Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File svchost_3_.exe received on 2008.11.13 03:08:28 (UTC)
Current status: finished
Result: 19/36 (52.78%)
Antivirus Version Last Update Result
AhnLab-V3 2008.11.13.0 2008.11.13 -
AntiVir 7.9.0.31 2008.11.12 TR/PSW.LdPinch.abrl
Authentium 5.1.0.4 2008.11.12 -
Avast 4.8.1248.0 2008.11.12 Win32:Trojan-gen {Other}
AVG 8.0.0.199 2008.11.12 PSW.Ldpinch.WDX
BitDefender 7.2 2008.11.12 Trojan.Generic.1085352
CAT-QuickHeal 9.50 2008.11.12 -
ClamAV 0.94.1 2008.11.12 -
DrWeb 4.44.0.09170 2008.11.13 Trojan.PWS.LDPinch.4182
eSafe 7.0.17.0 2008.11.12 Win32.LdPinch.abrl
eTrust-Vet 31.6.6204 2008.11.11 -
Ewido 4.0 2008.11.12 -
F-Prot 4.4.4.56 2008.11.12 -
F-Secure 8.0.14332.0 2008.11.13 Trojan-PSW.Win32.LdPinch.abrl
Fortinet 3.117.0.0 2008.11.12 PossibleThreat
GData 19 2008.11.12 Trojan.Generic.1085352
Ikarus T3.1.1.45.0 2008.11.12 Trojan-PWS.Win32.LdPinch
K7AntiVirus 7.10.523 2008.11.12 Trojan-PSW.Win32.LdPinch.abrl
Kaspersky 7.0.0.125 2008.11.13 Trojan-PSW.Win32.LdPinch.abrl
McAfee 5432 2008.11.13 PWS-LDPinch
Microsoft 1.4104 2008.11.13 -
NOD32 3608 2008.11.13 -
Norman 5.80.02 2008.11.12 W32/LdPinch.AJMX
Panda 9.0.0.4 2008.11.12 -
PCTools 4.4.2.0 2008.11.13 -
Prevx1 V2 2008.11.13 Malicious Software
Rising 21.03.22.00 2008.11.12 -
SecureWeb-Gateway 6.7.6 2008.11.12 Trojan.PSW.LdPinch.abrl
Sophos 4.35.0 2008.11.13 Mal/EncPk-FR
Sunbelt 3.1.1785.2 2008.11.11 -
Symantec 10 2008.11.13 -
TheHacker 6.3.1.1.151 2008.11.13 -
TrendMicro 8.700.0.1004 2008.11.13 -
VBA32 3.12.8.9 2008.11.12 Trojan-PSW.Win32.LdPinch.abrl
ViRobot 2008.11.12.1463 2008.11.12 Trojan.Win32.PSWLdPinch.52736.X
VirusBuster 4.5.11.0 2008.11.12 -
Additional information
File size: 52736 bytes
MD5...: 57841b5c7ed709f6b5ff0027c014083b
SHA1..: 33db7ebb40e5c6d879ab30798d63f5fa4ef4f8ab
SHA256: 408d489b55db05eb92f7e38de54bee658121442605eddefb38661835ddcc43b1
SHA512: 238365299a8c169513c2e272d024aa616db01536a2153a1fe0d65a6ae68a6f9f
011cd2d201f9eba823b92fc980845c0a137bd99d1efe519e7c677badadeaec29
PEiD..: -
TrID..: File type identification
Win64 Executable Generic (80.9%)
Win32 Executable Generic (8.0%)
Win32 Dynamic Link Library (generic) (7.1%)
Generic Win/DOS Executable (1.8%)
DOS Executable Generic (1.8%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x40b531
timedatestamp.....: 0x47d00e85 (Thu Mar 06 15:32:21 2008)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xb66d 0xb800 7.93 a4abc1c903e240bd2137bb6b38133a7b
.data 0xd000 0xa75 0x800 5.23 69e15fb3b409f8317fb7528a91acc470
.pdata 0xe000 0x3bf 0x400 3.20 09b3aab2641e7474bb31b988effe4598
.rsrc 0xf000 0x598 0x600 3.26 b49f8b202683a85ddfce62278d706a9b

( 6 imports )
> MSVCRT.dll: _waccess, _strcmpi, __p__commode, _getcwd, fclose, _stat, abs, strspn, _wcsnicmp
> KERNEL32.dll: DeleteCriticalSection, GetCurrentProcessId, InitializeCriticalSection, GetNumberFormatA, GetProcessHeap, GetProcessAffinityMask, CompareStringA, TerminateProcess, SetEnvironmentVariableA, InterlockedExchange, OpenProcess, lstrlenW, GetCurrentThread, RaiseException
> ADVAPI32.dll: GetLengthSid, QueryServiceStatus, QueryServiceConfigA, LookupPrivilegeValueA, LookupPrivilegeValueW, AddAce, SetTokenInformation, GetSidSubAuthority
> USER32.dll: SetCursor, EnumWindows, PostMessageA, InsertMenuA, LoadMenuA, InflateRect, GetSysColorBrush, IsDialogMessageA
> ole32.dll: CoSuspendClassObjects, OleLoadFromStream, CoLockObjectExternal, OleCreateEx, OleCreateLinkFromData, CoDosDateTimeToFileTime, OleUninitialize, CoRegisterMessageFilter, OleRun
> GDI32.dll: Rectangle, MoveToEx, GetTextExtentPoint32A, GetStockObject, SetMapMode, SetBkColor, Ellipse, SetTextAlign, SelectClipRgn, BitBlt

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=AADF252C0050D52DCE4D00E246C6BB00B730A822
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=57841b5c7ed709f6b5ff0027c014083b

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file