Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File sri_sri_ravishankar_serial_genera received on 2009.12.21 23:22:05 (UTC)
Current status: finished
Result: 37/41 (90.24%)
Antivirus Version Last Update Result
a-squared 4.5.0.43 2009.12.21 Trojan-Dropper.Win32.Lukicsel!IK
AhnLab-V3 5.0.0.2 2009.12.21 Win-Trojan/Blaxblax.406550.B
AntiVir 7.9.1.122 2009.12.21 BDS/Backdoor.Gen
Antiy-AVL 2.0.3.7 2009.12.18 Trojan/Win32.Blaxblax.gen
Authentium 5.2.0.5 2009.12.21 W32/Trojan2.KFUA
Avast 4.8.1351.0 2009.12.21 Win32:Trojan-gen
AVG 8.5.0.427 2009.12.21 Agent2.PHO
BitDefender 7.2 2009.12.21 Dropped:Trojan.Agent.Delf.OJ
CAT-QuickHeal 10.00 2009.12.21 TrojanSpy.Blaxblax.y
ClamAV 0.94.1 2009.12.21 Trojan.Agent-123625
Comodo 3323 2009.12.21 -
DrWeb 5.0.0.12182 2009.12.21 Trojan.DownLoad.49803
eSafe 7.0.17.0 2009.12.21 -
eTrust-Vet 35.1.7188 2009.12.21 Win32/Delfsnif.D
F-Prot 4.5.1.85 2009.12.21 W32/Trojan2.KFUA
F-Secure 9.0.15370.0 2009.12.21 Dropped:Trojan.Agent.Delf.OJ
Fortinet 4.0.14.0 2009.12.21 -
GData 19 2009.12.21 Dropped:Trojan.Agent.Delf.OJ
Ikarus T3.1.1.79.0 2009.12.21 Trojan-Dropper.Win32.Lukicsel
Jiangmin 13.0.900 2009.12.21 Trojan/Agent.ctxf
K7AntiVirus 7.10.925 2009.12.21 Trojan.Win32.Malware.4
Kaspersky 7.0.0.125 2009.12.22 Trojan.Win32.Agent.cpta
McAfee 5839 2009.12.21 Generic.dx!dxx
McAfee+Artemis 5839 2009.12.21 Generic.dx!dxx
McAfee-GW-Edition 6.8.5 2009.12.21 Trojan.Backdoor.Backdoor.Gen
Microsoft 1.5302 2009.12.21 Backdoor:Win32/Lukicsel.A
NOD32 4707 2009.12.21 -
Norman 6.04.03 2009.12.21 W32/Agent.OVGP
nProtect 2009.1.8.0 2009.12.21 Trojan/W32.Agent.406550.B
Panda 10.0.2.2 2009.12.15 Generic Trojan
PCTools 7.0.3.5 2009.12.21 Trojan.Generic
Prevx 3.0 2009.12.22 High Risk Cloaked Malware
Rising 22.27.00.04 2009.12.21 Trojan.Win32.Generic.51EC142E
Sophos 4.49.0 2009.12.21 Mal/Generic-A
Sunbelt 3.2.1858.2 2009.12.21 Trojan.Win32.Generic!BT
Symantec 1.4.4.12 2009.12.22 Trojan Horse
TheHacker 6.5.0.3.103 2009.12.21 Trojan/Spy.Blaxblax.y
TrendMicro 9.120.0.1004 2009.12.21 TROJ_AGENT.AVHM
VBA32 3.12.12.0 2009.12.19 Trojan-Spy.Win32.Blaxblax.y
ViRobot 2009.12.21.2099 2009.12.21 Trojan.Win32.Generic.407040
VirusBuster 5.0.21.0 2009.12.21 TrojanSpy.Blaxblax.G
Additional information
File size: 406550 bytes
MD5   : 9cc87515470ee5cea1517846b2e753cd
SHA1  : 3f8a4623f23961dd860fc5f6d110ea3f8d501369
SHA256: 180eeee2374456095583870aa56fc8534bf166c6583b91ba63ec1b0fa22a5576
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x13158
timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992)
machinetype.......: 0x14C (Intel I386)

