|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.0.0.101 | 2009.03.31 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.03.31 | - |
| AntiVir | 7.9.0.129 | 2009.03.31 | TR/Dropper.Gen |
| Antiy-AVL | 2.0.3.1 | 2009.03.30 | - |
| Authentium | 5.1.2.4 | 2009.03.30 | - |
| Avast | 4.8.1335.0 | 2009.03.30 | - |
| AVG | 8.5.0.285 | 2009.03.31 | - |
| BitDefender | 7.2 | 2009.03.31 | Trojan.Downloader.FakeAV.AZ |
| CAT-QuickHeal | 10.00 | 2009.03.31 | - |
| ClamAV | 0.94.1 | 2009.03.31 | - |
| Comodo | 1092 | 2009.03.31 | - |
| DrWeb | 4.44.0.09170 | 2009.03.31 | - |
| eSafe | 7.0.17.0 | 2009.03.31 | - |
| eTrust-Vet | 31.6.6426 | 2009.03.31 | - |
| F-Prot | 4.4.4.56 | 2009.03.30 | - |
| F-Secure | 8.0.14470.0 | 2009.03.31 | - |
| Fortinet | 3.117.0.0 | 2009.03.31 | - |
| GData | 19 | 2009.03.31 | Trojan.Downloader.FakeAV.AZ |
| Ikarus | T3.1.1.49.0 | 2009.03.31 | - |
| K7AntiVirus | 7.10.685 | 2009.03.30 | - |
| Kaspersky | 7.0.0.125 | 2009.03.31 | - |
| McAfee | 5569 | 2009.03.30 | Generic Dropper.cx |
| McAfee+Artemis | 5569 | 2009.03.30 | Generic Dropper.cx |
| McAfee-GW-Edition | 6.7.6 | 2009.03.31 | Trojan.Dropper.Gen |
| Microsoft | 1.4502 | 2009.03.31 | - |
| NOD32 | 3977 | 2009.03.31 | - |
| Norman | 6.00.06 | 2009.03.31 | - |
| nProtect | 2009.1.8.0 | 2009.03.31 | - |
| Panda | 10.0.0.14 | 2009.03.31 | - |
| PCTools | 4.4.2.0 | 2009.03.31 | - |
| Prevx1 | V2 | 2009.03.31 | - |
| Rising | 21.23.12.00 | 2009.03.31 | - |
| Sophos | 4.40.0 | 2009.03.31 | Mal/EncPk-CZ |
| Sunbelt | 3.2.1858.2 | 2009.03.31 | - |
| Symantec | 1.4.4.12 | 2009.03.31 | - |
| TheHacker | 6.3.3.9.296 | 2009.03.30 | - |
| TrendMicro | 8.700.0.1004 | 2009.03.31 | - |
| VBA32 | 3.12.10.1 | 2009.03.31 | - |
| ViRobot | 2009.3.31.1669 | 2009.03.31 | - |
| VirusBuster | 4.6.5.0 | 2009.03.31 | - |
| Additional information |
|---|
| File size: 88068 bytes |
| MD5 : e8f39f0d088cf3d533a2c00986d3ebec |
| SHA1 : 8b50956e43bf41556c436848afca15687a145bab |
| SHA256: 2850db5b2c1a00c13725aa2918004c9f408b245419ba5398ae057924d835aded |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x1109 timedatestamp.....: 0x480802FE (Fri Apr 18 04:10:06 2008) machinetype.......: 0x14C (Intel I386) ( 5 sections ) name viradd virsiz rawdsiz ntrpy md5 .nAow 0x1000 0x186D 0x1A00 5.36 72e5d99833fb1f15ea88a07fa2ee0e18 .pMjsSH 0x3000 0x10A73 0x10C00 7.37 72b30cfb6e914b0a91c3840116127b1f .xTWc 0x14000 0x1F782 0x1800 0.00 ff1ce2018aa17fe600fca636b126dbe4 .YcVdrC 0x34000 0x838 0x600 0.00 53e979547d8c2ea86560ac45de08ae25 .ULeYzu 0x35000 0x4CB 0x400 0.00 0f343b0931126a20f133d67c2b018a3b ( 4 imports ) > advapi32.dll: RegDeleteKeyA, RegCreateKeyW, RegCreateKeyExW, RegReplaceKeyW, RegQueryValueExA, RegEnumValueA, RegQueryInfoKeyA, RegDeleteValueW, RegEnumKeyExW, RegQueryValueExW, RegReplaceKeyA, RegLoadKeyA, RegOpenKeyA, RegOpenKeyExW, RegQueryValueA, RegGetKeySecurity, RegOpenKeyExA, RegEnumKeyExA, RegDeleteKeyW, RegOpenKeyW > comctl32.dll: ImageList_Remove, ImageList_DragShowNolock, ImageList_Read, ImageList_Draw, ImageList_GetImageInfo, ImageList_BeginDrag, ImageList_AddIcon, ImageList_Merge, ImageList_Create, ImageList_GetIconSize, ImageList_GetImageRect, ImageList_AddMasked, ImageList_DrawEx, ImageList_GetImageCount, ImageList_ReplaceIcon, ImageList_DragMove, ImageList_LoadImageA > kernel32.dll: lstrlenA, GetLocalTime, GetStringTypeA, GlobalFree, GetCommandLineA, CloseHandle, GetStringTypeW, GetFileSize, GetCPInfo, lstrcmpA, SetLastError, GlobalAlloc, GetModuleFileNameA, DeleteFileA, HeapFree, lstrcmpiA > user32.dll: AppendMenuW, EndDialog, GetFocus, LoadMenuA, DrawIconEx, DrawIcon, GetWindowTextA, IsWindow, LoadCursorA, DialogBoxParamA, CopyIcon, IsMenu, AlignRects, DrawTextA, CreateIcon, DialogBoxParamW ( 0 exports ) |
| TrID : File type identification Clipper DOS Executable (33.3%) Generic Win/DOS Executable (33.0%) DOS Executable Generic (33.0%) VXD Driver (0.5%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%) |
| ssdeep: 768:FanzQ7KSmEqNh6O0vKPLJM+NBS0+dnrlH3LpYcMh6nfrm1rju1pxR1mb3FrOoJ2L:S013mh6Rfd3iL86uFRe3Z2Agb+2 |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.