|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.5.0.41 | 2009.10.30 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.10.30 | - |
| AntiVir | 7.9.1.53 | 2009.10.30 | HEUR/Crypted.E |
| Antiy-AVL | 2.0.3.7 | 2009.10.30 | - |
| Authentium | 5.1.2.4 | 2009.10.30 | - |
| Avast | 4.8.1351.0 | 2009.10.30 | - |
| AVG | 8.5.0.423 | 2009.10.30 | - |
| BitDefender | 7.2 | 2009.10.30 | - |
| CAT-QuickHeal | 10.00 | 2009.10.30 | - |
| ClamAV | 0.94.1 | 2009.10.30 | - |
| Comodo | 2780 | 2009.10.30 | - |
| DrWeb | 5.0.0.12182 | 2009.10.30 | - |
| eSafe | 7.0.17.0 | 2009.10.29 | - |
| eTrust-Vet | 35.1.7094 | 2009.10.30 | - |
| F-Prot | 4.5.1.85 | 2009.10.30 | - |
| F-Secure | 9.0.15370.0 | 2009.10.30 | - |
| Fortinet | 3.120.0.0 | 2009.10.30 | - |
| GData | 19 | 2009.10.30 | - |
| Ikarus | T3.1.1.72.0 | 2009.10.30 | - |
| Jiangmin | 11.0.800 | 2009.10.30 | - |
| K7AntiVirus | 7.10.884 | 2009.10.30 | - |
| Kaspersky | 7.0.0.125 | 2009.10.30 | - |
| McAfee | 5787 | 2009.10.30 | - |
| McAfee+Artemis | 5787 | 2009.10.30 | - |
| McAfee-GW-Edition | 6.8.5 | 2009.10.30 | - |
| Microsoft | 1.5202 | 2009.10.30 | VirTool:Win32/Obfuscator.XZ |
| NOD32 | 4559 | 2009.10.30 | - |
| Norman | 6.03.02 | 2009.10.30 | - |
| nProtect | 2009.1.8.0 | 2009.10.30 | - |
| Panda | 10.0.2.2 | 2009.10.30 | Suspicious file |
| PCTools | 7.0.3.5 | 2009.10.30 | - |
| Prevx | 3.0 | 2009.10.31 | - |
| Rising | 21.53.43.00 | 2009.10.30 | - |
| Sophos | 4.47.0 | 2009.10.30 | Sus/UnkPacker |
| Sunbelt | 3.2.1858.2 | 2009.10.30 | - |
| Symantec | 1.4.4.12 | 2009.10.30 | - |
| TheHacker | 6.5.0.2.056 | 2009.10.28 | - |
| TrendMicro | 8.950.0.1094 | 2009.10.30 | Cryp_Opet-3 |
| VBA32 | 3.12.10.11 | 2009.10.30 | - |
| ViRobot | 2009.10.30.2013 | 2009.10.30 | - |
| VirusBuster | 4.6.5.0 | 2009.10.30 | - |
| Additional information |
|---|
| File size: 1145344 bytes |
| MD5 : f19b6030d59e852a6cbc8e8a2a2a5e73 |
| SHA1 : 6aed9d803a76ee5aa629dbcc0420defe8f589e3a |
| SHA256: 16fe714e1919b5ca6cc153267e36dbc4c4b50ba90a1e438f2cd0bfa324747441 |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x16E8BA timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992) machinetype.......: 0x14C (Intel I386) ( 11 sections ) name viradd virsiz rawdsiz ntrpy md5 CODE 0x1000 0x8185C 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e DATA 0x83000 0x2758 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e BSS 0x86000 0xFED 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .idata 0x87000 0x22C2 