Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File beep.sys received on 11.14.2008 05:55:30 (CET)
Current status: finished
Result: 29/36 (80.56%)
Antivirus Version Last Update Result
AhnLab-V3 2008.11.14.0 2008.11.14 -
AntiVir 7.9.0.31 2008.11.13 TR/Rootkit.Gen
Authentium 5.1.0.4 2008.11.14 W32/SYStroj.H.gen!Eldorado
Avast 4.8.1281.0 2008.11.14 Win32:Agent-QNI
AVG 8.0.0.199 2008.11.14 Agent.3.R
BitDefender 7.2 2008.11.14 Generic.Malware.P!.2E8513A2
CAT-QuickHeal 10.00 2008.11.13 FraudTool.UltimateDefender.cm (Not a Virus)
ClamAV 0.94.1 2008.11.14 -
DrWeb 4.44.0.09170 2008.11.14 Trojan.Fakealert.458
eSafe 7.0.17.0 2008.11.13 -
eTrust-Vet 31.6.6208 2008.11.13 Win32/Eldycow!generic
Ewido 4.0 2008.11.13 -
F-Prot 4.4.4.56 2008.11.13 W32/SYStroj.H.gen!Eldorado
F-Secure 8.0.14332.0 2008.11.14 Backdoor.Win32.UltimateDefender.a
Fortinet 3.117.0.0 2008.11.13 Spy/UltimateDefender
GData 19 2008.11.14 Generic.Malware.P!.2E8513A2
Ikarus T3.1.1.45.0 2008.11.14 not-a-virus:.FraudTool.Win32.UltimateDefender.cm
K7AntiVirus 7.10.524 2008.11.13 -
Kaspersky 7.0.0.125 2008.11.14 Backdoor.Win32.UltimateDefender.a
McAfee 5433 2008.11.13 NTRootKit-AC
Microsoft 1.4104 2008.11.14 VirTool:WinNT/Xantvi.gen!A
NOD32 3612 2008.11.13 Win32/Adware.UltimateDefender
Norman 5.80.02 2008.11.13 W32/Rootkit.SLZ
Panda 9.0.0.4 2008.11.14 Rootkit/Nurech.BC
PCTools 4.4.2.0 2008.11.13 Rootkit.Renos.Gen.11
Prevx1 V2 2008.11.14 Malicious Software
Rising 21.03.40.00 2008.11.14 Trojan.DL.Win32.Braviax.o
SecureWeb-Gateway 6.7.6 2008.11.14 Trojan.Rootkit.Gen
Sophos 4.35.0 2008.11.14 Mal/FakeAle-C
Sunbelt 3.1.1785.2 2008.11.11 -
Symantec 10 2008.11.14 Hacktool.Rootkit
TheHacker 6.3.1.1.152 2008.11.13 -
TrendMicro 8.700.0.1004 2008.11.14 TROJ_VIRANTIX.BF
VBA32 3.12.8.9 2008.11.13 OScope.Rootkit.Win32.Ogorod
ViRobot 2008.11.14.1467 2008.11.14 Backdoor.Win32.UltimateDefender.28672.G
VirusBuster 4.5.11.0 2008.11.13 Rootkit.Renos.Gen.11
Additional information
File size: 28672 bytes
MD5...: c4618f889863b5aa357f5f5ba8f353d6
SHA1..: ed50cc1d9b47c888b16bb3659fbf17c9bc63f165
SHA256: 6277b3ffcb9d1cfc6b5c5d9efaa19cce8fdb7898785d50e86dcfb07e5afc8835
SHA512: bdfba06d5e2dc434e0f4eb2e11e8bb0a8f7062b3dcc507b697739ec698e825d0
332bd0edce07b310724ee4bcd655586b4efc1a9788dbe50bc0ba6146e57ef681
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (68.0%)
Generic Win/DOS Executable (15.9%)
DOS Executable Generic (15.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x11f66
timedatestamp.....: 0x4919f51e (Tue Nov 11 21:11:58 2008)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x183f 0x1a00 5.56 b42c62b19f894079b22d1397029a295e
.data 0x3000 0x45c0 0x4600 7.86 079223bf1df729cc826d9d557e676280
INIT 0x8000 0x500 0x600 4.65 1540f5cd5e037aa1b3f28e011854274a
.rsrc 0x9000 0xb0 0x200 4.10 9354afdd3424b559a0b57a6c2eec82b4
.reloc 0xa000 0x326 0x400 4.61 596e909530e9ee6fe9f552f7565da1f7

( 2 imports )
> ntoskrnl.exe: IoStartNextPacket, IoReleaseCancelSpinLock, KeRemoveDeviceQueue, InterlockedExchange, IoAcquireCancelSpinLock, IoStartPacket, IoDeleteDevice, KeSetTimer, InterlockedIncrement, MmMapLockedPages, MmBuildMdlForNonPagedPool, MmCreateMdl, KeServiceDescriptorTable, MmPageEntireDriver, KeInitializeEvent, KeInitializeTimer, KeInitializeDpc, PsSetLoadImageNotifyRoutine, KeRemoveEntryDeviceQueue, IoCreateDevice, ExReleaseResourceLite, ExFreePool, ZwClose, ZwWriteFile, ExAllocatePoolWithTag, ZwCreateFile, ExAcquireResourceExclusiveLite, RtlInitUnicodeString, ZwSetValueKey, ZwCreateKey, ZwDeleteValueKey, tolower, RtlFreeAnsiString, ZwTerminateProcess, ZwOpenProcess, RtlInitAnsiString, RtlUnicodeStringToAnsiString, KeCancelTimer, MmUnlockPagableImageSection, MmLockPagableDataSection, IofCompleteRequest, ZwQuerySystemInformation, InterlockedDecrement
> HAL.dll: KfLowerIrql, ExAcquireFastMutex, ExReleaseFastMutex, HalMakeBeep, KfRaiseIrql

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=48661007002B1601708400C0611A2A00760837C4

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file