Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File bin_default.exe received on 2009.03.16 01:51:18 (UTC)
Current status: finished
Result: 6/38 (15.79%)
Antivirus Version Last Update Result
a-squared 4.0.0.101 2009.03.16 -
AhnLab-V3 5.0.0.2 2009.03.15 -
AntiVir 7.9.0.114 2009.03.15 -
Authentium 5.1.0.4 2009.03.15 -
Avast 4.8.1335.0 2009.03.16 -
AVG 8.0.0.237 2009.03.15 -
BitDefender 7.2 2009.03.16 -
CAT-QuickHeal 10.00 2009.03.14 -
ClamAV 0.94.1 2009.03.15 -
Comodo 1057 2009.03.15 -
DrWeb 4.44.0.09170 2009.03.16 -
eSafe 7.0.17.0 2009.03.15 Suspicious File
eTrust-Vet 31.6.6388 2009.03.09 -
F-Prot 4.4.4.56 2009.03.15 -
F-Secure 8.0.14470.0 2009.03.15 -
Fortinet 3.117.0.0 2009.03.16 -
GData 19 2009.03.16 -
Ikarus T3.1.1.45.0 2009.03.16 -
K7AntiVirus 7.10.671 2009.03.14 Trojan.Win32.Malware.1
Kaspersky 7.0.0.125 2009.03.16 -
McAfee 5554 2009.03.15 -
McAfee+Artemis 5554 2009.03.15 -
McAfee-GW-Edition 6.7.6 2009.03.16 Trojan.Crypt.LooksLike.XPACK
Microsoft 1.4405 2009.03.15 -
NOD32 3937 2009.03.15 -
Norman 6.00.06 2009.03.13 -
nProtect 2009.1.8.0 2009.03.16 -
Panda 10.0.0.10 2009.03.15 Suspicious file
PCTools 4.4.2.0 2009.03.15 -
Prevx1 V2 2009.03.16 High Risk Rootkit
Rising 21.20.62.00 2009.03.15 -
Sophos 4.39.0 2009.03.16 Mal/EncPk-HJ
Sunbelt 3.2.1858.2 2009.03.15 -
Symantec 1.4.4.12 2009.03.16 -
TheHacker 6.3.3.0.282 2009.03.16 -
TrendMicro 8.700.0.1004 2009.03.13 -
ViRobot 2009.3.13.1648 2009.03.13 -
VirusBuster 4.6.5.0 2009.03.15 -
Additional information
File size: 79360 bytes
MD5...: 7a76c50f9f0e5ee5f5d8f86fec1842b8
SHA1..: b1f339803ef49eea84d0f0106e20f04bb25996ae
SHA256: 9838bd38fe4a5e67a3636620d5f5d19f4738fa5b0d69d8456dc70f712a2d55de
SHA512: 4379878a0c6127ab773c260902178f4ce313e821b422f0bddbd3c5cba1efd7f7
a290fa8f77f7c1b7afc5f69bed4b4b379aa955d53490f0120b76f7d5cc5faf02
ssdeep: 1536:jeMUyNcTGqQ4jBIOhsQuABFk+ir7GZks+XNdOqyExThMyHKlWM8:aMRNcQ4
jBIOZxkp7Gks+TyWThMMM8
PEiD..: -
TrID..: File type identification
Win64 Executable Generic (88.0%)
Win32 Dynamic Link Library (generic) (7.8%)
Generic Win/DOS Executable (2.0%)
DOS Executable Generic (2.0%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x11cea
timedatestamp.....: 0x47d0bd00 (Fri Mar 07 03:56:48 2008)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x11a2c 0x11c00 7.95 7f96eaeae98b7811bb2b73b5150965bb
.rdata 0x13000 0x91a 0xa00 5.02 9d0ca6a0a792b1e36b27b1d614551887
.data 0x14000 0x2813 0x800 5.69 90e4e66d1df65e91bb2bf49cecab793c
.rsrc 0x17000 0x3b0 0x400 3.13 bb27bd398ada9eb993dadddb7a05e5e2

( 5 imports )
> KERNEL32.dll: CreateFiber, CmdBatNotification, EnumTimeFormatsW, UnregisterWait, UnregisterConsoleIME, ReplaceFile, OpenWaitableTimerA, HeapLock, RegisterConsoleVDM, TerminateJobObject
> ole32.dll: CoDisconnectObject, CoSuspendClassObjects, BindMoniker, OleCreateLinkToFile, CoInitialize, CoGetTreatAsClass, CoGetObjectContext, OleDestroyMenuDescriptor, CoMarshalInterface, OleNoteObjectVisible
> MSVCRT.dll: _ltow, _pctype, _itow, realloc, _wcslwr, strncat, fprintf, _ltoa, _strcmpi, __dllonexit, _except_handler3
> ulib.dll: __0PATH@@QAE@XZ, _Cast@KEYBOARD@@SGPAV1@PBVOBJECT@@@Z, _Flush@KEYBOARD@@QAEEXZ, _GotABreak@KEYBOARD@@SGEXZ, _ReplaceWithChars@BSTRING@@QAEEKKDK@Z, __1COMM_DEVICE@@UAE@XZ, _Stricmp@MBSTR@@SGHPAD0@Z, _DoNotRestoreConsoleMode@KEYBOARD@@UAEXXZ, _Resize@FSTRING@@UAEEK@Z, _QueryPackedLog@MESSAGE@@QAEEPAVHMEM@@PAK@Z, _WriteByte@STREAM@@QAEEE@Z, _Initialize@SORTED_LIST@@QAEEE@Z, _SetDevice@PATH@@QAEEPBVWSTRING@@@Z, _Strcmps@MBSTR@@SGHPAD0@Z, _Initialize@FSN_FILTER@@QAEEXZ
> ADVAPI32.dll: SetKernelObjectSecurity, RegCreateKeyW, IsValidSid, QueryServiceStatus, OpenServiceW

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=1A17F14E007348FA369501E3A80AE200CA05D7DB
CWSandbox info: http://research.sunbelt-software.com/partnerresource/MD5.aspx?md5=7a76c50f9f0e5ee5f5d8f86fec1842b8

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file