Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File setup_1_1_.exe received on 2008.12.14 12:00:44 (UTC)
Current status: finished
Result: 1/38 (2.63%)
Antivirus Version Last Update Result
AhnLab-V3 2008.12.12.2 2008.12.14 -
AntiVir 7.9.0.45 2008.12.12 -
Authentium 5.1.0.4 2008.12.13 -
Avast 4.8.1281.0 2008.12.13 -
AVG 8.0.0.199 2008.12.13 -
BitDefender 7.2 2008.12.14 -
CAT-QuickHeal 10.00 2008.12.13 -
ClamAV 0.94.1 2008.12.14 -
Comodo 749 2008.12.13 -
DrWeb 4.44.0.09170 2008.12.14 -
eSafe 7.0.17.0 2008.12.11 -
eTrust-Vet 31.6.6258 2008.12.12 -
Ewido 4.0 2008.12.14 -
F-Prot 4.4.4.56 2008.12.13 -
F-Secure 8.0.14332.0 2008.12.14 -
Fortinet 3.117.0.0 2008.12.14 -
GData 19 2008.12.14 -
Ikarus T3.1.1.45.0 2008.12.14 -
K7AntiVirus 7.10.553 2008.12.13 -
Kaspersky 7.0.0.125 2008.12.14 -
McAfee 5463 2008.12.13 -
McAfee+Artemis 5463 2008.12.13 -
Microsoft 1.4205 2008.12.14 Program:Win32/WinSpywareProtect
NOD32 3689 2008.12.14 -
Norman 5.80.02 2008.12.12 -
Panda 9.0.0.4 2008.12.14 -
PCTools 4.4.2.0 2008.12.14 -
Prevx1 V2 2008.12.14 -
Rising 21.07.62.00 2008.12.14 -
SecureWeb-Gateway 6.7.6 2008.12.12 -
Sophos 4.36.0 2008.12.14 -
Sunbelt 3.2.1801.2 2008.12.11 -
Symantec 10 2008.12.14 -
TheHacker 6.3.1.4.187 2008.12.13 -
TrendMicro 8.700.0.1004 2008.12.12 -
VBA32 3.12.8.10 2008.12.13 -
ViRobot 2008.12.12.1515 2008.12.12 -
VirusBuster 4.5.11.0 2008.12.13 -
Additional information
File size: 106496 bytes
MD5...: 453f6b4a4434a333740762e3f3bbf65b
SHA1..: d4dafd2892e54d9dd3170d76529d75f4cfc067d0
SHA256: a3a415738d2075327cfcaa9c38f8d50993ab43c0e7884a863ca4cae0547d5979
SHA512: 871cadf86c93db289f5efc078c09f8e197531d961acc6be980e37b58177b6281
f882f336e4b8966668df9ba9fadd2aaf519cb41601bc2e2a1c847353f8c01b64
ssdeep: 1536:CtOwWUL6VdxqeiPC5V9G2NTGlMYkH9KSw3hd6dc:Ctth6wev/GO6GYcw3bu
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (38.4%)
Win32 Dynamic Link Library (generic) (34.2%)
Clipper DOS Executable (9.1%)
Generic Win/DOS Executable (9.0%)
DOS Executable Generic (9.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x40111e
timedatestamp.....: 0x45c35b02 (Fri Feb 02 15:38:42 2007)
machinetype.......: 0x14c (I386)

( 6 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x1a71 0x2000 2.59 a08e9be80e2b1d0ef70f54d1b62ef051
.data 0x3000 0x10dc7 0x11000 7.31 af15844f93ae5e7560a604a1f070fb49
.tls 0x14000 0x1000 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110
.rdata 0x15000 0x125e 0x2000 0.02 ff7ac4be4d3a805c95942b70d9eb45d1
.idata 0x17000 0x1004 0x2000 2.79 8822d44aa1818a3ae1983a1eb8b77e1d
.rsrc 0x19000 0xc3ef 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110

( 8 imports )
> GDI32.DLL: GetClipBox, DeleteDC, GetBitmapBits, GetBrushOrgEx, ClearBitmapAttributes, AddFontResourceTracking, AddFontMemResourceEx, ExtTextOutA, RestoreDC, CloseFigure, GetPixel, AddFontResourceExW, AddFontResourceA, AddFontResourceW, ExcludeClipRect, AbortPath, ClearBrushAttributes, GetPixel, GetCurrentPositionEx
> ADVAPI32.DLL: RegDeleteKeyW, RegOpenKeyExW, RegQueryValueExW, RegDeleteValueA, RegReplaceKeyW, RegDeleteKeyA, RegEnumKeyA, RegQueryValueExA, RegEnumKeyExA, RegOpenKeyA, RegQueryValueA, RegEnumKeyW, RegQueryInfoKeyA, RegQueryValueW
> ADVAPI32.DLL: RegQueryInfoKeyA, RegGetKeySecurity, RegDeleteValueA, RegDeleteKeyW, RegEnumKeyA, RegReplaceKeyA, RegOpenKeyExA, RegEnumValueW, RegCreateKeyExA, RegCreateKeyW, RegEnumValueA, RegFlushKey, RegQueryValueExW, RegEnumKeyExA, RegDeleteValueW, RegOpenKeyA
> GDI32.DLL: DeleteObject, CreateSolidBrush, AddFontMemResourceEx, GetDCOrgEx, RestoreDC, SetTextColor, ExtTextOutA, BeginPath, GetBitmapBits, AddFontResourceTracking, CloseMetaFile
> KERNEL32.DLL: ReadConsoleA, GetComputerNameA, FindFirstFileA, OpenFileMappingA, FindAtomA, WriteFile, OpenFile, CreateDirectoryA, CopyFileExW, GetCommandLineA, SetLastError, GetConsoleMode, ExitThread, CopyFileW, GlobalFree, Sleep, GetLastError, CreateProcessA, GetFileSize
> COMCTL32.DLL: ImageList_Remove, ImageList_Create, ImageList_GetImageRect, ImageList_DrawIndirect, ImageList_EndDrag, ImageList_Replace, ImageList_GetImageCount, ImageList_LoadImage, ImageList_DragLeave, ImageList_AddIcon, ImageList_GetDragImage, ImageList_GetImageInfo, ImageList_DragShowNolock, ImageList_Destroy, ImageList_DrawEx, ImageList_BeginDrag, InitCommonControls, ImageList_Read
> ADVAPI32.DLL: RegEnumKeyW, RegEnumKeyA, RegCreateKeyW, RegOpenKeyExW, RegOpenKeyExA, RegEnumKeyExA, RegLoadKeyA, RegOpenKeyA, RegDeleteKeyA, RegQueryValueExA, RegFlushKey, RegDeleteValueA, RegQueryInfoKeyW, RegCreateKeyExW, RegQueryValueA, RegEnumKeyExW, RegQueryValueW, RegLoadKeyW, RegOpenKeyW
> ADVAPI32.DLL: RegCreateKeyExA, RegDeleteKeyA, RegOpenKeyExW, RegCreateKeyExW, RegQueryValueExA, RegDeleteKeyW, RegLoadKeyA, RegEnumKeyA, RegEnumKeyW, RegQueryValueA

( 0 exports )

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file