 1C, 41, 00, C1, E8, 10, A3, 88, 1C, 41, 00, 33, F6, 56, E8, E0, 00, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 31, 24, 00, 00, FF, 15, 6C, F1, 40, 00, A3, A4, 21, 41, 00, E8...
 
[+]

Entropy:
7.9980  (probably packed)

Code size:
56 KB (57,344 bytes)

There are numerous known code variantions that share the same compilation structure.

2 / 68      (inconclusive)
nepotvrzeno 176739.crdownload  (ebccaa6c0f6353c6475730aa54b1a5261db6d28a)

5 / 68      (PUP)
lovescript616f.exe  (c2d638337e6da02ed7cf75c3356d6bba224e561c)

0 / 68
maktabat_moqbel_1_setup.exe  (a05bfc69bf6373bd4044d0dc44742359052320c4)

0 / 68
albany_baheth_fatawa_setup.exe  (7b8e21074f4e470df720b2adfcac73fbfed5a5bc)

1 / 68
shredr10.exe  (cdb7c7dc41a5d26eafa538385ce0977336d414d1)

1 / 68
cryptozor v7.4fr.exe  (88d928bbb0e958748b8268658ad584f16e1b76a6)

1 / 68
primo grado.exe  (dcfcc3152488f2f60c8df680d03cd33cd58e3955)

0 / 68
gta3_www_wfg_rg3_net.exe  (ef18a4ffe29c6462a32de2b1845f357857d11e6d)

0 / 68
imeteo.exe  (3b10ba4ac7aa4d44a1215cdd617a5622361bff23)

0 / 68
secondwavezh_251.exe  (71608d1a786094155c1bccf1f9e5fe980dcb57a5)

1 / 68
psicodicc.exe  (4c89f6ff664a7149c0091fd2f38cb7f6b12a4cf7)

0 / 68
القرآن الكريم مع التفسير.exe  (b3e9ffbfe1d2ecfe30749d6a4a12dde220978880)

1 / 68
emurayden-v21.exe  (d955549558f2269c9415e1800d937a6ba58902cc)

3 / 68      (inconclusive)
nameplate2.exe  (88e77187335dbf0f5672ad394efa597e0cfb3852)

3 / 68      (inconclusive)
nameplate.exe  (2ffa56a145c415d0c6383e4f57ca8cbb04f0a308)

Distribution by Country