|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.0.0.93 | 2009.02.11 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.02.11 | - |
| AntiVir | 7.9.0.76 | 2009.02.11 | - |
| Authentium | 5.1.0.4 | 2009.02.11 | - |
| Avast | 4.8.1335.0 | 2009.02.11 | - |
| AVG | 8.0.0.229 | 2009.02.11 | Win32/Heur |
| BitDefender | 7.2 | 2009.02.11 | - |
| CAT-QuickHeal | 10.00 | 2009.02.11 | - |
| ClamAV | 0.94.1 | 2009.02.11 | - |
| Comodo | 974 | 2009.02.11 | - |
| DrWeb | 4.44.0.09170 | 2009.02.11 | - |
| eSafe | 7.0.17.0 | 2009.02.11 | Suspicious File |
| eTrust-Vet | 31.6.6350 | 2009.02.11 | - |
| F-Prot | 4.4.4.56 | 2009.02.11 | - |
| F-Secure | 8.0.14470.0 | 2009.02.11 | - |
| Fortinet | 3.117.0.0 | 2009.02.11 | - |
| GData | 19 | 2009.02.11 | - |
| Ikarus | T3.1.1.45.0 | 2009.02.11 | - |
| K7AntiVirus | 7.10.627 | 2009.02.11 | - |
| Kaspersky | 7.0.0.125 | 2009.02.11 | - |
| McAfee | 5523 | 2009.02.11 | - |
| McAfee+Artemis | 5522 | 2009.02.10 | - |
| Microsoft | 1.4306 | 2009.02.11 | VirTool:Win32/Obfuscator.CW |
| NOD32 | 3846 | 2009.02.11 | - |
| Norman | 6.00.02 | 2009.02.11 | - |
| nProtect | 2009.1.8.0 | 2009.02.11 | - |
| Panda | 10.0.0.10 | 2009.02.11 | Suspicious file |
| PCTools | 4.4.2.0 | 2009.02.11 | - |
| Prevx1 | V2 | 2009.02.11 | Cloaked Malware |
| Rising | 21.16.22.00 | 2009.02.11 | - |
| SecureWeb-Gateway | 6.7.6 | 2009.02.11 | Trojan.Dldr.LooksLike.FraudLoad.viqq |
| Sophos | 4.38.0 | 2009.02.11 | - |
| Sunbelt | 3.2.1851.2 | 2009.02.11 | - |
| Symantec | 10 | 2009.02.11 | - |
| TheHacker | 6.3.1.85.252 | 2009.02.11 | - |
| TrendMicro | 8.700.0.1004 | 2009.02.11 | - |
| VBA32 | 3.12.8.12 | 2009.02.11 | suspected of Malware-Cryptor.Win32.General.3 |
| ViRobot | 2009.2.11.1600 | 2009.02.11 | - |
| VirusBuster | 4.5.11.0 | 2009.02.11 | - |
| Additional information |
|---|
| File size: 62464 bytes |
| MD5...: 1d4c3a6d2cc8c645652f7090636e5a4b |
| SHA1..: ccc1994a521d9e8a053a345b9d9cc28a63415845 |
| SHA256: 5420efde8442f8b9c0b221041a85af1e32b1b6694b20a72de1e2af79aaf21b31 |
| SHA512: 954d9125845fab2a0f268de82b02e921bbc90f7c87b15e52cb1b18867f26ad9e a793c00191483d402838dd9523fceda0d37ef7f1c9a7cea5fef2ea79124c71bf |
| ssdeep: 1536:chjQj6CdZ04ilLzuRKSO7DlTAAv2W1Tjm:APCdMzuRmvlTD9y |
| PEiD..: - |
| TrID..: File type identification Win64 Executable Generic (54.6%) Win32 Executable MS Visual C++ (generic) (24.0%) Windows Screen Saver (8.3%) Win32 Executable Generic (5.4%) Win32 Dynamic Link Library (generic) (4.8%) |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0xe069 timedatestamp.....: 0x47d006dc (Thu Mar 06 14:59:40 2008) machinetype.......: 0x14c (I386) ( 5 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0xe059 0xe200 7.94 9deb19e5f36ec1e625b45b91865194b1 .data 0x10000 0xa1f 0xa00 5.11 f02139fb8b2fe8294764109dd815c611 .bss 0x11000 0x200 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .bss 0x12000 0x7a0 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .rsrc 0x13000 0x3b0 0x400 3.16 005152201b8c4c0cbffea49f66e46015 ( 5 imports ) > MSVCRT.dll: sprintf, _strnicmp, qsort, _controlfp, wcslen, atoi, wcsstr, wcsncpy, strspn, _strlwr, fseek, __p__commode, _wcslwr, _itow, wcscpy, _ltoa, _wtoi, _wsplitpath, strcmp, _wcsicmp, _wfullpath, wcscmp > ADVAPI32.dll: RegQueryValueExA, RegOpenKeyExA, EqualSid, OpenSCManagerA, ControlService, RegCloseKey, GetLengthSid, FreeSid, RegCreateKeyA, AdjustTokenPrivileges, CloseServiceHandle, RegOpenKeyA, IsValidSid, LookupPrivilegeValueW, GetTokenInformation, LookupPrivilegeValueA, RegCreateKeyExA, IsValidSecurityDescriptor, LookupPrivilegeNameA, RegConnectRegistryA, CopySid, GetSidSubAuthorityCount, QueryServiceConfigA > GDI32.dll: ExtTextOutA, SetMapMode, SetTextAlign, MoveToEx, StartPage, CreateCompatibleDC, SetROP2, GetObjectA, DeleteObject, SaveDC, SetBkMode, GetStockObject, GetBkColor, GetTextExtentPoint32A, GetTextMetricsA, SelectObject, CreateRectRgnIndirect, RestoreDC, CreateSolidBrush, CreatePen, CreateFontIndirectA, Rectangle, LineTo > KERNEL32.dll: GetConsoleOutputCP, GetFileAttributesA, GetACP, VirtualAlloc, FreeEnvironmentStringsW, SetPriorityClass, EnumSystemLocalesA, LoadLibraryA, GetModuleFileNameA, GetProcessHeap, CreateFileMappingA, WriteConsoleW, GetLocaleInfoW, ResumeThread, InitializeCriticalSection, FileTimeToLocalFileTime, OutputDebugStringA, ExitProcess, InterlockedIncrement, GetEnvironmentVariableA, LocalAlloc, GetCurrentThreadId, lstrlenW, GetEnvironmentStringsW, TerminateProcess, IsBadStringPtrA, GetStartupInfoA, LocalFree, EnterCriticalSection, HeapDestroy, GetTickCount, GetCurrentProcessId, VirtualQueryEx > USER32.dll: GetWindowThreadProcessId, SetCapture, DrawMenuBar, SendMessageA, RemoveMenu, AppendMenuA, EnableMenuItem, EnumWindows, GetMenuItemCount, BeginDeferWindowPos, SetFocus ( 0 exports ) |
| Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=376B276F00B75B36F4D500969E387700F5D688C5 |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.