Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File Room_Destroy.exe received on 2009.01.31 19:34:59 (UTC)
Current status: finished
Result: 3/39 (7.69%)
Antivirus Version Last Update Result
a-squared 4.0.0.93 2009.01.31 -
AhnLab-V3 5.0.0.2 2009.01.31 -
AntiVir 7.9.0.60 2009.01.30 -
Authentium 5.1.0.4 2009.01.31 -
Avast 4.8.1281.0 2009.01.30 -
AVG 8.0.0.229 2009.01.30 -
BitDefender 7.2 2009.01.31 -
CAT-QuickHeal 10.00 2009.01.31 -
ClamAV 0.94.1 2009.01.31 -
Comodo 955 2009.01.31 -
DrWeb 4.44.0.09170 2009.01.31 -
eSafe 7.0.17.0 2009.01.29 -
eTrust-Vet 31.6.6335 2009.01.29 -
F-Prot 4.4.4.56 2009.01.31 -
F-Secure 8.0.14470.0 2009.01.31 -
Fortinet 3.117.0.0 2009.01.31 -
GData 19 2009.01.31 -
Ikarus T3.1.1.45.0 2009.01.31 -
K7AntiVirus 7.10.612 2009.01.31 -
Kaspersky 7.0.0.125 2009.01.31 -
McAfee 5512 2009.01.31 YIM-Flood.a
McAfee+Artemis 5512 2009.01.31 YIM-Flood.a
Microsoft 1.4306 2009.01.31 -
NOD32 3815 2009.01.31 -
Norman 6.00.02 2009.01.31 -
nProtect 2009.1.8.0 2009.01.30 -
Panda 9.5.1.2 2009.01.31 -
PCTools 4.4.2.0 2009.01.31 -
Prevx1 V2 2009.01.31 -
Rising 21.13.42.00 2009.01.23 -
SecureWeb-Gateway 6.7.6 2009.01.30 -
Sophos 4.38.0 2009.01.31 -
Sunbelt 3.2.1835.2 2009.01.16 -
Symantec 10 2009.01.31 -
TheHacker 6.3.1.5.241 2009.01.31 -
TrendMicro 8.700.0.1004 2009.01.30 -
VBA32 3.12.8.12 2009.01.30 suspected of Malware.VB.64 (paranoid heuristics)
ViRobot 2009.1.31.1583 2009.01.31 -
VirusBuster 4.5.11.0 2009.01.31 -
Additional information
File size: 2220032 bytes
MD5...: 882f77ded4a2e5c79aa9d6e7f339d0a4
SHA1..: 4ab8858a754b12a1a591e164135b22ba7d1c3a6f
SHA256: 2fbbd4b99640aa406d48d4d9339f30ecd7a42c0f1af9fb45fa7e38421d9566ae
SHA512: 3ce654add413b8ebf0522a71f6c748001f7eef771f1401b6976da3fd81b5eef4
f53085cafd986886737fa6b22452f539feb7d12769a522a9ca0e747e813eef41
ssdeep: 24576:OQt3SitleK+t4KKfcdESVzp1o1IdBYKmMj67YC7WUH+IqHRrqSNt+QVRwA
1GXphA:LtkK+K1cW1IdBpjgDqZ7BZ1+
PEiD..: -
TrID..: File type identification
Win32 Executable Microsoft Visual Basic 6 (86.2%)
Win32 Executable Generic (5.8%)
Win32 Dynamic Link Library (generic) (5.1%)
Generic Win/DOS Executable (1.3%)
DOS Executable Generic (1.3%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0xa830
timedatestamp.....: 0x497846d9 (Thu Jan 22 10:13:45 2009)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x1aa5d0 0x1ab000 6.22 9888643fb765363e7246cb75e9d8701e
.data 0x1ac000 0x101e8 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110
.rsrc 0x1bd000 0x70938 0x71000 6.34 e072911908ea3cfd7f2b07e085d16c8e

