Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File 2_Dollar_Egg-Naxos_Pt_1.mp3.exe received on 08.01.2008 20:41:49 (CET)
Current status: finished
Result: 25/36 (69.44%)
Antivirus Version Last Update Result
AhnLab-V3 2008.7.29.1 2008.08.01 -
AntiVir 7.8.1.15 2008.08.01 TR/BHO.fby.4
Authentium 5.1.0.4 2008.07.31 -
Avast 4.8.1195.0 2008.08.01 Win32:Trojan-gen {Other}
AVG 8.0.0.156 2008.08.01 Adload_r.L
BitDefender 7.2 2008.08.01 Dropped:Trojan.Zlob.CQJ
CAT-QuickHeal 9.50 2008.08.01 Trojan.BHO.flc
ClamAV 0.93.1 2008.08.01 Trojan.BHO-3678
DrWeb 4.44.0.09170 2008.08.01 Trojan.Aolspy.8
eSafe 7.0.17.0 2008.07.29 Suspicious File
eTrust-Vet 31.6.6001 2008.08.01 Win32/Burgspill!generic
Ewido 4.0 2008.08.01 -
F-Prot 4.4.4.56 2008.08.01 -
F-Secure 7.60.13501.0 2008.08.01 Trojan.Win32.BHO.flc
Fortinet 3.14.0.0 2008.08.01 W32/BHO.FLC!tr
GData 2.0.7306.1023 2008.08.01 Trojan.Win32.BHO.flc
Ikarus T3.1.1.34.0 2008.08.01 Trojan-Dropper.Win32.Delf.aho
K7AntiVirus 7.10.402 2008.08.01 Trojan.Win32.BHO.flc
Kaspersky 7.0.0.125 2008.08.01 Trojan.Win32.BHO.flc
McAfee 5352 2008.08.01 Generic.dx
Microsoft 1.3704 2008.07.28 Trojan:Win32/Delflob.I
NOD32v2 3317 2008.08.01 -
Norman 5.80.02 2008.08.01 W32/Malware.DJNY
Panda 9.0.0.4 2008.08.01 Suspicious file
PCTools 4.4.2.0 2008.08.01 -
Prevx1 V2 2008.08.01 -
Rising 20.55.42.00 2008.08.01 -
Sophos 4.31.0 2008.08.01 Troj/BHO-GJ
Sunbelt 3.1.1537.1 2008.08.01 Trojan.Win32.BHO.fby
Symantec 10 2008.08.01 Downloader
TheHacker 6.2.96.391 2008.07.31 -
TrendMicro 8.700.0.1004 2008.08.01 PAK_Generic.001
VBA32 3.12.8.2 2008.08.01 -
ViRobot 2008.8.1.1321 2008.08.01 Spyware.BHO.50189
VirusBuster 4.5.11.0 2008.08.01 -
Webwasher-Gateway 6.6.2 2008.08.01 Trojan.BHO.fby.4
Additional information
File size: 50189 bytes
MD5...: b321e342e7dc5740d4a128e02f0226a9
SHA1..: 092c2baacf8c4a37c8ca34e0cad1c9ee7904d8d4
SHA256: 392daa4df86eeeede9c9114745c1920d94437b5180ab2c275ab863fbcb359ecd
SHA512: 80b0759e4131e93afb286d2b9d6d2144cd2439d04fcdab66684fb0a581b6cbd9
5c4d4e484c41316c72e856e05ba34eca5c1efae02a67622103036f55767ee91f
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x405ec8
timedatestamp.....: 0x2a425e19 (Fri Jun 19 22:22:17 1992)
machinetype.......: 0x14c (I386)

( 8 sections )
name viradd virsiz rawdsiz ntrpy md5
CODE 0x1000 0x5c30 0x5e00 6.17 9c64ed0566181a31316c1246d31735bb
DATA 0x7000 0xa4 0x200 1.86 b0380652b65dbf4c0051248ae4824e38
BSS 0x8000 0x69d 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.idata 0x9000 0x5d8 0x600 4.41 68e501f8c337f506a7ccf12038f39c5e
.tls 0xa000 0x8 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rdata 0xb000 0x18 0x200 0.20 7efef057f2f391b4d0bc263815821c3e
.reloc 0xc000 0x798 0x800 6.58 682bdf9a5d4c6490f99aae3711d6bd70
.rsrc 0xd000 0x5000 0x5000 7.02 f1010fbd127254cad32ce21a94bc34cf

( 8 imports )
> kernel32.dll: DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, VirtualFree, VirtualAlloc, LocalFree, LocalAlloc, GetTickCount, QueryPerformanceCounter, GetVersion, GetCurrentThreadId, GetThreadLocale, GetStartupInfoA, GetModuleFileNameA, GetLocaleInfoA, GetCommandLineA, FreeLibrary, ExitProcess, WriteFile, UnhandledExceptionFilter, RtlUnwind, RaiseException, GetStdHandle
> user32.dll: GetKeyboardType, MessageBoxA, CharNextA
> advapi32.dll: RegQueryValueExA, RegOpenKeyExA, RegCloseKey
> kernel32.dll: TlsSetValue, TlsGetValue, LocalAlloc, GetModuleHandleA
> advapi32.dll: RegSetValueExA, RegQueryValueExA, RegOpenKeyExA, RegCreateKeyExA, RegCloseKey
> kernel32.dll: WriteFile, SizeofResource, SetFilePointer, ReadFile, LockResource, LoadResource, GetSystemDirectoryA, GetLastError, GetFileSize, FindResourceA, CreateFileA, CloseHandle
> gdi32.dll: RemoveFontResourceExA, RemoveFontMemResourceEx, AddFontResourceExA
> shell32.dll: ShellExecuteA

( 0 exports )
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=b321e342e7dc5740d4a128e02f0226a9
packers (F-Prot): UPX

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file