Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File gbpm.exe received on 2009.08.13 18:14:48 (UTC)
Current status: finished
Result: 9/41 (21.95%)
Antivirus Version Last Update Result
a-squared 4.5.0.24 2009.08.13 -
AhnLab-V3 5.0.0.2 2009.08.13 -
AntiVir 7.9.1.1 2009.08.13 TR/Crypt.XPACK.Gen
Antiy-AVL 2.0.3.7 2009.08.13 -
Authentium 5.1.2.4 2009.08.13 -
Avast 4.8.1335.0 2009.08.12 -
AVG 8.5.0.406 2009.08.13 Win32/Heur
BitDefender 7.2 2009.08.13 -
CAT-QuickHeal 10.00 2009.08.13 -
ClamAV 0.94.1 2009.08.13 -
Comodo 1967 2009.08.13 TrojWare.Win32.Buzus.2
DrWeb 5.0.0.12182 2009.08.13 -
eSafe 7.0.17.0 2009.08.13 Suspicious File
eTrust-Vet 31.6.6675 2009.08.13 -
F-Prot 4.4.4.56 2009.08.13 -
F-Secure 8.0.14470.0 2009.08.13 -
Fortinet 3.120.0.0 2009.08.13 -
GData 19 2009.08.13 -
Ikarus T3.1.1.64.0 2009.08.13 -
Jiangmin 11.0.800 2009.08.13 -
K7AntiVirus 7.10.817 2009.08.12 -
Kaspersky 7.0.0.125 2009.08.13 -
McAfee 5708 2009.08.13 -
McAfee+Artemis 5708 2009.08.13 -
McAfee-GW-Edition 6.8.5 2009.08.13 Heuristic.LooksLike.Win32.Suspicious.A
Microsoft 1.4903 2009.08.13 -
NOD32 4332 2009.08.13 -
Norman 6.01.09 2009.08.13 -
nProtect 2009.1.8.0 2009.08.13 -
Panda 10.0.0.14 2009.08.13 Suspicious file
PCTools 4.4.2.0 2009.08.12 -
Prevx 3.0 2009.08.13 -
Rising 21.42.34.00 2009.08.13 -
Sophos 4.44.0 2009.08.13 Sus/UnkPacker
Sunbelt 3.2.1858.2 2009.08.13 -
Symantec 1.4.4.12 2009.08.13 -
TheHacker 6.3.4.3.383 2009.08.13 -
TrendMicro 8.950.0.1094 2009.08.13 PAK_Generic.001
VBA32 3.12.10.9 2009.08.13 -
ViRobot 2009.8.13.1883 2009.08.13 -
VirusBuster 4.6.5.0 2009.08.13 Trojan.Xiajian.Gen
Additional information
File size: 34304 bytes
MD5   : a5cc8140e783190efb69d38c2be4393f
SHA1  : d97ef73af274460f33650efb53bbbcba9e33efb6
SHA256: 14fd37ef063f3c13d667e7483803a17ec493395a0d0e0365da4bed60272f311e
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1911D
timedatestamp.....: 0x4A7B25A3 (Thu Aug 6 20:49:07 2009)
machinetype.......: 0x14C (Intel I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.MPRESS1 0x1000 0x17400 0x7E00 7.90 4bb8462aed80ac2811f7dfaa11df0aa8
.MPRESS2 0x19000 0x3CC 0x400 5.87 8139542a51d74ca2e0ce46f87837734c
.rsrc 0x1A000 0x1B4 0x200 4.48 1e0d8d31652190a3c40665d58b30979d

( 4 imports )

> advapi32.dll: OpenProcessToken
> kernel32.dll: GetModuleHandleA, GetProcAddress
> psapi.dll: EnumProcesses
> shlwapi.dll: PathFileExistsA

( 0 exports )
TrID  : File type identification
Generic Win/DOS Executable (49.9%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
ThreatExpert: http://www.threatexpert.com/report.aspx?md5=a5cc8140e783190efb69d38c2be4393f
ssdeep: 768:NEgamJjJrTMm0DajXMkByTLqEx+4dsl9JHuJ5Bo44USb0qH2ZDg:9amJj1T9xjXklx7dybOJPt4USbtH2Z
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=6FF6A55F00EB3DAF861800ADAE83C5000671117F
PEiD  : -
packers (Kaspersky): MPRESS, PE_Patch.UPX, UPX
RDS   : NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file