( 1 imports )
> MSVBVM60.DLL: __vbaR8FixI4, __vbaVarTstGt, __vbaVarSub, __vbaStrI2, -, -, _CIcos, _adj_fptan, __vbaStrI4, __vbaVarMove, __vbaAryMove, __vbaFreeVar, __vbaLateIdCall, __vbaStrVarMove, __vbaLenBstr, __vbaLineInputStr, -, __vbaFreeVarList, __vbaEnd, _adj_fdiv_m64, __vbaRaiseEvent, __vbaFreeObjList, -, __vbaStrErrVarCopy, -, _adj_fprem1, -, __vbaRecAnsiToUni, -, __vbaCopyBytes, __vbaStrCat, __vbaVarCmpNe, __vbaError, -, __vbaBoolErrVar, __vbaLsetFixstr, -, __vbaSetSystemError, __vbaRecDestruct, __vbaHresultCheckObj, __vbaLenVar, _adj_fdiv_m32, __vbaAryVar, __vbaAryDestruct, __vbaVarIndexLoadRefLock, __vbaVarPow, -, __vbaVarForInit, __vbaBoolStr, __vbaForEachCollObj, __vbaExitProc, -, -, -, __vbaObjSet, __vbaOnError, -, _adj_fdiv_m16i, -, __vbaObjSetAddref, _adj_fdivr_m16i, __vbaVarIndexLoad, -, __vbaFpR4, -, __vbaBoolVar, -, -, -, __vbaBoolVarNull, __vbaVarTstLt, _CIsin, -, -, -, __vbaNextEachCollObj, __vbaVarCmpGt, __vbaChkstk, -, __vbaFileClose, EVENT_SINK_AddRef, __vbaGenerateBoundsError, -, -, __vbaStrCmp, __vbaVarTstEq, __vbaAryConstruct2, __vbaR4Str, __vbaObjVar, __vbaI2I4, -, DllFunctionCall, __vbaVarOr, __vbaCastObjVar, __vbaStrR4, __vbaLbound, __vbaRedimPreserve, _adj_fpatan, __vbaR4Var, __vbaLateIdCallLd, __vbaStrR8, __vbaRedim, __vbaRecUniToAnsi, EVENT_SINK_Release, __vbaNew, -, __vbaUI1I2, _CIsqrt, __vbaVarAnd, EVENT_SINK_QueryInterface, __vbaVarMul, __vbaUI1I4, __vbaExceptHandler, -, __vbaInputFile, __vbaPrintFile, -, __vbaStrToUnicode, -, _adj_fprem, _adj_fdivr_m64, -, __vbaI2Str, -, -, -, __vbaFPException, -, -, __vbaInStrVar, __vbaGetOwner3, __vbaUbound, __vbaStrVarVal, -, __vbaVarCat, __vbaI2Var, -, -, _CIlog, __vbaErrorOverflow, __vbaFileOpen, __vbaNew2, -, __vbaInStr, __vbaR8Str, -, _adj_fdiv_m32i, -, _adj_fdivr_m32i, -, __vbaStrCopy, __vbaI4Str, -, __vbaFreeStrList, __vbaVarNot, _adj_fdivr_m32, __vbaR8Var, _adj_fdiv_r, -, -, -, -, __vbaVarTstNe, __vbaI4Var, __vbaVarCmpEq, -, -, __vbaLateMemCall, __vbaVarAdd, __vbaAryLock, __vbaVarDup, __vbaStrToAnsi, -, __vbaFpI2, __vbaVarLateMemCallLd, __vbaFpI4, -, __vbaVarCopy, __vbaLateMemCallLd, __vbaR8IntI2, -, __vbaRecDestructAnsi, _CIatan, -, __vbaCastObj, __vbaStrMove, __vbaAryCopy, __vbaI2ErrVar, __vbaR8IntI4, __vbaStrVarCopy, -, _allmul, __vbaLateIdSt, _CItan, __vbaFPInt, __vbaUI1Var, __vbaAryUnlock, __vbaVarForNext, _CIexp, __vbaMidStmtBstr, -, __vbaFreeObj, __vbaFreeStr, __vbaI4ErrVar, -

( 0 exports )

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file