|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.5.0.24 | 2009.07.15 | Trojan-Downloader.Banload!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.07.15 | - |
| AntiVir | 7.9.0.215 | 2009.07.15 | - |
| Antiy-AVL | 2.0.3.7 | 2009.07.15 | - |
| Authentium | 5.1.2.4 | 2009.07.14 | W32/Banload.E.gen!Eldorado |
| Avast | 4.8.1335.0 | 2009.07.14 | - |
| AVG | 8.5.0.387 | 2009.07.14 | - |
| BitDefender | 7.2 | 2009.07.15 | Trojan.Downloader.Delf.RFX |
| CAT-QuickHeal | 10.00 | 2009.07.15 | - |
| ClamAV | 0.94.1 | 2009.07.15 | - |
| Comodo | 1657 | 2009.07.15 | - |
| DrWeb | 5.0.0.12182 | 2009.07.15 | - |
| eSafe | 7.0.17.0 | 2009.07.14 | - |
| eTrust-Vet | 31.6.6615 | 2009.07.14 | - |
| F-Prot | 4.4.4.56 | 2009.07.14 | W32/Banload.E.gen!Eldorado |
| F-Secure | 8.0.14470.0 | 2009.07.15 | Trojan-Downloader.Win32.Banload.addx |
| Fortinet | 3.120.0.0 | 2009.07.15 | - |
| GData | 19 | 2009.07.15 | Trojan.Downloader.Delf.RFX |
| Ikarus | T3.1.1.64.0 | 2009.07.15 | Trojan-Downloader.Banload |
| Jiangmin | 11.0.706 | 2009.07.15 | - |
| K7AntiVirus | 7.10.792 | 2009.07.14 | - |
| Kaspersky | 7.0.0.125 | 2009.07.15 | Trojan-Downloader.Win32.Banload.addx |
| McAfee | 5676 | 2009.07.14 | - |
| McAfee+Artemis | 5676 | 2009.07.14 | - |
| McAfee-GW-Edition | 6.8.5 | 2009.07.15 | Heuristic.LooksLike.Win32.Banload.I |
| Microsoft | 1.4803 | 2009.07.15 | - |
| NOD32 | 4245 | 2009.07.15 | probably a variant of Win32/TrojanDownloader.Banload.CHQ |
| Norman | 6.01.09 | 2009.07.14 | - |
| nProtect | 2009.1.8.0 | 2009.07.15 | - |
| Panda | 10.0.0.14 | 2009.07.14 | Suspicious file |
| PCTools | 4.4.2.0 | 2009.07.14 | - |
| Prevx | 3.0 | 2009.07.15 | - |
| Rising | 21.38.21.00 | 2009.07.15 | - |
| Sophos | 4.43.0 | 2009.07.15 | Mal/Behav-130 |
| Sunbelt | 3.2.1858.2 | 2009.07.15 | - |
| Symantec | 1.4.4.12 | 2009.07.15 | - |
| TheHacker | 6.3.4.3.367 | 2009.07.14 | - |
| TrendMicro | 8.950.0.1094 | 2009.07.15 | Mal_Banld-1 |
| VBA32 | 3.12.10.8 | 2009.07.15 | Trojan-Downloader.Win32.Banload.zwf |
| ViRobot | 2009.7.15.1836 | 2009.07.15 | - |
| VirusBuster | 4.6.5.0 | 2009.07.14 | - |
| Additional information |
|---|
| File size: 463360 bytes |
| MD5 : afec4fbb36e86401f61ece0c10febc62 |
| SHA1 : a32543623a612db2ec34410bcdce5dc583508783 |
| SHA256: 4f13fbed3ff6d3bf8e4bc68dedaa0015449d8823b13c5e72866e6c7f606dbb8d |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x52684 timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992) machinetype.......: 0x14C (Intel I386) ( 8 sections ) name viradd virsiz rawdsiz ntrpy md5 CODE 0x1000 0x5171C 0x51800 6.51 a485c8192f96602f66fda17e88153df4 DATA 0x53000 0x1198 0x1200 4.13 c1a6ccd3fca633a0cd477315250571a6 BSS 0x55000 0xC05 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .idata 0x56000 0x2184 0x2200 4.88 025c2a669427c6597940e4fdebf9463d .tls 0x59000 0x10 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .rdata 0x5A000 0x18 0x200 0.20 7adf604366d96d553627cad4b7b0e8e3 .reloc 0x5B000 0x5D70 0x5E00 6.66 c32d0cc5fbf9b61bc3cbcdffad26566b .rsrc 0x61000 0x16200 0x16200 4.09 963eb0fa6eca103f6459898e4f794dc4 ( 8 imports ) > advapi32.dll: RegQueryValueExA, RegOpenKeyExA, RegCloseKey, RegQueryValueExA, RegOpenKeyExA, RegCloseKey > comctl32.dll: ImageList_SetIconSize, ImageList_GetIconSize, ImageList_Write, ImageList_Read, ImageList_GetDragImage, ImageList_DragShowNolock, ImageList_SetDragCursorImage, ImageList_DragMove, ImageList_DragLeave, ImageList_DragEnter, ImageList_EndDrag, ImageList_BeginDrag, ImageList_Remove, ImageList_DrawEx, ImageList_Draw, ImageList_GetBkColor, ImageList_SetBkColor, ImageList_ReplaceIcon, ImageList_Add, ImageList_GetImageCount, ImageList_Destroy, ImageList_Create > gdi32.dll: UnrealizeObject, StretchBlt, SetWindowOrgEx, SetWinMetaFileBits, SetViewportOrgEx, SetTextColor, SetStretchBltMode, SetROP2, SetPixel, SetEnhMetaFileBits, SetDIBColorTable, SetBrushOrgEx, SetBkMode, SetBkColor, SelectPalette, SelectObject, SaveDC, RestoreDC, Rectangle, RectVisible, RealizePalette, PlayEnhMetaFile, PatBlt, MoveToEx, MaskBlt, LineTo, IntersectClipRect, GetWindowOrgEx, GetWinMetaFileBits, GetTextMetricsA, GetTextExtentPointA, GetTextExtentPoint32A, GetSystemPaletteEntries, GetStockObject, GetPixel, GetPaletteEntries, GetObjectA, GetEnhMetaFilePaletteEntries, GetEnhMetaFileHeader, GetEnhMetaFileBits, GetDeviceCaps, GetDIBits, GetDIBColorTable, GetDCOrgEx, GetCurrentPositionEx, GetClipBox, GetBrushOrgEx, GetBitmapBits, ExcludeClipRect, DeleteObject, DeleteEnhMetaFile, DeleteDC, CreateSolidBrush, CreatePenIndirect, CreatePalette, CreateHalftonePalette, CreateFontIndirectA, CreateDIBitmap, CreateDIBSection, CreateCompatibleDC, CreateCompatibleBitmap, CreateBrushIndirect, CreateBitmap, CopyEnhMetaFileA, BitBlt > kernel32.dll: DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, VirtualFree, VirtualAlloc, LocalFree, LocalAlloc, GetTickCount, QueryPerformanceCounter, GetVersion, GetCurrentThreadId, InterlockedDecrement, InterlockedIncrement, VirtualQuery, WideCharToMultiByte, MultiByteToWideChar, lstrlenA, lstrcpynA, LoadLibraryExA, GetThreadLocale, GetStartupInfoA, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetCommandLineA, FreeLibrary, FindFirstFileA, FindClose, ExitProcess, WriteFile, UnhandledExceptionFilter, RtlUnwind, RaiseException, GetStdHandle, TlsSetValue, TlsGetValue, LocalAlloc, GetModuleHandleA, lstrcpyA, WriteFile, WinExec, WaitForSingleObject, VirtualQuery, VirtualAlloc, Sleep, SizeofResource, SetThreadLocale, SetFilePointer, SetEvent, SetErrorMode, SetEndOfFile, ResetEvent, ReadFile, MulDiv, LockResource, LoadResource, LoadLibraryA, LeaveCriticalSection, InitializeCriticalSection, GlobalUnlock, GlobalReAlloc, GlobalHandle, GlobalLock, GlobalFree, GlobalFindAtomA, GlobalDeleteAtom, GlobalAlloc, GlobalAddAtomA, GetVersionExA, GetVersion, GetTickCount, GetThreadLocale, GetSystemInfo, GetStringTypeExA, GetStdHandle, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLocalTime, GetLastError, GetFullPathNameA, GetDiskFreeSpaceA, GetDateFormatA, GetCurrentThreadId, GetCurrentProcessId, GetCPInfo, GetACP, FreeResource, InterlockedExchange, FreeLibrary, FormatMessageA, FindResourceA, EnumCalendarInfoA, EnterCriticalSection, DeleteCriticalSection, CreateThread, CreateFileA, CreateEventA, CompareStringA, CloseHandle, Sleep > oleaut32.dll: SysFreeString, SysReAllocStringLen, SysAllocStringLen, SafeArrayPtrOfIndex, SafeArrayGetUBound, SafeArrayGetLBound, SafeArrayCreate, VariantChangeType, VariantCopy, VariantClear, VariantInit > urlmon.dll: URLDownloadToFileA > user32.dll: GetKeyboardType, LoadStringA, MessageBoxA, CharNextA, CreateWindowExA, WindowFromPoint, WinHelpA, WaitMessage, UpdateWindow, UnregisterClassA, UnhookWindowsHookEx, TranslateMessage, TranslateMDISysAccel, TrackPopupMenu, SystemParametersInfoA, ShowWindow, ShowScrollBar, ShowOwnedPopups, ShowCursor, SetWindowsHookExA, SetWindowTextA, SetWindowPos, SetWindowPlacement, SetWindowLongA, SetTimer, SetScrollRange, SetScrollPos, SetScrollInfo, SetRect, SetPropA, SetParent, SetMenuItemInfoA, SetMenu, SetForegroundWindow, SetFocus, SetCursor, SetClipboardData, SetClassLongA, SetCapture, SetActiveWindow, SendMessageA, ScrollWindow, ScreenToClient, RemovePropA, RemoveMenu, ReleaseDC, ReleaseCapture, RegisterWindowMessageA, RegisterClipboardFormatA, RegisterClassA, RedrawWindow, PtInRect, PostQuitMessage, PostMessageA, PeekMessageA, OpenClipboard, OffsetRect, OemToCharA, MessageBoxA, MessageBeep, MapWindowPoints, MapVirtualKeyA, LoadStringA, LoadKeyboardLayoutA, LoadIconA, LoadCursorA, LoadBitmapA, KillTimer, IsZoomed, IsWindowVisible, IsWindowEnabled, IsWindow, IsRectEmpty, IsIconic, IsDialogMessageA, IsChild, InvalidateRect, IntersectRect, InsertMenuItemA, InsertMenuA, InflateRect, GetWindowThreadProcessId, GetWindowTextA, GetWindowRect, GetWindowPlacement, GetWindowLongA, GetWindowDC, GetTopWindow, GetSystemMetrics, GetSystemMenu, GetSysColorBrush, GetSysColor, GetSubMenu, GetScrollRange, GetScrollPos, GetScrollInfo, GetPropA, GetParent, GetWindow, GetMenuStringA, GetMenuState, GetMenuItemInfoA, GetMenuItemID, GetMenuItemCount, GetMenu, GetLastActivePopup, GetKeyboardState, GetKeyboardLayoutList, GetKeyboardLayout, GetKeyState, GetKeyNameTextA, GetIconInfo, GetForegroundWindow, GetFocus, GetDesktopWindow, GetDCEx, GetDC, GetCursorPos, GetCursor, GetClipboardData, GetClientRect, GetClassNameA, GetClassInfoA, GetCapture, GetActiveWindow, FrameRect, FindWindowA, FillRect, EqualRect, EnumWindows, EnumThreadWindows, EndPaint, EnableWindow, EnableScrollBar, EnableMenuItem, EmptyClipboard, DrawTextA, DrawMenuBar, DrawIconEx, DrawIcon, DrawFrameControl, DrawEdge, DispatchMessageA, DestroyWindow, DestroyMenu, DestroyIcon, DestroyCursor, DeleteMenu, DefWindowProcA, DefMDIChildProcA, DefFrameProcA, CreatePopupMenu, CreateMenu, CreateIcon, CloseClipboard, ClientToScreen, CheckMenuItem, CallWindowProcA, CallNextHookEx, BeginPaint, CharNextA, CharLowerBuffA, CharLowerA, CharUpperBuffA, CharToOemA, AdjustWindowRectEx, ActivateKeyboardLayout > version.dll: VerQueryValueA, GetFileVersionInfoSizeA, GetFileVersionInfoA ( 0 exports ) |
| TrID : File type identification Win32 Executable Borland Delphi 7 (69.6%) Win32 Executable Borland Delphi 6 (27.3%) Win32 Executable Delphi generic (1.5%) Win32 Executable Generic (0.8%) Win16/32 Executable Delphi generic (0.2%) |
| ssdeep: 6144:6Q63BGGQ8v3a5nvynbt7Foa4hvI/Ns2V+dB7GYbh5y54d9N6aI0p714wlI:M3BGGQ8SxanN/NHIB7Ps4dvrI0p5j |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=E1CF10CC0049345B124207FAF3F7BB0014ABEC0B |
| PEiD : BobSoft Mini Delphi -> BoB / BobSoft |
| RDS : NSRL Reference Data Set - |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.