deface page creator v1 - www.datateam.ga.exe

Defacepagemaker

Scan deface page creator v1 - www.datateam.ga.exe - Powered by Reason Core Security
Product:
Defacepagemaker

Version:
1.0.0.0

MD5:
18598bd41ba6851136459176c0b15062

SHA-1:
860020ac1b131e490a57ccb5e4654bc2a19c1245

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/10/2016 4:22:15 AM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Antiy Labs AVL
Trojan/Win32.SGeneric
0.1.0.1

File size:
459.5 KB (470,528 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2010

Original file name:
Defacepagemaker.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:HxNF/NLN8NI0Vx91pzTv2TyOPATv2TyOPiJ4kvTv2TyOP:zFVRcIeTfT9eUT

Entry address:
0x5857E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.2207

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
345.5 KB (353,792 bytes)

Scan deface page creator v1 - www.datateam.ga.exe - Powered by Reason Core Security