|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.5.0.24 | 2009.10.02 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.10.02 | - |
| AntiVir | 7.9.1.27 | 2009.10.02 | - |
| Antiy-AVL | 2.0.3.7 | 2009.10.02 | - |
| Authentium | 5.1.2.4 | 2009.10.02 | - |
| Avast | 4.8.1351.0 | 2009.10.02 | - |
| AVG | 8.5.0.412 | 2009.10.02 | - |
| BitDefender | 7.2 | 2009.10.02 | - |
| CAT-QuickHeal | 10.00 | 2009.10.01 | - |
| ClamAV | 0.94.1 | 2009.10.02 | - |
| Comodo | 2492 | 2009.10.02 | - |
| DrWeb | 5.0.0.12182 | 2009.10.02 | - |
| eSafe | 7.0.17.0 | 2009.10.01 | - |
| eTrust-Vet | 31.6.6773 | 2009.10.02 | - |
| F-Prot | 4.5.1.85 | 2009.10.02 | - |
| F-Secure | 8.0.14470.0 | 2009.10.02 | - |
| Fortinet | 3.120.0.0 | 2009.10.02 | - |
| GData | 19 | 2009.10.02 | - |
| Ikarus | T3.1.1.72.0 | 2009.10.02 | - |
| Jiangmin | 11.0.800 | 2009.09.27 | - |
| K7AntiVirus | 7.10.858 | 2009.10.01 | - |
| Kaspersky | 7.0.0.125 | 2009.10.02 | - |
| McAfee | 5759 | 2009.10.02 | - |
| McAfee+Artemis | 5759 | 2009.10.02 | Suspect-29!AC025B5211F8 |
| McAfee-GW-Edition | 6.8.5 | 2009.10.02 | Heuristic.BehavesLike.Win32.Worm.J |
| Microsoft | 1.5101 | 2009.10.02 | - |
| NOD32 | 4476 | 2009.10.02 | - |
| Norman | 6.01.09 | 2009.10.02 | - |
| nProtect | 2009.1.8.0 | 2009.10.02 | - |
| Panda | 10.0.2.2 | 2009.10.02 | - |
| PCTools | 4.4.2.0 | 2009.10.02 | - |
| Prevx | 3.0 | 2009.10.02 | High Risk Worm |
| Rising | 21.49.22.00 | 2009.09.30 | - |
| Sophos | 4.45.0 | 2009.10.02 | - |
| Sunbelt | 3.2.1858.2 | 2009.10.01 | - |
| Symantec | 1.4.4.12 | 2009.10.02 | - |
| TheHacker | 6.5.0.2.026 | 2009.10.02 | - |
| TrendMicro | 8.950.0.1094 | 2009.10.02 | - |
| VBA32 | 3.12.10.11 | 2009.09.30 | - |
| ViRobot | 2009.10.2.1968 | 2009.10.02 | - |
| VirusBuster | 4.6.5.0 | 2009.10.02 | - |
| Additional information |
|---|
| File size: 590839 bytes |
| MD5 : ac025b5211f82d5b9545ada6472c3e81 |
| SHA1 : d845b589d0bd4b241fdfe6bc6d09be2f274f969e |
| SHA256: 656f9bfbfa8b1cbb27d16839a871f2a1035b86a5a1083c736390c51c02aaa8ad |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x17770 timedatestamp.....: 0x4951FA17 (Wed Dec 24 10:00:07 2008) machinetype.......: 0x14C (Intel I386) ( 4 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x7BDB4 0x7BE00 6.62 0e86b720b217e05a2af046b3f4e59a7c .rdata 0x7D000 0xD5C2 0xD600 4.92 96f9c45e6a8dd5108fb8d3744fe1756c .data 0x8B000 0x16A98 0x2E00 3.70 cc34040fa4c766d8bf449da073586410 .rsrc 0xA2000 0x3318 0x3400 3.88 7d66ebe05c527406270878cc3d2220e0 ( 16 imports ) > advapi32.dll: RegEnumValueW, RegDeleteValueW, RegDeleteKeyW, RegSetValueExW, RegCreateKeyExW, GetUserNameW, RegConnectRegistryW, RegEnumKeyExW, CloseServiceHandle, UnlockServiceDatabase, LockServiceDatabase, OpenSCManagerW, AdjustTokenPrivileges, RegCloseKey, RegQueryValueExW, RegOpenKeyExW, SetSecurityDescriptorDacl, AddAce, GetAce, OpenThreadToken, OpenProcessToken, LookupPrivilegeValueW, CreateProcessAsUserW, CreateProcessWithLogonW, InitializeSecurityDescriptor, InitializeAcl, GetAclInformation, GetLengthSid, CopySid, GetTokenInformation, GetSecurityDescriptorDacl, LogonUserW > comctl32.dll: ImageList_Destroy, ImageList_Remove, ImageList_SetDragCursorImage, ImageList_BeginDrag, ImageList_DragEnter, ImageList_DragLeave, ImageList_EndDrag, ImageList_DragMove, ImageList_Create, InitCommonControlsEx, ImageList_ReplaceIcon > comdlg32.dll: GetSaveFileNameW, GetOpenFileNameW > gdi32.dll: RoundRect, DeleteObject, CreateCompatibleDC, GetTextExtentPoint32W, ExtCreatePen, StrokeAndFillPath, StrokePath, EndPath, SetPixel, CreateDIBSection, SelectObject, BitBlt, GetDIBits, DeleteDC, CloseFigure, LineTo, AngleArc, MoveToEx, Ellipse, PolyDraw, BeginPath, Rectangle, SetViewportOrgEx, GetObjectW, SetBkColor, CreatePen, CreateSolidBrush, SetTextColor, CreateFontW, GetDeviceCaps, GetTextFaceW, GetStockObject, CreateDCW, CreateCompatibleBitmap, GetPixel, SetBkMode > kernel32.dll: HeapAlloc, Sleep, GetCurrentThreadId, GetVersionExW, GetSystemInfo, GetModuleHandleW, QueryPerformanceCounter, QueryPerformanceFrequency, VirtualFreeEx, OpenProcess, VirtualAllocEx, WriteProcessMemory, ReadProcessMemory, CreateFileW, ReadFile, SetFilePointer, TerminateProcess, CreateToolhelp32Snapshot, Process32FirstW, Process32NextW, SetFileTime, GetFileAttributesW, FindFirstFileW, FindClose, DeleteFileW, FindNextFileW, lstrcmpiW, MoveFileW, CopyFileW, CreateDirectoryW, RemoveDirectoryW, SetSystemPowerState, FindResourceW, LoadResource, LockResource, SizeofResource, EnumResourceNamesW, OutputDebugStringW, GetLocalTime, MultiByteToWideChar, WideCharToMultiByte, GetProcessHeap, InterlockedIncrement, InterlockedDecrement, WriteFile, GetStdHandle, CreatePipe, InterlockedExchange, EnterCriticalSection, TerminateThread, LeaveCriticalSection, DeleteCriticalSection, GetTempPathW, GetTempFileNameW, VirtualFree, FormatMessageW, GetExitCodeProcess, SetErrorMode, GetPrivateProfileStringW, WritePrivateProfileStringW, GetPrivateProfileSectionW, WritePrivateProfileSectionW, GetPrivateProfileSectionNamesW, FileTimeToLocalFileTime, FileTimeToSystemTime, SystemTimeToFileTime, LocalFileTimeToFileTime, GetDriveTypeW, GetDiskFreeSpaceExW, GetDiskFreeSpaceW, GetVolumeInformationW, SetVolumeLabelW, CreateHardLinkW, DeviceIoControl, SetFileAttributesW, GetShortPathNameW, GetEnvironmentVariableW, SetEnvironmentVariableW, GlobalLock, GlobalUnlock, GlobalAlloc, GetFileSize, GlobalFree, GlobalMemoryStatusEx, Beep, GetComputerNameW, GetWindowsDirectoryW, GetSystemDirectoryW, GetCurrentProcessId, GetCurrentThread, GetProcessIoCounters, CreateProcessW, SetPriorityClass, VirtualAlloc, LoadLibraryExW, HeapFree, WaitForSingleObject, CreateThread, DuplicateHandle, GetLastError, CloseHandle, GetCurrentProcess, LoadLibraryA, GetModuleFileNameW, GetFullPathNameW, SetCurrentDirectoryW, ExitProcess, ExitThread, GetSystemTimeAsFileTime, ResumeThread, GetStartupInfoW, RaiseException, GetCPInfo, GetACP, GetOEMCP, IsDebuggerPresent, GetCurrentDirectoryW, FreeLibrary, InitializeCriticalSection, GetProcAddress, LoadLibraryW, IsValidCodePage, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetModuleFileNameA, InitializeCriticalSectionAndSpinCount, HeapSize, HeapReAlloc, HeapCreate, RtlUnwind, GetConsoleCP, GetConsoleMode, SetHandleCount, GetFileType, GetStartupInfoA, SetStdHandle, FlushFileBuffers, LCMapStringW, GetTimeZoneInformation, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineW, GetTickCount, LCMapStringA, GetStringTypeA, GetStringTypeW, GetLocaleInfoA, GetModuleHandleA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, CreateFileA, SetEndOfFile, CompareStringA, CompareStringW, SetEnvironmentVariableA > mpr.dll: WNetCancelConnection2W, WNetGetConnectionW, WNetAddConnection2W, WNetUseConnectionW > ole32.dll: OleSetMenuDescriptor, MkParseDisplayName, OleSetContainedObject, CoInitialize, CoUninitialize, CoCreateInstance, CreateStreamOnHGlobal, CoTaskMemAlloc, CoTaskMemFree, IIDFromString, StringFromIID, CLSIDFromString, OleInitialize, CreateBindCtx, CLSIDFromProgID, CoInitializeSecurity, CoCreateInstanceEx, CoSetProxyBlanket, StringFromCLSID, OleUninitialize > oleaut32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, - > psapi.dll: EnumProcesses, GetModuleBaseNameW, GetProcessMemoryInfo, EnumProcessModules > shell32.dll: