| עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File beijing.exe received on 06.24.2008 04:14:43 (CET)
Current status: finished
Result: 18/33 (54.55%)
Antivirus Version Last Update Result
AhnLab-V3 2008.6.24.0 2008.06.23 -
AntiVir 7.8.0.59 2008.06.23 Worm/Zhelatin.zc
Authentium 5.1.0.4 2008.06.23 -
Avast 4.8.1195.0 2008.06.23 Win32:TDrop
AVG 7.5.0.516 2008.06.24 I-Worm/Nuwar.U
BitDefender 7.2 2008.06.24 Trojan.Peed.JLV
CAT-QuickHeal 9.50 2008.06.23 -
ClamAV 0.93.1 2008.06.24 Trojan.Peed.JLV
DrWeb 4.44.0.09170 2008.06.23 -
eSafe 7.0.15.0 2008.06.23 Suspicious File
eTrust-Vet 31.6.5897 2008.06.23 Win32/Sintun.FB
Ewido 4.0 2008.06.23 -
F-Prot 4.4.4.56 2008.06.23 -
F-Secure 7.60.13501.0 2008.06.20 -
Fortinet 3.14.0.0 2008.06.23 W32/PackTibs.O
GData 2.0.7306.1023 2008.06.24 Win32:TDrop
Ikarus T3.1.1.26.0 2008.06.24 Email-Worm.Win32.Zhelatin.zy
Kaspersky 7.0.0.125 2008.06.24 -
McAfee 5323 2008.06.23 W32/Nuwar@MM
Microsoft 1.3604 2008.06.24 Backdoor:Win32/Nuwar.gen!D
NOD32v2 3211 2008.06.24 a variant of Win32/Nuwar.CZ
Norman 5.80.02 2008.06.23 -
Panda 9.0.0.4 2008.06.23 Suspicious file
Prevx1 V2 2008.06.24 -
Rising 20.50.02.00 2008.06.23 -
Sophos 4.30.0 2008.06.24 W32/Nuwar-E
Sunbelt 3.0.1153.1 2008.06.15 -
Symantec 10 2008.06.24 Trojan.Peacomm.D
TheHacker 6.2.92.359 2008.06.24 -
TrendMicro 8.700.0.1004 2008.06.23 WORM_NUWAR.ZI
VBA32 3.12.6.8 2008.06.23 -
VirusBuster 4.5.11.0 2008.06.23 -
Webwasher-Gateway 6.6.2 2008.06.24 Worm.Zhelatin.zc
Additional information
File size: 119296 bytes
MD5...: fdf3c0b20d489f718ae30b37e6e834c0
SHA1..: d55ce059091486a00d6f11018a475826fdff4b9c
SHA256: 1800453461f9cdf94abacd14046c31c8a303d7e512fa3bd1190c5635cd5eb00e
SHA512: 9c18c9e7c664d04486f830f98ac82dbe5cd44cb08b7b0bbed946a3d1431fc4ba
64d21bb02fd40cb0439881a977508aa82b2eb487e8b9aab2a1d9a6282221599c
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x401201
timedatestamp.....: 0x485fa454 (Mon Jun 23 13:25:40 2008)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x3e0 0x400 6.54 6ea745ef74cc3fef6d9977dc5c2238f2
.rdata 0x2000 0x5b76 0x5c00 7.97 680fb7f33599404c01f8259c3fde3dd3
.data 0x8000 0x317a 0x3200 7.98 492d027054010a32ce296795060eeda2
.tdata 0xc000 0x13a1e 0x13c00 7.99 90c9a749a5b710304029da6702dd1c47

( 2 imports )
> KERNEL32.dll: GetProcAddress, GetCurrentProcessId, VirtualAlloc, GetModuleHandleW
> PSAPI.DLL: EnumProcesses

( 1 exports )
start2

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file