Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File alex_359fab6b7b7c4da8dafedba92bfd received on 2009.09.29 05:51:09 (UTC)
Current status: finished
Result: 16/41 (39.02%)
Antivirus Version Last Update Result
a-squared 4.5.0.24 2009.09.29 Trojan-Downloader.Win32.Mufanom!IK
AhnLab-V3 5.0.0.2 2009.09.29 Win-Trojan/Mufanom.48128.D
AntiVir 7.9.1.27 2009.09.28 TR/Dldr.Mufanom.dhq
Antiy-AVL 2.0.3.7 2009.09.29 -
Authentium 5.1.2.4 2009.09.29 -
Avast 4.8.1351.0 2009.09.28 -
AVG 8.5.0.412 2009.09.28 -
BitDefender 7.2 2009.09.29 -
CAT-QuickHeal 10.00 2009.09.29 -
ClamAV 0.94.1 2009.09.29 -
Comodo 2466 2009.09.29 -
DrWeb 5.0.0.12182 2009.09.29 Trojan.DownLoad.47337
eSafe 7.0.17.0 2009.09.24 -
eTrust-Vet 31.6.6767 2009.09.29 Win32/Sipay.ND
F-Prot 4.5.1.85 2009.09.28 -
F-Secure 8.0.14470.0 2009.09.29 Trojan-Downloader.Win32.Mufanom.dhq
Fortinet 3.120.0.0 2009.09.29 W32/Mufanom.DHQ!tr.dldr
GData 19 2009.09.29 -
Ikarus T3.1.1.72.0 2009.09.29 Trojan-Downloader.Win32.Mufanom
Jiangmin 11.0.800 2009.09.27 -
K7AntiVirus 7.10.855 2009.09.26 -
Kaspersky 7.0.0.125 2009.09.29 Trojan-Downloader.Win32.Mufanom.dhq
McAfee 5755 2009.09.28 -
McAfee+Artemis 5755 2009.09.28 Artemis!2D1DA14CB700
McAfee-GW-Edition 6.8.5 2009.09.29 Trojan.Dldr.Mufanom.dhq
Microsoft 1.5005 2009.09.23 -
NOD32 4465 2009.09.28 Win32/Cimag.W
Norman 6.01.09 2009.09.28 -
nProtect 2009.1.8.0 2009.09.28 -
Panda 10.0.2.2 2009.09.28 -
PCTools 4.4.2.0 2009.09.28 -
Prevx 3.0 2009.09.29 Medium Risk Malware
Rising 21.49.10.00 2009.09.29 -
Sophos 4.45.0 2009.09.29 -
Sunbelt 3.2.1858.2 2009.09.29 Trojan.Win32.Hiloti.gen (v)
Symantec 1.4.4.12 2009.09.29 Trojan Horse
TheHacker 6.5.0.2.021 2009.09.28 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.29 Bscope.Malware-Cryptor.Tip
ViRobot 2009.9.29.1961 2009.09.29 -
VirusBuster 4.6.5.0 2009.09.28 -
Additional information
File size: 48128 bytes
MD5   : 2d1da14cb7002228062482328aece505
SHA1  : fee148febfe28e01778a5410c6c1c5ba185a258a
SHA256: 21a8314e630f19d18322dcaa40628a86595985d839d2ff3711fc34a02c421ef6
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x6BF8
timedatestamp.....: 0x49EE1ACB (Tue Apr 21 21:13:15 2009)
machinetype.......: 0x14C (Intel I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xA000 0x9200 7.67 5ca209e572d07a206340757a6fc09184
.data 0xB000 0x2000 0x2000 4.63 21409ff89bec0bb6b978f70602810bd0
.rsrc 0xD000 0x1000 0x400 2.81 e00b551b4618f3ca2349586694f91656
.reloc 0xE000 0x1000 0x200 1.37 95a128fdbff499e5f1d63b3b3afeafd2

( 5 imports )

> kernel32.dll: ExitProcess, FindResourceA, GetACP, GetCPInfo, GetCommandLineA, GetConsoleMode, GetModuleHandleA, GetOEMCP, GetStartupInfoA, HeapAlloc, HeapCreate, HeapSize, LoadResource, LockResource, MultiByteToWideChar, RtlUnwind, SetLastError, SetStdHandle, SetUnhandledExceptionFilter, WaitForMultipleObjects, lstrcpynA
> msvcrt.dll: sscanf, __p__commode, exit, swscanf, _wcsicmp, printf, free
> oleaut32.dll: -, -, -, -, -, -, -, -
> shlwapi.dll: SHDeleteKeyA, SHEnumKeyExA, PathFindOnPathA
> user32.dll: SetWindowPlacement, SetFocus

( 1 exports )

> D3DTextureUpdate, DrawTextExW_ME, W32N_GetAdapterRegistryInfo
TrID  : File type identification
Win32 Executable Generic (42.3%)
Win32 Dynamic Link Library (generic) (37.6%)
Generic Win/DOS Executable (9.9%)
DOS Executable Generic (9.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ssdeep: 768:S6wY7zaHIfoloEiz727w4DHvqj4RWc7yxQG/e/v1/g2HZNmyjDfH:Swpo694zv/RWcest/v5NmWTH
sigcheck: publisher....: Johnson-Grace Company
copyright....: (c)1996 AOL/Johnson-Grace Company
product......: JGAW
description..: JG Audio Interface DLL
original name: jgaw400.dll
internal name: JGAW
file version.: 036
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=A9D3AA7500B58909BC490085B37C6F00C6A31EAE
PEiD  : -
RDS   : NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file