Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File 479_av.exe received on 2009.01.30 00:13:25 (UTC)
Current status: finished
Result: 10/39 (25.64%)
Antivirus Version Last Update Result
a-squared 4.0.0.93 2009.01.29 -
AhnLab-V3 5.0.0.2 2009.01.29 Win-Trojan/Fakeav.77835
AntiVir 7.9.0.60 2009.01.29 TR/FakeAntivirus.7783.4
Authentium 5.1.0.4 2009.01.29 -
Avast 4.8.1281.0 2009.01.29 Win32:Trojan-gen {Other}
AVG 8.0.0.229 2009.01.29 -
BitDefender 7.2 2009.01.30 Trojan.FakeAntivirus.Gen
CAT-QuickHeal 10.00 2009.01.29 -
ClamAV 0.94.1 2009.01.29 -
Comodo 952 2009.01.29 -
DrWeb 4.44.0.09170 2009.01.30 -
eSafe 7.0.17.0 2009.01.29 -
eTrust-Vet 31.6.6335 2009.01.29 -
F-Prot 4.4.4.56 2009.01.29 -
F-Secure 8.0.14470.0 2009.01.30 -
Fortinet 3.117.0.0 2009.01.30 -
GData 19 2009.01.29 Trojan.FakeAntivirus.Gen
Ikarus T3.1.1.45.0 2009.01.29 -
K7AntiVirus 7.10.609 2009.01.29 Trojan.Win32.Malware.4
Kaspersky 7.0.0.125 2009.01.30 -
McAfee 5510 2009.01.29 -
McAfee+Artemis 5510 2009.01.29 -
Microsoft 1.4306 2009.01.30 VirTool:Win32/Obfuscator.EF
NOD32 3811 2009.01.29 -
Norman 6.00.02 2009.01.29 -
nProtect 2009.1.8.0 2009.01.29 -
Panda 9.5.1.2 2009.01.29 -
PCTools 4.4.2.0 2009.01.29 -
Prevx1 V2 2009.01.30 -
Rising 21.13.42.00 2009.01.23 -
SecureWeb-Gateway 6.7.6 2009.01.29 Trojan.FakeAntivirus.7783.4
Sophos 4.38.0 2009.01.30 Mal/EncPk-FX
Sunbelt 3.2.1835.2 2009.01.16 -
Symantec 10 2009.01.30 Packed.Generic.187
TheHacker 6.3.1.5.233 2009.01.29 -
TrendMicro 8.700.0.1004 2009.01.29 -
VBA32 3.12.8.11 2009.01.29 -
ViRobot 2009.1.29.1580 2009.01.29 -
VirusBuster 4.5.11.0 2009.01.29 -
Additional information
File size: 77835 bytes
MD5...: 508934510e6f8ca2ddc0e655e6c2f757
SHA1..: 3f736e8341d8510ac411492401e36edf0aac761e
SHA256: e29f459db0ec5642def52b7bbe42c86f62d53f40c7b2ce11e93357ee76b4d1b3
SHA512: aa06d0eea923ad6e9eb2305c76f07bda63bd4ea9e59ac6108228ffe9544ff7d9
2d61c4358eef2b6dfa10f692d5175516f333c2c4f589f1b30ca1658a8da25cf2
ssdeep: 768:eItSitoBcfRGKp0yM+TEiVD/gQa87W8vl8TaJIpfJiMnb1FUazptFuuxRdVb
mHw2:eIttocQKp0yMyD/gQa6l7swMnbf//yT
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (38.4%)
Win32 Dynamic Link Library (generic) (34.2%)
Clipper DOS Executable (9.1%)
Generic Win/DOS Executable (9.0%)
DOS Executable Generic (9.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x136a
timedatestamp.....: 0x467119f3 (Thu Jun 14 10:35:31 2007)
machinetype.......: 0x14c (I386)

( 6 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xa01 0x1000 4.43 8bb87eb6d0daa5cdea9792337f46f8df
.modata 0x2000 0xbb98 0xc000 6.64 2c4d84457676b240dbca4774a9c2b494
.tls 0xe000 0x1000 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110
.rdata 0xf000 0x1b94 0x2000 0.02 8be8a3da20add7899eaef0b8e47ad574
.idata 0x11000 0xd54 0x1000 3.40 39221e28a2696bfdd51ead69bec54e05
.edata 0x12000 0x7523 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110

( 6 imports )
> KERNEL32.DLL: GlobalFree, CopyFileExA, FindAtomA, CopyFileW, OpenFileMappingA, Sleep, GetStdHandle, DeleteFileW, CopyFileA, FindFirstFileA, DeleteFileA
> USER32.DLL: CopyImage, EndDialog, CalcMenuBar, LoadMenuA, DrawIcon, IsMenu, GetDC, LoadCursorA, CopyRect, GetMenu, InsertMenuA, AppendMenuW, GetDlgItem, DialogBoxParamA, IsWindow, GetCursor
> KERNEL32.DLL: CopyFileExA, CopyFileW, GetConsoleMode, FindFirstFileA, GetCommandLineA, GetLastError, WriteFile, CreateProcessA, GetComputerNameA, GetFileSize, CreateDirectoryA, GetFileTime, OpenFileMappingA, CopyFileA, Sleep, SetLastError, DeleteFileW
> USER32.DLL: AppendMenuW, AppendMenuA, LoadMenuA, IsMenu, DrawTextW, CalcMenuBar, CreateIcon, DrawIcon, DrawTextA, DialogBoxParamA, GetWindowTextA, GetMenu, GetWindowTextLengthA, GetDC, CloseWindow, IsWindow, GetFocus
> ADVAPI32.DLL: RegReplaceKeyA, RegQueryValueW, RegQueryValueExA, RegQueryInfoKeyW, RegCreateKeyW, RegReplaceKeyW, RegEnumKeyW, RegEnumValueA, RegOpenKeyExW, RegDeleteKeyA, RegOpenKeyA, RegDeleteValueA, RegEnumKeyExA
> USER32.DLL: GetWindowTextA, DrawTextW, LoadMenuA, EndDialog, CalcMenuBar, CreateIcon, GetMenu, DrawIcon, GetCursor, CopyRect, DrawIconEx, IsMenu, AppendMenuA, GetDlgItem, GetFocus, InsertMenuA, BlockInput

( 0 exports )
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=508934510e6f8ca2ddc0e655e6c2f757

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file