Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File remove_Nero_Scout.exe received on 2008.06.21 00:18:39 (UTC)
Current status: finished
Result: 24/33 (72.73%)
Antivirus Version Last Update Result
AhnLab-V3 2008.6.19.0 2008.06.20 BAT/Killav.30208
AntiVir 7.8.0.59 2008.06.20 BDS/CWZ.A.2
Authentium 5.1.0.4 2008.06.20 W32/Hupigon.AVO
Avast 4.8.1195.0 2008.06.20 Win32:BeastDoor-BE
AVG 7.5.0.516 2008.06.20 BackDoor.Generic2.BZD
BitDefender 7.2 2008.06.21 Backdoor.CWZ
CAT-QuickHeal 9.50 2008.06.20 (Suspicious) - DNAScan
ClamAV 0.93.1 2008.06.20 Trojan.Agent-14252
DrWeb 4.44.0.09170 2008.06.20 Trojan.MulDrop.8497
eSafe 7.0.15.0 2008.06.19 -
eTrust-Vet 31.6.5892 2008.06.21 -
Ewido 4.0 2008.06.20 Backdoor.Hupigon.ws
F-Prot 4.4.4.56 2008.06.20 W32/Hupigon.AVO
F-Secure 7.60.13501.0 2008.06.20 -
Fortinet 3.14.0.0 2008.06.20 PossibleThreat
GData 2.0.7306.1023 2008.06.20 Win32:BeastDoor-BE
Ikarus T3.1.1.26.0 2008.06.21 Backdoor.Win32.Hupigon.WS
Kaspersky 7.0.0.125 2008.06.21 -
McAfee 5322 2008.06.20 Generic.dx
Microsoft None 2008.06.21 -
NOD32v2 3204 2008.06.20 -
Norman 5.80.02 2008.06.20 W32/Smalldoor.AHMX
Panda 9.0.0.4 2008.06.20 Generic Backdoor
Prevx1 V2 2008.06.21 System Back Door
Rising 20.49.42.00 2008.06.20 -
Sophos 4.30.0 2008.06.21 Mal/Generic-A
Sunbelt 3.0.1153.1 2008.06.15 Backdoor.CWZ
Symantec 10 2008.06.21 Backdoor.Trojan
TheHacker 6.2.92.356 2008.06.20 -
TrendMicro 8.700.0.1004 2008.06.20 PAK_Generic.001
VBA32 3.12.6.7 2008.06.19 Trojan.Win32.StartPage.ail
VirusBuster 4.3.26:9 2008.06.12 -
Webwasher-Gateway 6.6.2 2008.06.20 Trojan.Backdoor.CWZ.A.2
Additional information
File size: 8704 bytes
MD5...: 95914ab558d39aef04d8108ab29439cb
SHA1..: 6ce8650a0a9b688546bebdc58b51f35f022f2afa
SHA256: 0a2bbb83a318648e04d858fe2b59dec640bfa5ddb8570e94ca114e347d06de65
SHA512: 467d7f4a0eb21c88878617a830823e24efe7a046498921fdfb3f1ee1cecf2233
f4c14b642113746c3ec5bb52e31fc4e8e072043e0d9556ea3b494e96cf48f83c
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x402158
timedatestamp.....: 0x4367632d (Tue Nov 01 12:44:29 2005)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.bss 0x1000 0x28 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.data 0x2000 0x948 0xa00 5.55 6c9205cad78dfc469bf1286e0400af2d
.rsrc 0x3000 0x12d8 0x1400 5.66 3a6d43e67009d7f42477466d3ef47df2

( 4 imports )
> MSVCRT.dll: strlen, _getch, malloc, _strlwr, strcpy, strcat, strcmp
> KERNEL32.dll: FindResourceA, GetCommandLineA, GetModuleHandleA, GetStdHandle, CreatePipe, SetStdHandle, GetCurrentProcess, DuplicateHandle, DeleteFileA, WaitForSingleObject, CreateProcessA, CreateFileA, GetModuleFileNameA, GetTickCount, LockResource, LoadResource, CloseHandle, GetTempPathA, WriteFile
> USER32.dll: LoadStringA, wsprintfA
> SHLWAPI.dll: StrToIntA

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=DF9421E00065765622C300C260411C000FD1B23C
packers (Kaspersky): WScript

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file