Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File crack.exe received on 2009.06.14 09:18:56 (UTC)
Current status: finished
Result: 3/40 (7.50%)
Antivirus Version Last Update Result
a-squared 4.5.0.18 2009.06.14 -
AhnLab-V3 5.0.0.2 2009.06.13 Win-Trojan/Xema.variant
AntiVir 7.9.0.187 2009.06.12 -
Antiy-AVL 2.0.3.1 2009.06.12 -
Authentium 5.1.2.4 2009.06.13 -
Avast 4.8.1335.0 2009.06.13 -
AVG 8.5.0.339 2009.06.14 -
BitDefender 7.2 2009.06.14 -
CAT-QuickHeal 10.00 2009.06.13 -
ClamAV 0.94.1 2009.06.14 -
Comodo 1327 2009.06.14 -
DrWeb 5.0.0.12182 2009.06.14 -
eSafe 7.0.17.0 2009.06.11 -
eTrust-Vet 31.6.6556 2009.06.12 -
F-Prot 4.4.4.56 2009.06.13 -
F-Secure 8.0.14470.0 2009.06.13 -
Fortinet 3.117.0.0 2009.06.14 -
GData 19 2009.06.14 -
Ikarus T3.1.1.59.0 2009.06.14 -
K7AntiVirus 7.10.762 2009.06.12 -
Kaspersky 7.0.0.125 2009.06.14 -
McAfee 5645 2009.06.13 -
McAfee+Artemis 5645 2009.06.13 -
McAfee-GW-Edition 6.7.6 2009.06.14 -
Microsoft 1.4701 2009.06.14 -
NOD32 4153 2009.06.14 probably a variant of Win32/HackTool.Patcher.A
Norman 6.01.09 2009.06.12 -
nProtect 2009.1.8.0 2009.06.14 -
Panda 10.0.0.14 2009.06.14 -
PCTools 4.4.2.0 2009.06.12 -
Prevx 3.0 2009.06.14 High Risk Worm
Rising 21.33.61.00 2009.06.14 -
Sophos 4.42.0 2009.06.14 -
Sunbelt 3.2.1858.2 2009.06.13 -
Symantec 1.4.4.12 2009.06.14 -
TheHacker 6.3.4.3.345 2009.06.13 -
TrendMicro 8.950.0.1092 2009.06.12 -
VBA32 3.12.10.7 2009.06.14 -
ViRobot 2009.6.13.1785 2009.06.13 -
VirusBuster 4.6.5.0 2009.06.13 -
Additional information
File size: 269824 bytes
MD5   : 38d44c4a0079ab7a5964f2a2f92e7413
SHA1  : 29c83a4b53d368508c1655edcb94b3886ad278ab
SHA256: 0f826568aefe9b73e3a73645d60dbccd7d40d61683487b1cf8a04cb393891d76
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x34CE
timedatestamp.....: 0x49CFBFF0 (Sun Mar 29 20:37:36 2009)
machinetype.......: 0x14C (Intel I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x45D2 0x4600 6.08 1b3a21d30391759f46ad0c2298dfc9c7
.rdata 0x6000 0xDA0 0xE00 4.98 703de6aa24feff1fadb494e16df9ebeb
.data 0x7000 0x105FC 0x600 5.38 3606015ab898c0d4956affcf68fd8e2f
.rsrc 0x18000 0x3BF68 0x3C000 4.44 2240e8f4d2cd26b85bdba0c8d75e22c3

( 7 imports )

> advapi32.dll: RegCloseKey, RegCreateKeyExA, RegOpenKeyA, RegQueryValueExA
> comctl32.dll: InitCommonControls
> comdlg32.dll: GetSaveFileNameA, GetOpenFileNameA
> gdi32.dll: CreateDIBSection, CreateFontIndirectA, CreateSolidBrush, ExtCreateRegion, GetStockObject, BitBlt, CreateCompatibleBitmap, CreateCompatibleDC, TextOutA, SetTextColor, SetBkMode, SetBkColor, SelectObject, RoundRect, RemoveFontResourceA, GetTextExtentPointA, AddFontResourceA
> kernel32.dll: WriteFile, CompareStringA, SetCurrentDirectoryA, CreateDirectoryA, GlobalAlloc, GlobalLock, GlobalUnlock, FlushFileBuffers, lstrlenW, lstrlenA, lstrcpyA, lstrcmpiA, lstrcmpA, lstrcatA, WideCharToMultiByte, WaitForSingleObject, VirtualFree, VirtualAlloc, UnmapViewOfFile, CloseHandle, CopyFileA, CreateFileA, CreateFileMappingA, CreateProcessA, CreateThread, DeleteFileA, ExitProcess, ExpandEnvironmentStringsA, FindResourceA, FreeLibrary, GetCommandLineA, GetCurrentDirectoryA, GetFileAttributesA, GetFileSize, GetModuleFileNameA, GetModuleHandleA, GetProcAddress, GetTempPathA, LoadLibraryA, LoadResource, MapViewOfFile, MoveFileA, MultiByteToWideChar, RtlMoveMemory, RtlZeroMemory, SetEndOfFile, SetEnvironmentVariableA, SetFileAttributesA, SetFilePointer, SizeofResource, Sleep
> shell32.dll: ShellExecuteA
> user32.dll: TrackPopupMenu, ShowWindow, SetWindowTextA, SetWindowRgn, UpdateWindow, SetWindowLongA, SetFocus, SetDlgItemTextA, SetClassLongA, SetCapture, SetWindowPos, SendMessageA, ReleaseCapture, RegisterClassExA, RedrawWindow, PtInRect, OffsetRect, MessageBoxA, LoadStringA, LoadIconA, LoadCursorA, LoadBitmapA, IsDlgButtonChecked, InvalidateRect, IntersectRect, GetWindowRect, GetWindowLongA, GetSystemMetrics, GetParent, GetKeyState, GetDlgItemTextA, CloseClipboard, EmptyClipboard, OpenClipboard, SetClipboardData, GetClientRect, MoveWindow, GetDlgItem, GetDlgCtrlID, GetDC, GetCursorPos, GetCapture, GetActiveWindow, EndDialog, EnableWindow, DrawTextA, DialogBoxParamA, DefWindowProcA, CreateWindowExA, CreatePopupMenu, CheckDlgButton, CallWindowProcA, AppendMenuA

( 0 exports )
TrID  : File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
ssdeep: -
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=07B0B78200D633401EEE04BFF4D7AE000765A65A
PEiD  : -
packers (F-Prot): embedded
RDS   : NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file