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .tls 0x8A000 0x10 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .rdata 0x8B000 0x18 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .UPX0 0x8C000 0x8FF0 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .rsrc 0x95000 0x49000 0x28600 5.42 bcfc6b8afb94a1287f8c1501816a1a60 .UPX1 0xDE000 0x8B578 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .UPX2 0x16A000 0xEED99 0xEEE00 7.95 e4feb64976f3e4c61708abe454dbdd76 .reloc 0x259000 0xEC 0x200 2.38 255392ab31e3b4d18b247111f346675b ( 8 imports ) > advapi32.dll: RegOpenKeyExA > comctl32.dll: ImageList_SetIconSize > gdi32.dll: CopyEnhMetaFileA > kernel32.dll: GetProcAddress, GetModuleHandleA, LoadLibraryA, VirtualAlloc, VirtualFree, GetModuleFileNameA, ExitProcess > oleaut32.dll: SysFreeString > shell32.dll: ShellExecuteA > user32.dll: MapWindowPoints, MessageBoxA > version.dll: VerQueryValueA ( 1 exports ) > __$g_Ex_vZ_DP87Iv_1_Kj___h1_3__x0_V___u__5_pxXND5__Zf__@4Db25___X3_IdTt_K53mE_g8__6_$R2q_R__1nL___@iK___V5nBmPhQle_e__t_7l_Z_W_$E__X_dLh_by_Vstl__sb_._vG_I__qZpmUMZ$_c__$_o_j3Wrzehux$hOt_BU_pioy_wo_J_3_GMu_HQ8_ApR_$_Sul___O___J__r1Ec_kKda4__g_hl_jkP_1MGC__i__j.tF_WQD_L_i$PyTO5$Z3t6CY_Ep_7_K_a5tSxf$QD0rM__rT_Zh_JYl__M$H__JD_Ec_4RR___@___OynxV_F__9_M_a___1i_V 92___90g@5_EK._Z_QMUf58_8P84T_nQ_T_lf_Oe__Y_n_0_0c_X_H_ql$___$_fee___4SD8$_1_M_LpYL_hF_$gRWNQl1e_yA__OLUSkDo_MECjM_9P_fM__3_A_lO8.s_1GBj2f_ZYe9tC54WUA9nllT_Fo@____H_lD_p__x8Zmm__L__s__eC8ug___gloIh___N_a_MlZcVM_s__VK_o___f__CW_qOGH _CZ_7_kAuk4GV___K__x_RA25M_Yo_9_ZMl___bc_z__z_l__n0yyWaNFf@__Vc@fw___._D__egnq0j__hY1_ElB_RYP_6jJ_T_Y_f_y___7__3QRB_4__W_VnBS_tzoJc.__Ht@NQyww@njups_M_i_gN_sp9R__aZaZVx86___FPEE@nYh$wq__oX_sq1_nBL_1D_Wo2nT@JZHM_UsHAv0L_41nE_7f_q_s_3j_U7_x4ZBLaNX___Gaf_8___.xVZW_dl4oPysU_uq_bIH q7_K_Qie_p_B_._twq__1u____6Jd__bB__tS_q_$_.t94gw_Spd_7K____Gs__l__iacD_9IF__p_t_s__nk_Dt@p_h__Ik_F__IM8Pid_jIheJ__Rtv_m_VF9G7_Ow___R_VL157v7_K_OlG __JKTu_1Dl6IU__l_K_xU.P_Lltd_v$YQzA$cwFR_.m_M__C_k0_e_E__iEa_C_ZC____iR _15_9u__w_ _5OrRRDzTdk5_u_f_R_D__jR_q__dG___1a__hP_C7_._u_7__4_zH_5y__n_lJ@_h_c_1_G__wC_TgPLF_TA___6T4_6__Yoj$Wx@pW_.__y$_G_OpPT |
| TrID : File type identification UPX compressed Win32 Executable (67.6%) Win32 Executable Generic (18.8%) Win16/32 Executable Delphi generic (4.5%) Generic Win/DOS Executable (4.4%) DOS Executable Generic (4.4%) |
| ssdeep: 24576:FFrCCVBmQhL9gUToMRPCv8qfHwpOlQxUCuDohUz:FFb7mYGUbMUOtD |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.