|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.0.0.101 | 2009.05.01 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.05.01 | - |
| AntiVir | 7.9.0.160 | 2009.04.30 | - |
| Antiy-AVL | 2.0.3.1 | 2009.04.30 | - |
| Authentium | 5.1.2.4 | 2009.05.01 | - |
| Avast | 4.8.1335.0 | 2009.05.01 | - |
| AVG | 8.5.0.327 | 2009.05.01 | - |
| BitDefender | 7.2 | 2009.05.02 | - |
| CAT-QuickHeal | 10.00 | 2009.04.30 | - |
| ClamAV | 0.94.1 | 2009.05.02 | - |
| Comodo | 1146 | 2009.05.01 | - |
| DrWeb | 4.44.0.09170 | 2009.05.02 | - |
| eSafe | 7.0.17.0 | 2009.04.30 | - |
| eTrust-Vet | 31.6.6487 | 2009.05.02 | - |
| F-Prot | 4.4.4.56 | 2009.05.01 | - |
| F-Secure | 8.0.14470.0 | 2009.05.01 | - |
| Fortinet | 3.117.0.0 | 2009.05.02 | - |
| GData | 19 | 2009.05.02 | - |
| Ikarus | T3.1.1.49.0 | 2009.05.01 | - |
| K7AntiVirus | 7.10.721 | 2009.05.01 | - |
| Kaspersky | 7.0.0.125 | 2009.05.01 | - |
| McAfee | 5602 | 2009.05.01 | - |
| McAfee+Artemis | 5602 | 2009.05.01 | - |
| McAfee-GW-Edition | 6.7.6 | 2009.04.30 | - |
| Microsoft | 1.4602 | 2009.05.01 | - |
| NOD32 | 4049 | 2009.05.01 | - |
| Norman | 6.01.05 | 2009.04.30 | - |
| nProtect | 2009.1.8.0 | 2009.05.01 | - |
| Panda | 10.0.0.14 | 2009.05.01 | - |
| PCTools | 4.4.2.0 | 2009.05.01 | - |
| Prevx1 | 3.0 | 2009.05.02 | - |
| Rising | 21.27.41.00 | 2009.05.01 | - |
| Sophos | 4.41.0 | 2009.05.01 | - |
| Sunbelt | 3.2.1858.2 | 2009.05.02 | - |
| Symantec | 1.4.4.12 | 2009.05.02 | - |
| TheHacker | 6.3.4.1.317 | 2009.05.01 | - |
| TrendMicro | 8.950.0.1092 | 2009.05.01 | - |
| VBA32 | 3.12.10.4 | 2009.05.01 | - |
| ViRobot | 2009.5.1.1717 | 2009.05.01 | - |
| VirusBuster | 4.6.5.0 | 2009.05.01 | - |
| Additional information |
|---|
| File size: 18432 bytes |
| MD5...: eb90e28b28541ec845e5345609355ca7 |
| SHA1..: 5dc0ec288c33068a3a6fbb13af288e8647c0de6b |
| SHA256: 60c8df04eb5839ab1b8625c385f4b2089c63fe613463026f779b331d9bc4d4d6 |
| SHA512: ac63ed2672e48715ea0070d3ca695a037e38b936a2013e627076b46437f07379 debfb40ee5b102c9eae201a6ad70b6f0f785ad11846ee6d9bd7d3906414f74ab |
| ssdeep: 384:vXzKyEOExqKzE3Zb57O+1K3GovcMGZrmBjHGHygu0WBLTW:vXzDpb55BIBjT guLL |
| PEiD..: - |
| TrID..: File type identification Win32 Executable Generic (42.3%) Win32 Dynamic Link Library (generic) (37.6%) Generic Win/DOS Executable (9.9%) DOS Executable Generic (9.9%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x3eb0 timedatestamp.....: 0x48025200 (Sun Apr 13 18:33:36 2008) machinetype.......: 0x14c (I386) ( 3 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x386e 0x3a00 5.92 c060a9a45c10af7c37e032d4658672b4 .data 0x5000 0x668 0x600 2.74 03da08456d5d77a031b50ac1029e9702 .rsrc 0x6000 0x3c0 0x400 3.26 df4a1832b5c1cd55b1dec890962a43e6 ( 7 imports ) > msvcrt.dll: __p__commode, _adjust_fdiv, __setusermatherr, _initterm, __getmainargs, __initenv, _except_handler3, __p__fmode, _XcptFilter, _exit, _c_exit, wcscat, wcscpy, _controlfp, _cexit, __set_app_type, exit, wcslen > ADVAPI32.dll: RegDeleteValueW, RegCreateKeyExW, RegSetValueExW, StartServiceCtrlDispatcherW, RegisterServiceCtrlHandlerW, SetServiceStatus, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, RegisterEventSourceW, ReportEventW, RegOpenKeyExW, RegQueryValueExW, RegCloseKey, RegDeleteKeyW > KERNEL32.dll: FormatMessageW, LocalFree, GetComputerNameW, GetCurrentProcess, CreateThread, ExitProcess, Sleep, LocalAlloc, QueryPerformanceCounter, GetTickCount, GetCurrentThreadId, GetCurrentProcessId, GetSystemTimeAsFileTime, TerminateProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetModuleHandleA, ResetEvent, FreeLibrary, CreateProcessW, GetStartupInfoW, GetLastError, GetProcAddress, LoadLibraryW, EscapeCommFunction, WaitForSingleObject, SetEvent, CreateFileW, CloseHandle, GetCommModemStatus, WaitForMultipleObjects, WaitCommEvent, CreateEventW, SetCommMask > NETAPI32.dll: NetMessageBufferSend > USER32.dll: ExitWindowsEx > POWRPROF.dll: SetSuspendState, IsPwrHibernateAllowed, GetPwrCapabilities > ole32.dll: CoCreateInstance, CoInitialize, CoUninitialize ( 0 exports ) |
| PDFiD.: - |
| RDS...: NSRL Reference Data Set - |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.