Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File svchost.exe received on 2008.11.13 03:08:34 (UTC)
Current status: finished
Result: 24/36 (66.67%)
Antivirus Version Last Update Result
AhnLab-V3 2008.11.13.0 2008.11.13 Win-Trojan/Fakeav.9728
AntiVir 7.9.0.31 2008.11.12 Worm/Autorun.nuz
Authentium 5.1.0.4 2008.11.12 -
Avast 4.8.1248.0 2008.11.12 Win32:FakeAlert-AJ
AVG 8.0.0.199 2008.11.12 Dropper.Bravix.K
BitDefender 7.2 2008.11.12 Trojan.FakeAlert.ALD
CAT-QuickHeal 9.50 2008.11.12 -
ClamAV 0.94.1 2008.11.12 -
DrWeb 4.44.0.09170 2008.11.13 Trojan.Packed.1214
eSafe 7.0.17.0 2008.11.12 Suspicious File
eTrust-Vet 31.6.6203 2008.11.11 Win32/FakeAlert.KT
Ewido 4.0 2008.11.12 -
F-Prot 4.4.4.56 2008.11.12 -
F-Secure 8.0.14332.0 2008.11.13 W32/Antivirus2008.UB
Fortinet 3.117.0.0 2008.11.12 -
GData 19 2008.11.12 Trojan.FakeAlert.ALD
Ikarus T3.1.1.45.0 2008.11.12 Virus.Win32.Virut.au
K7AntiVirus 7.10.523 2008.11.12 -
Kaspersky 7.0.0.125 2008.11.13 -
McAfee 5432 2008.11.13 Generic FakeAlert.d
Microsoft 1.4104 2008.11.13 Trojan:Win32/Wantvi.I
NOD32 3608 2008.11.13 Win32/TrojanDownloader.FakeAlert.PL.Gen
Norman 5.80.02 2008.11.12 W32/Antivirus2008.UB
Panda 9.0.0.4 2008.11.12 Generic Malware
PCTools 4.4.2.0 2008.11.13 -
Prevx1 V2 2008.11.13 Malicious Software
Rising 21.03.22.00 2008.11.12 -
SecureWeb-Gateway 6.7.6 2008.11.12 Worm.Autorun.nuz
Sophos 4.35.0 2008.11.13 Mal/EncPk-EQ
Sunbelt 3.1.1785.2 2008.11.11 Trojan.FakeAlert
Symantec 10 2008.11.13 Trojan.Virantix.C
TheHacker 6.3.1.1.151 2008.11.13 -
TrendMicro 8.700.0.1004 2008.11.13 -
VBA32 3.12.8.9 2008.11.12 Backdoor.Win32.UltimateDefender.tt
ViRobot 2008.11.12.1463 2008.11.12 Backdoor.Win32.UltimateDefender.43520.T
VirusBuster 4.5.11.0 2008.11.12 Trojan.FakeAlert.Gen!Pac.3
Additional information
File size: 44032 bytes
MD5...: 26fafa838db23646661bfde34b537059
SHA1..: 2be773248e9c09c8f3e5de0bd194c912b4c4f1df
SHA256: 8224ebac3958dd2e23476d97956643da2015a60b061a71adb9b9f3edbb683003
SHA512: 5105812350a071eb93c295743addd3f3e9a3692ec60a1852350804dd8e74888b
3bdd01dad4b9d30fbe6452c9e4a12730506e49c00151828d0e83babdef84e467
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (42.3%)
Win32 Dynamic Link Library (generic) (37.6%)
Generic Win/DOS Executable (9.9%)
DOS Executable Generic (9.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x401008
timedatestamp.....: 0x0 (Thu Jan 01 00:00:00 1970)
machinetype.......: 0x14c (I386)

( 2 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x1000 0x200 5.74 e26770f0d835bfaec71d0f6d9de6f250
.data 0x2000 0xb000 0xa600 7.95 af3fae487d3c930e0d0faff4592ef003

( 3 imports )
> KERNEL32.DLL: CancelWaitableTimer, CloseHandle, CreateFileMappingW, DuplicateHandle, EnumCalendarInfoExW, ExitProcess, GetComputerNameA, GetCurrentDirectoryA, GetCurrentDirectoryW, GetLocaleInfoA, GetSystemDefaultLCID, LocalReAlloc, MulDiv, PostQueuedCompletionStatus, ReadConsoleOutputW, RemoveDirectoryA, ResumeThread, SetConsoleActiveScreenBuffer, SetFileAttributesW, SetSystemPowerState, SetThreadIdealProcessor, SystemTimeToFileTime, WaitForSingleObject, WideCharToMultiByte, WriteConsoleOutputCharacterW
> USER32.DLL: CallMsgFilter, CharToOemW, CharUpperBuffA, CreateWindowStationA, DdeKeepStringHandle, DdeQueryStringW, DdeUninitialize, DefWindowProcW, DragDetect, EndTask, EnumDesktopWindows, FindWindowA, FindWindowExA, GetKeyboardType, GetMessagePos, GetWindowModuleFileNameA, IsCharLowerW, MoveWindow, OemToCharW, OpenWindowStationW, PeekMessageW, ScreenToClient, SetPropW, WinHelpW, mouse_event
> GDI32.DLL: AnimatePalette, ArcTo, CreateFontA, CreateRectRgnIndirect, CreateScalableFontResourceA, Escape, GetBkColor, GetCharWidth32W, GetEnhMetaFileA, GetLogColorSpaceA, GetObjectType, GetTextColor, GetTextFaceW, GetWorldTransform, InvertRgn, SetICMProfileW, SetLayout, SetMagicColors, SetPixel, StretchDIBits

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=B7E995EC0019751BACD30077F0A52600DCFED226

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file