Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File rss_plugin.exe received on 2009.11.16 11:23:56 (UTC)
Current status: finished
Result: 8/41 (19.51%)
Antivirus Version Last Update Result
a-squared 4.5.0.41 2009.11.16 Backdoor.Win32.Bredavi!IK
AhnLab-V3 5.0.0.2 2009.11.13 -
AntiVir 7.9.1.65 2009.11.16 BDS/Bredavi.atm
Antiy-AVL 2.0.3.7 2009.11.16 -
Authentium 5.2.0.5 2009.11.15 -
Avast 4.8.1351.0 2009.11.16 -
AVG 8.5.0.425 2009.11.16 -
BitDefender 7.2 2009.11.16 -
CAT-QuickHeal 10.00 2009.11.16 -
ClamAV 0.94.1 2009.11.15 -
Comodo 2957 2009.11.15 -
DrWeb 5.0.0.12182 2009.11.16 -
eSafe 7.0.17.0 2009.11.16 -
eTrust-Vet 35.1.7122 2009.11.16 -
F-Prot 4.5.1.85 2009.11.15 -
F-Secure 9.0.15370.0 2009.11.11 Suspicious:W32/Malware!Online
Fortinet 3.120.0.0 2009.11.16 W32/Agent.GM!tr
GData 19 2009.11.16 -
Ikarus T3.1.1.74.0 2009.11.16 Backdoor.Win32.Bredavi
Jiangmin 11.0.800 2009.11.16 -
K7AntiVirus 7.10.896 2009.11.13 -
Kaspersky 7.0.0.125 2009.11.16 Backdoor.Win32.Bredavi.atm
McAfee 5803 2009.11.15 -
McAfee+Artemis 5803 2009.11.15 -
McAfee-GW-Edition 6.8.5 2009.11.16 Trojan.Backdoor.Bredavi.atm
Microsoft 1.5202 2009.11.16 -
NOD32 4611 2009.11.16 a variant of Win32/Kryptik.ASU
Norman 6.03.02 2009.11.16 -
nProtect 2009.1.8.0 2009.11.16 -
Panda 10.0.2.2 2009.11.15 -
PCTools 7.0.3.5 2009.11.16 -
Prevx 3.0 2009.11.16 -
Rising 22.22.00.07 2009.11.16 -
Sophos 4.47.0 2009.11.16 -
Sunbelt 3.2.1858.2 2009.11.12 -
Symantec 1.4.4.12 2009.11.16 -
TheHacker 6.5.0.2.070 2009.11.14 -
TrendMicro 9.0.0.1003 2009.11.16 -
VBA32 3.12.10.11 2009.11.15 -
ViRobot 2009.11.16.2039 2009.11.16 -
VirusBuster 4.6.5.0 2009.11.15 -
Additional information
File size: 98304 bytes
MD5   : 7d873a5f81122d65b41596326ac9365e
SHA1  : 72fea64742088e17b7e787acb713fe10f5f6341d
SHA256: 2fb7cce6afc7df4fd54b42bcc45b06fa2f7dfd38cbc3f1eda94c72fa860a3616
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1000
timedatestamp.....: 0x32AB8D00 (Mon Dec 9 04:52:32 1996)
machinetype.......: 0x14C (Intel I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xC756 0xC800 7.83 5ecee47d791b4566003b5382b95065a9
.rdata 0xE000 0xC2D 0xE00 4.38 f402a6d41c3f97139c6079c7e961bb2e
.data 0xF000 0xA0C0 0xA200 7.76 5648a9ba7e8ed0284dbf3adb262f3fde
.rsrc 0x1A000 0x3C0 0x400 3.70 f71552a6bfd51a2aa424a6ee5aaa7b69

( 2 imports )

> kernel32.dll: CallNamedPipeA, SetLastError, HeapCreate, CompareStringA, ExitProcess, CallNamedPipeA, AddAtomW, GetAtomNameA, GetExitCodeThread, EnumSystemLanguageGroupsA, WaitForSingleObject, AddAtomW, GetComputerNameW, GetAtomNameA, SetLastError, GetLongPathNameA, lstrcmpW, AddAtomW, lstrcmpA, GetAtomNameA, WaitForSingleObject, CompareStringA, GetAtomNameA, HeapCreate, GetComputerNameA, HeapAlloc, SetLastError, EnumSystemLanguageGroupsA, lstrcmpA, OpenEventA, OpenSemaphoreW, GetComputerNameW, ExitProcess, lstrcatW, lstrcmpA, HeapDestroy, EnumSystemLanguageGroupsA, lstrcmpA, HeapCreate, CallNamedPipeA, ExitProcess, GetExitCodeThread, GetAtomNameA, GetExitCodeThread, AddAtomW, EnumSystemLanguageGroupsA, HeapDestroy, GetAtomNameA, CompareStringA, CompareStringA, ExitProcess, GetLongPathNameA, CompareStringA, ExitProcess, WaitForSingleObject, EnumSystemLanguageGroupsA, SetUnhandledExceptionFilter, lstrcat, GetFileAttributesExA, SetLastError, HeapCreate, HeapDestroy, GetAtomNameA, lstrcmpA, HeapAlloc, HeapCreate, VirtualProtect, GetLongPathNameA, CreateMailslotA
> user32.dll: SetDlgItemTextW, SendMessageW, GetWindowRect, CharNextExA, SetWindowTextW, CreateWindowExA, CreateWindowExA, SetForegroundWindow, wsprintfW, GetSysColor, DialogBoxParamW, PostQuitMessage, CharPrevW, CharNextExA, SetWindowTextW, SendMessageA, GetFocus, DialogBoxParamA, GetClientRect, GetFocus, CharPrevW, CreateWindowExA, GetWindowLongW, GetClientRect, GetParent, PeekMessageA, SetTimer, MessageBoxA, GetSysColor, GetFocus, PostQuitMessage, DefWindowProcW, SetTimer, SetWindowLongW, DefWindowProcA, CharNextExA, DefWindowProcW, CreateWindowExA, GetDlgItem, SetDlgItemTextW, SetForegroundWindow, LoadIconW, GetDC, GetDlgItemTextA, SetDlgItemTextW, GetSysColorBrush, EndDialog, DispatchMessageA, InvalidateRect, CreateWindowExW, SetDlgItemInt, ShowWindow, CharPrevExA, GetClientRect

( 0 exports )
TrID  : File type identification
Win32 Executable MS Visual C++ 4.x (85.8%)
Win32 Executable Generic (5.4%)
Win32 Dynamic Link Library (generic) (4.8%)
Win16/32 Executable Delphi generic (1.3%)
Generic Win/DOS Executable (1.2%)
ssdeep: 1536:ctvHGqVIWso6MTiSrnen4ioUO3rRm1ibnITgJ6nU/jGlxhuFrp6RCRRTFXnj5u2G:ctvmqVIcW545m1+IPhPhuZp6R8TZnj5Y
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=7E33E31D009FAFA280DC0129946FE100A3C7CBB1
PEiD  : -
RDS   : NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file