Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File get_flash_update.exe received on 2008.07.29 17:14:02 (UTC)
Current status: finished
Result: 31/35 (88.57%)
Antivirus Version Last Update Result
AhnLab-V3 2008.7.29.1 2008.07.29 Win-Trojan/Agent.78848.AI
AntiVir 7.8.1.12 2008.07.29 TR/Crypt.XPACK.Gen
Authentium 5.1.0.4 2008.07.29 -
Avast 4.8.1195.0 2008.07.29 Win32:Exchanger-J
AVG 8.0.0.130 2008.07.29 I-Worm/Nuwar.V
BitDefender 7.2 2008.07.29 Trojan.Downloader.Exchanger.P
CAT-QuickHeal 9.50 2008.07.29 TrojanDownloader.Exchanger.hk
ClamAV 0.93.1 2008.07.29 -
DrWeb 4.44.0.09170 2008.07.29 Trojan.DownLoader.62005
eSafe 7.0.17.0 2008.07.28 Suspicious File
eTrust-Vet 31.6.5992 2008.07.29 Win32/Collet!generic
Ewido 4.0 2008.07.29 Downloader.Exchanger.hk
F-Prot 4.4.4.56 2008.07.28 -
F-Secure 7.60.13501.0 2008.07.29 Trojan-Downloader.Win32.Exchanger.hk
Fortinet 3.14.0.0 2008.07.29 W32/Cbeplay.A!tr.dldr
GData 2.0.7306.1023 2008.07.29 Trojan-Downloader.Win32.Exchanger.hk
Ikarus T3.1.1.34.0 2008.07.29 Trojan-Downloader.Win32.Exchanger.hk
Kaspersky 7.0.0.125 2008.07.29 Trojan-Downloader.Win32.Exchanger.hk
McAfee 5349 2008.07.29 BackDoor-DNM
Microsoft 1.3704 2008.07.28 TrojanDownloader:Win32/Cbeplay.B
NOD32v2 3307 2008.07.29 Win32/Agent.ETH
Norman 5.80.02 2008.07.28 W32/DLoader.IPZU
Panda 9.0.0.4 2008.07.29 Trj/Exchanger.S
PCTools 4.4.2.0 2008.07.29 Trojan-Downloader.Exchanger!sd6
Prevx1 V2 2008.07.29 Suspicious
Rising 20.55.12.00 2008.07.29 Trojan.Win32.Undef.jzk
Sophos 4.31.0 2008.07.29 Troj/Cbeplay-A
Sunbelt 3.1.1537.1 2008.07.29 Trojan-Downloader.Win32.Exchanger.hk
Symantec 10 2008.07.29 Trojan.Erotpics
TheHacker 6.2.96.389 2008.07.25 -
TrendMicro 8.700.0.1004 2008.07.29 TROJ_EXCHANGER.U
VBA32 3.12.8.1 2008.07.29 Trojan-Downloader.Win32.Exchanger.hk
ViRobot 2008.7.29.1315 2008.07.29 Spyware.Exchanger.Do.78848.E
VirusBuster 4.5.11.0 2008.07.29 Trojan.DL.Exchanger.BP
Webwasher-Gateway 6.6.2 2008.07.29 Trojan.Crypt.XPACK.Gen
Additional information
File size: 78848 bytes
MD5...: c81b29a3662b6083e3590939b6793bb8
SHA1..: d513275c276840cb528ce11dd228eae46a74b4b4
SHA256: 037d48a1fdcfc95ca4576d1cab3b8b1cced5e191aadd253e9a9154132237f32d
SHA512: 07d76ee77591c75079ad1edb9e8870652c533b108154e21658988f9e38c04014
08167ba4297a2e145eb2853081fc87b288040130ace133d33cf403b125dc44a8
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x4057ff
timedatestamp.....: 0x482ea8c7 (Sat May 17 09:43:35 2008)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xdf88 0xc200 8.00 c022f73d70ca77ed6ef5ab8cb4684da1
.rdata 0xf000 0x3df8 0x2200 7.98 09b16ab667efc4bc7a01307960dceac7
.data 0x13000 0x6000 0x4000 4.86 f229a7bb130002438c84d2fe09f55f25

( 3 imports )
> USER32.DLL: DrawIcon, DestroyCaret, FillRect, GetActiveWindow, GetMonitorInfoW, GetShellWindow
> ADVAPI32.DLL: ReportEventW, RegFlushKey, DecryptFileW, ReadEventLogW, OpenThreadToken
> WININET.DLL: FtpGetFileW, GopherFindFirstFileA, GopherOpenFileW, FreeUrlCacheSpaceA, HttpQueryInfoA

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=B74B67E3006C2AD834CA01BBEDF6C600EC76F2DD

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file