DragQueryPoint, ShellExecuteExW, DragQueryFileW, SHEmptyRecycleBinW, SHBrowseForFolderW, SHFileOperationW, SHGetPathFromIDListW, SHGetDesktopFolder, SHGetMalloc, ExtractIconExW, Shell_NotifyIconW, ShellExecuteW, DragFinish > user32.dll: RegisterHotKey, ClientToScreen, GetKeyboardLayoutNameW, IsCharAlphaW, IsCharAlphaNumericW, IsCharLowerW, IsCharUpperW, GetMenuStringW, GetSubMenu, GetCaretPos, IsZoomed, MonitorFromPoint, GetMonitorInfoW, SetWindowLongW, SetLayeredWindowAttributes, FlashWindow, TranslateAcceleratorW, IsDialogMessageW, GetSysColor, InflateRect, DrawFocusRect, DrawTextW, FrameRect, DrawFrameControl, FillRect, PtInRect, DestroyAcceleratorTable, CreateAcceleratorTableW, SetCursor, GetWindowDC, GetSystemMetrics, GetActiveWindow, CharNextW, wsprintfW, RedrawWindow, DrawMenuBar, DestroyMenu, SetMenu, GetWindowTextLengthW, CreateMenu, IsDlgButtonChecked, DefDlgProcW, ReleaseCapture, SetCapture, TranslateMessage, PeekMessageW, UnregisterHotKey, CharLowerBuffW, LoadImageW, CreateIconFromResourceEx, mouse_event, ExitWindowsEx, SetActiveWindow, FindWindowExW, EnumThreadWindows, SetMenuDefaultItem, InsertMenuItemW, IsMenu, TrackPopupMenuEx, GetCursor, DeleteMenu, CheckMenuRadioItem, GetMenuItemID, GetMenuItemCount, SetMenuItemInfoW, GetMenuItemInfoW, SetForegroundWindow, IsIconic, FindWindowW, OpenClipboard, GetAsyncKeyState, SetKeyboardState, GetKeyboardState, GetKeyState, keybd_event, VkKeyScanA, GetKeyboardLayoutNameA, CharUpperW, LoadStringW, DialogBoxParamW, MessageBeep, EndDialog, SendDlgItemMessageW, GetDlgItem, SetWindowTextW, EndPaint, BeginPaint, DestroyWindow, GetMenu, GetClientRect, CopyRect, CharUpperBuffW, EnumWindows, IsWindow, IsWindowEnabled, IsWindowVisible, EnableWindow, InvalidateRect, GetWindowLongW, GetWindowThreadProcessId, AttachThreadInput, SendMessageTimeoutW, GetFocus, GetWindowTextW, ScreenToClient, EnumChildWindows, GetClassNameW, GetParent, GetDlgCtrlID, SendMessageW, MapVirtualKeyW, PostMessageW, GetWindowRect, SetUserObjectSecurity, GetUserObjectSecurity, CloseDesktop, CloseWindowStation, OpenDesktopW, SetProcessWindowStation, WindowFromPoint, SetWindowPos, CopyImage, AdjustWindowRectEx, SetRect, ReleaseDC, GetDC, SetClipboardData, EmptyClipboard, CountClipboardFormats, CloseClipboard, GetClipboardData, GetCursorPos, IsClipboardFormatAvailable, GetProcessWindowStation, OpenWindowStationW, MessageBoxW, DefWindowProcW, MoveWindow, SetFocus, PostQuitMessage, KillTimer, CreatePopupMenu, RegisterWindowMessageW, SetTimer, ShowWindow, CreateWindowExW, RegisterClassExW, LoadIconW, LoadCursorW, GetSysColorBrush, GetForegroundWindow, MessageBoxA, DestroyIcon, BlockInput, GetMessageW, LockWindowUpdate, SystemParametersInfoW, DispatchMessageW, GetDesktopWindow > userenv.dll: UnloadUserProfile, DestroyEnvironmentBlock, CreateEnvironmentBlock, LoadUserProfileW > version.dll: GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW > wininet.dll: InternetSetOptionW, InternetCloseHandle, InternetOpenUrlW, InternetConnectW, FtpOpenFileW, HttpQueryInfoW, HttpOpenRequestW, HttpSendRequestW, FtpGetFileSize, InternetCrackUrlW, InternetOpenW, InternetReadFile > winmm.dll: timeGetTime, waveOutSetVolume, mciSendStringW > wsock32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, - ( 0 exports ) |
| TrID : File type identification Win32 Executable MS Visual C++ (generic) (75.0%) Win32 Executable Generic (16.9%) Generic Win/DOS Executable (3.9%) DOS Executable Generic (3.9%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
| ssdeep: 6144:Fpqoa8aLiC/2OLSAN7gNVpNleQUohBfGPOtQciXeL/XYqGlebojSP2pjNhcIR7QA:FpqiC/2OGAtkCP4cejGSOpRK+Q3Q |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=48A4C1D1F73CBF5403DA094AF5B2D0007C29884C |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.