Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File fileutil.exe received on 2009.04.11 13:34:46 (UTC)
Current status: finished
Result: 20/40 (50.00%)
Antivirus Version Last Update Result
a-squared 4.0.0.101 2009.04.11 Trojan.Win32.Agent!IK
AhnLab-V3 5.0.0.2 2009.04.11 -
AntiVir 7.9.0.138 2009.04.10 -
Antiy-AVL 2.0.3.1 2009.04.11 Trojan/Win32.Agent
Authentium 5.1.2.4 2009.04.10 -
Avast 4.8.1335.0 2009.04.10 -
AVG 8.5.0.285 2009.04.11 -
BitDefender 7.2 2009.04.11 -
CAT-QuickHeal 10.00 2009.04.10 Trojan.Agent.ayed
ClamAV 0.94.1 2009.04.10 -
Comodo 1110 2009.04.11 -
DrWeb 4.44.0.09170 2009.04.11 -
eSafe 7.0.17.0 2009.04.07 -
eTrust-Vet 31.6.6450 2009.04.11 -
F-Prot 4.4.4.56 2009.04.10 -
F-Secure 8.0.14470.0 2009.04.11 Trojan.Win32.Agent.ayed
Fortinet 3.117.0.0 2009.04.11 -
GData 19 2009.04.11 -
Ikarus T3.1.1.49.0 2009.04.11 Trojan.Win32.Agent
K7AntiVirus 7.10.700 2009.04.11 Trojan.Win32.Agent.ayed
Kaspersky 7.0.0.125 2009.04.11 Trojan.Win32.Agent.ayed
McAfee 5580 2009.04.10 Generic.dx
McAfee+Artemis 5580 2009.04.10 Generic.dx
McAfee-GW-Edition 6.7.6 2009.04.10 -
Microsoft 1.4502 2009.04.11 -
NOD32 4001 2009.04.11 probably a variant of Win32/Agent
Norman 6.00.06 2009.04.09 W32/Agent.KATF
nProtect 2009.1.8.0 2009.04.11 Trojan/W32.Agent.973255
Panda 10.0.0.14 2009.04.11 Trj/CI.A
PCTools 4.4.2.0 2009.04.08 Trojan.Agent!sd6
Prevx1 V2 2009.04.11 Medium Risk Malware
Rising 21.24.52.00 2009.04.11 -
Sophos 4.40.0 2009.04.11 -
Sunbelt 3.2.1858.2 2009.04.10 -
Symantec 1.4.4.12 2009.04.11 Trojan Horse
TheHacker 6.3.4.0.305 2009.04.10 Trojan/Agent.ayed
TrendMicro 8.700.0.1004 2009.04.10 TROJ_AGENT.AKWF
VBA32 3.12.10.2 2009.04.10 Trojan.Win32.Agent.ayed
ViRobot 2009.4.10.1688 2009.04.10 -
VirusBuster 4.6.5.0 2009.04.11 Trojan.Agent.HUXY
Additional information
File size: 1021632 bytes
MD5...: 9410cb191fbf4b66019eb3b282c45163
SHA1..: 60ca8013612f4dbd3591a342386198dea9d70a72
SHA256: cd96b9a9f934dbfe777847bb732fc3ce55576e71742833d01d2a346f14589034
SHA512: 0085475f10b619fda8f1c026bf0176275693c0733e8638ddd4fc9498902da1da
b843c735ac65f23cb818d94e3e7c0ab9f0137b623ebeed990a577664d81ef7a9
ssdeep: 24576:rxsLNT9xnCEQp5alGZITJdL5rU02i3snnViozEP4diD7FuP:yHCES5OGZy
J740snViwniV8
PEiD..: -
TrID..: File type identification
Generic Win/DOS Executable (49.9%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x491e
timedatestamp.....: 0x4311b5c6 (Sun Aug 28 13:01:58 2005)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x8e8a 0x9000 6.64 71dc576f360acb2fae2359307c15a415
.rdata 0xa000 0x22aa 0x3000 3.95 383a98ac94ae9301c08ca812ca5d9090
.data 0xd000 0x2348 0x2000 2.33 d0829e50b855040c0d36f20f023c9a28
.rsrc 0x10000 0x870 0x1000 2.20 4d9cd3db76086cb07ecfbef30a1d915e

( 3 imports )
> KERNEL32.dll: ReadFile, WriteFile, CloseHandle, CreateDirectoryA, lstrcatA, lstrlenA, lstrcpyA, SetFilePointer, CreateFileA, GetModuleFileNameA, GetModuleHandleA, GetWindowsDirectoryA, FreeLibrary, GetProcAddress, LoadLibraryA, HeapFree, RtlUnwind, GetStartupInfoA, GetCommandLineA, GetVersionExA, HeapAlloc, RaiseException, HeapDestroy, HeapCreate, VirtualFree, DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, VirtualAlloc, HeapReAlloc, IsBadWritePtr, GetACP, GetOEMCP, GetCPInfo, TlsAlloc, SetLastError, GetCurrentThreadId, GetLastError, TlsFree, TlsSetValue, TlsGetValue, ExitProcess, TerminateProcess, GetCurrentProcess, HeapSize, GetStdHandle, UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStringsW, SetHandleCount, GetFileType, SetUnhandledExceptionFilter, InitializeCriticalSection, InterlockedExchange, VirtualQuery, LCMapStringA, MultiByteToWideChar, LCMapStringW, GetStringTypeA, GetStringTypeW, IsBadReadPtr, IsBadCodePtr, GetLocaleInfoA, VirtualProtect, GetSystemInfo, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, GetSystemTimeAsFileTime
> USER32.dll: MessageBoxA
> SHELL32.dll: ShellExecuteA

( 0 exports )
RDS...: NSRL Reference Data Set
-
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=CBC97010C027A57E969B0F3E67C1F500CE2DA7FA
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=9410cb191fbf4b66019eb3b282c45163

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file