Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File houzi.exe received on 06.19.2008 20:48:40 (CET)
Current status: finished
Result: 17/32 (53.12%)
Antivirus Version Last Update Result
AhnLab-V3 2008.6.19.0 2008.06.19 -
AntiVir 7.8.0.55 2008.06.19 -
Authentium 5.1.0.4 2008.06.18 W32/Onlinegames.gen
Avast 4.8.1195.0 2008.06.19 -
AVG 7.5.0.516 2008.06.19 PSW.OnlineGames.BR
BitDefender 7.2 2008.06.19 Packer.Malware.NSAnti
CAT-QuickHeal 9.50 2008.06.19 -
ClamAV 0.93.1 2008.06.19 -
DrWeb 4.44.0.09170 2008.06.19 modification of Trojan.Nsanti.Packed
eSafe 7.0.15.0 2008.06.19 -
eTrust-Vet 31.6.5887 2008.06.19 -
Ewido 4.0 2008.06.19 -
F-Prot 4.4.4.56 2008.06.18 W32/OnlineGames.AE.gen!Eldorado
Fortinet 3.14.0.0 2008.06.19 W32/OnLineGames.fam!tr.pws
GData 2.0.7306.1023 2008.06.19 Trojan-PSW.Win32.Magania.zaaa
Ikarus T3.1.1.26.0 2008.06.19 PWS.Win32.OnLineGames.DL
Kaspersky 7.0.0.125 2008.06.19 Trojan-PSW.Win32.Magania.zaaa
McAfee 5321 2008.06.19 PWS-OnlineGames.bd
Microsoft 1.3604 2008.06.19 PWS:Win32/OnLineGames.DL!dll
NOD32v2 3200 2008.06.19 -
Norman 5.80.02 2008.06.17 Malware.CPIL
Panda 9.0.0.4 2008.06.19 Suspicious file
Prevx1 V2 2008.06.19 -
Rising 20.49.32.00 2008.06.19 Trojan.PSW.Win32.Lineage.n
Sophos 4.30.0 2008.06.19 Mal/EncPk-CE
Sunbelt 3.0.1153.1 2008.06.15 -
Symantec 10 2008.06.19 -
TheHacker 6.2.92.354 2008.06.18 -
TrendMicro 8.700.0.1004 2008.06.19 Mal_Onlineg
VBA32 3.12.6.7 2008.06.19 -
VirusBuster 4.3.26:9 2008.06.12 -
Webwasher-Gateway 6.6.2 2008.06.19 Win32.Malware.gen (suspicious)
Additional information
File size: 284422 bytes
MD5...: 4e8dd258ea3f7ed274d79ad9940a847c
SHA1..: 0a9b6c98dbde28c8344eb8b2dff1542f3237e9de
SHA256: e6ec82dda2dca4b2584698b511b4607aa47b15671a4242711b5993aee112ebef
SHA512: 5e4cc889baa8b1ca5fe2ae731f3021f4101b89cc34b27c5288ccae75c8bc9e12
d60f36504a571a1e1e8c9518fd1bdcd8c71781a2e7a387813da33428612a0d32
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x401000
timedatestamp.....: 0x42f0f17e (Wed Aug 03 16:31:58 2005)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x13000 0x12600 6.46 bcefd13d879b5aa1628d5731462b1935
.data 0x14000 0x7000 0xa00 4.73 0eb9af4768d13f3fe805922a21fcbf55
.idata 0x1b000 0x1000 0x1000 5.02 7f9440e32acb299f3bda96288136b63a
.rsrc 0x1c000 0x8000 0x7800 5.54 84dab3bd411256962afa956caefa631e

( 8 imports )
> ADVAPI32.DLL: AdjustTokenPrivileges, LookupPrivilegeValueA, OpenProcessToken, RegCloseKey, RegCreateKeyExA, RegOpenKeyExA, RegQueryValueExA, RegSetValueExA, SetFileSecurityA, SetFileSecurityW
> KERNEL32.DLL: CloseHandle, CompareStringA, CreateDirectoryA, CreateDirectoryW, CreateFileA, CreateFileW, DeleteFileA, DeleteFileW, DosDateTimeToFileTime, ExitProcess, ExpandEnvironmentStringsA, FileTimeToLocalFileTime, FileTimeToSystemTime, FindClose, FindFirstFileA, FindFirstFileW, FindNextFileA, FindNextFileW, FindResourceA, FreeLibrary, GetCPInfo, GetCommandLineA, GetCurrentDirectoryA, GetCurrentProcess, GetDateFormatA, GetFileAttributesA, GetFileAttributesW, GetFileType, GetFullPathNameA, GetLastError, GetLocaleInfoA, GetModuleFileNameA, GetModuleHandleA, GetNumberFormatA, GetProcAddress, GetProcessHeap, GetStdHandle, GetTempPathA, GetTickCount, GetTimeFormatA, GetVersionExA, GlobalAlloc, HeapAlloc, HeapFree, HeapReAlloc, IsDBCSLeadByte, LoadLibraryA, LocalFileTimeToFileTime, MoveFileA, MoveFileExA, MultiByteToWideChar, ReadFile, SetCurrentDirectoryA, SetEndOfFile, SetEnvironmentVariableA, SetFileAttributesA, SetFileAttributesW, SetFilePointer, SetFileTime, SetLastError, Sleep, SystemTimeToFileTime, WaitForSingleObject, WideCharToMultiByte, WriteFile, lstrcmpiA, lstrlenA
> COMCTL32.DLL: -
> COMDLG32.DLL: CommDlgExtendedError, GetOpenFileNameA
> GDI32.DLL: DeleteObject
> SHELL32.DLL: SHBrowseForFolderA, SHChangeNotify, SHFileOperationA, SHGetFileInfoA, SHGetMalloc, SHGetSpecialFolderLocation, ShellExecuteExA, SHGetPathFromIDListA
> USER32.DLL: CharToOemBuffA, CharUpperA, CopyRect, CreateWindowExA, DefWindowProcA, DestroyIcon, DestroyWindow, DialogBoxParamA, DispatchMessageA, EnableWindow, EndDialog, FindWindowExA, GetClassNameA, GetClientRect, GetDlgItem, GetDlgItemTextA, GetMessageA, GetParent, GetSysColor, GetSystemMetrics, GetWindow, GetWindowLongA, GetWindowRect, GetWindowTextA, IsWindow, IsWindowVisible, LoadBitmapA, LoadCursorA, LoadIconA, LoadStringA, MapWindowPoints, MessageBoxA, OemToCharA, OemToCharBuffA, PeekMessageA, PostMessageA, RegisterClassExA, SendDlgItemMessageA, SendMessageA, SetDlgItemTextA, SetFocus, SetMenu, SetWindowLongA, SetWindowPos, SetWindowTextA, ShowWindow, TranslateMessage, UpdateWindow, WaitForInputIdle, wsprintfA, wvsprintfA
> OLE32.DLL: CLSIDFromString, CoCreateInstance, CreateStreamOnHGlobal, OleInitialize, OleUninitialize

( 0 exports )
packers (Authentium): RAR
packers (F-Prot): RAR

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file