Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File fotos_Album.exe received on 2009.07.09 05:28:00 (UTC)
Current status: finished
Result: 21/41 (51.22%)
Antivirus Version Last Update Result
a-squared 4.5.0.18 2009.07.09 Trojan-Downloader.Win32.Banload!IK
AhnLab-V3 5.0.0.2 2009.07.09 -
AntiVir 7.9.0.204 2009.07.08 TR/Dropper.Gen
Antiy-AVL 2.0.3.1 2009.07.09 -
Authentium 5.1.2.4 2009.07.08 -
Avast 4.8.1335.0 2009.07.08 Win32:Trojan-gen {Other}
AVG 8.5.0.386 2009.07.09 PSW.Banker5.PTX
BitDefender 7.2 2009.07.09 Gen:Trojan.Heur.B0A7584DDC
CAT-QuickHeal 10.00 2009.07.09 (Suspicious) - DNAScan
ClamAV 0.94.1 2009.07.08 -
Comodo 1588 2009.07.09 -
DrWeb 5.0.0.12182 2009.07.09 -
eSafe 7.0.17.0 2009.07.08 Win32.TRDropper
eTrust-Vet 31.6.6604 2009.07.08 -
F-Prot 4.4.4.56 2009.07.08 -
F-Secure 8.0.14470.0 2009.07.09 Trojan-Downloader.Win32.Negao.ac
Fortinet 3.117.0.0 2009.07.03 -
GData 19 2009.07.09 Gen:Trojan.Heur.B0A7584DDC
Ikarus T3.1.1.64.0 2009.07.09 Trojan-Downloader.Win32.Banload
Jiangmin 11.0.706 2009.07.08 -
K7AntiVirus 7.10.787 2009.07.08 Trojan-Downloader.Win32.Negao.ac
Kaspersky 7.0.0.125 2009.07.09 Trojan-Downloader.Win32.Negao.ac
McAfee 5670 2009.07.08 PWS-Banker.dd
McAfee+Artemis 5670 2009.07.08 PWS-Banker.dd
McAfee-GW-Edition 6.8.5 2009.07.09 Heuristic.LooksLike.Win32.Suspicious.C!86
Microsoft 1.4803 2009.07.08 -
NOD32 4227 2009.07.09 -
Norman 6.01.09 2009.07.08 -
nProtect 2009.1.8.0 2009.07.09 -
Panda 10.0.0.14 2009.07.08 Trj/CI.A
PCTools 4.4.2.0 2009.07.08 -
Prevx 3.0 2009.07.09 High Risk Banking Info Stealer
Rising 21.37.24.00 2009.07.08 -
Sophos 4.43.0 2009.07.09 Mal/Generic-A
Sunbelt 3.2.1858.2 2009.07.09 Bulk Trojan
Symantec 1.4.4.12 2009.07.09 Trojan Horse
TheHacker 6.3.4.3.363 2009.07.08 -
TrendMicro 8.950.0.1094 2009.07.09 -
VBA32 3.12.10.7 2009.07.09 -
ViRobot 2009.7.9.1825 2009.07.09 -
VirusBuster 4.6.5.0 2009.07.08 Trojan.Crypt.Gen
Additional information
File size: 181678 bytes
MD5   : af50713e6ff1cfc0e190261a48dc8ee2
SHA1  : 6d1b8dccfc1881b30eebc68eb18ce9b211f3a498
SHA256: 5a97054007d0887206d5b53a826208cecf1b0337c36a1e72417a103daaa7d64d
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1A95
timedatestamp.....: 0x4112AB5C (Thu Aug 5 23:49:16 2004)
machinetype.......: 0x14C (Intel I386)

( 1 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x10000 0xB2F8 6.66 3b4e729a11c35f11406dd51d9e119979

( 3 imports )

> kernel32.dll: GetModuleFileNameA, GetEnvironmentVariableA, ExitProcess, FormatMessageA, GetLastError, SetLastError, GetProcAddress, VirtualProtect, LoadLibraryA, GetModuleHandleA, MultiByteToWideChar, GetModuleFileNameW, GetVersionExA, VirtualFree, VirtualAlloc, GlobalAlloc, SetFilePointer, ReadFile, CreateFileA
> msvbvm60.dll: _CIcos
> user32.dll: MessageBoxA

( 0 exports )
TrID  : File type identification
Win32 Executable Generic (42.3%)
Win32 Dynamic Link Library (generic) (37.6%)
Generic Win/DOS Executable (9.9%)
DOS Executable Generic (9.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ThreatExpert: http://www.threatexpert.com/report.aspx?md5=af50713e6ff1cfc0e190261a48dc8ee2
ssdeep: 3072:9TtIS7YIST0hrRb3biGktIk6b9B3OLI/h5ueq0:9pD7jSmrRb3b0re3zP5r
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=1E0B484CAEE723AEC57302ACC7D7FF004BC952F2
PEiD  : -
packers (F-Prot): Thinstal
RDS   : NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file