( 8 sections )
name viradd virsiz rawdsiz ntrpy md5
CODE 0x1000 0x123A8 0x12400 6.43 017f7cccb75ffc872cb56747a9a2193a
DATA 0x14000 0x580 0x600 3.85 15755a59c18ccb0d75b4e1056c261f07
BSS 0x15000 0x885 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.idata 0x16000 0xABE 0xC00 4.38 a5c9367047affb1acd5a2deca152d3bf
.tls 0x17000 0xC 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rdata 0x18000 0x18 0x200 0.20 e23e38357001a3d07d613d77819c03de
.reloc 0x19000 0x1744 0x1800 6.56 e4716565a293a495c44851cfc61de576
.rsrc 0x1B000 0x4E000 0x4E000 6.51 35d8fe0542db76ba1ce656a03cf566fc

( 4 imports )

> advapi32.dll: RegQueryValueExA, RegOpenKeyExA, RegCloseKey, RegSetValueExA, RegOpenKeyExA, RegOpenKeyA, RegCreateKeyA, RegCloseKey
> kernel32.dll: DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, VirtualFree, VirtualAlloc, LocalFree, LocalAlloc, GetTickCount, QueryPerformanceCounter, GetVersion, GetCurrentThreadId, InterlockedDecrement, InterlockedIncrement, VirtualQuery, WideCharToMultiByte, MultiByteToWideChar, lstrlenA, lstrcpynA, LoadLibraryExA, GetThreadLocale, GetStartupInfoA, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetCommandLineA, FreeLibrary, FindFirstFileA, FindClose, ExitProcess, WriteFile, UnhandledExceptionFilter, RtlUnwind, RaiseException, GetStdHandle, TlsSetValue, TlsGetValue, LocalAlloc, GetModuleHandleA, lstrcatA, WriteFile, WaitForSingleObject, VirtualQuery, SizeofResource, SetFilePointer, SetEvent, SetEndOfFile, ResetEvent, ReadFile, LoadResource, LoadLibraryA, LeaveCriticalSection, InitializeCriticalSection, GetVersionExA, GetThreadLocale, GetSystemDirectoryA, GetStringTypeExA, GetStdHandle, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLocalTime, GetLastError, GetFullPathNameA, GetFileSize, GetDiskFreeSpaceA, GetDateFormatA, GetCurrentThreadId, GetCPInfo, GetACP, FormatMessageA, FindResourceA, EnumCalendarInfoA, EnterCriticalSection, DeleteCriticalSection, CreateFileA, CreateEventA, CompareStringA, CloseHandle, Sleep
> oleaut32.dll: SysFreeString, SysReAllocStringLen, SysAllocStringLen, SafeArrayPtrOfIndex, SafeArrayGetUBound, SafeArrayGetLBound, SafeArrayCreate, VariantChangeType, VariantCopy, VariantClear, VariantInit
> user32.dll: GetKeyboardType, LoadStringA, MessageBoxA, CharNextA, MessageBoxA, LoadStringA, GetSystemMetrics, CharNextA, CharToOemA

( 0 exports )
TrID  : File type identification
Win32 Executable Borland Delphi 7 (47.8%)
Win32 Executable Borland Delphi 5 (32.2%)
Win32 Executable Borland Delphi 6 (18.7%)
Win32 Executable Generic (0.6%)
Win16/32 Executable Delphi generic (0.1%)
ssdeep: 12288:ehNrBTTumJ0B6xArGTTIaqc1wYTACZ4AOS:eb1TKmJ8S8GTTI9ewYfHF
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=9ED75C141640F399340406EE5E098A00E534ED5D
PEiD  : -
RDS   : NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file