Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File form.exe received on 07.19.2008 22:49:53 (CET)
Current status: finished
Result: 15/33 (45.45%)
Antivirus Version Last Update Result
AhnLab-V3 2008.7.17.0 2008.07.18 -
AntiVir 7.8.1.11 2008.07.19 TR/Dropper.Gen
Authentium 5.1.0.4 2008.07.19 -
Avast 4.8.1195.0 2008.07.19 Win32:Zhelatin-CEC
AVG 8.0.0.130 2008.07.19 I-Worm/Nuwar.N
BitDefender 7.2 2008.07.19 -
CAT-QuickHeal 9.50 2008.07.18 -
ClamAV 0.93.1 2008.07.19 -
DrWeb 4.44.0.09170 2008.07.19 Trojan.Spambot.origin
eSafe 7.0.17.0 2008.07.17 -
eTrust-Vet 31.6.5966 2008.07.18 Win32/Sintun!generic
Ewido 4.0 2008.07.19 -
F-Prot 4.4.4.56 2008.07.18 -
F-Secure 7.60.13501.0 2008.07.19 Tibs.BGDL
Fortinet 3.14.0.0 2008.07.19 -
GData 2.0.7306.1023 2008.07.19 -
Ikarus T3.1.1.34.0 2008.07.19 -
Kaspersky 7.0.0.125 2008.07.19 Email-Worm.Win32.Zhelatin.aec
McAfee 5342 2008.07.18 -
Microsoft 1.3704 2008.07.19 Backdoor:WinNT/Nuwar.B!sys
NOD32v2 3281 2008.07.18 probably a variant of Win32/Nuwar
Norman 5.80.02 2008.07.18 Tibs.BGDL
Panda 9.0.0.4 2008.07.19 Suspicious file
Prevx1 V2 2008.07.19 Cloaked Malware
Rising 20.53.52.00 2008.07.19 -
Sophos 4.31.0 2008.07.19 Mal/Dorf-H
Sunbelt 3.1.1536.1 2008.07.18 -
Symantec 10 2008.07.19 -
TheHacker 6.2.96.384 2008.07.19 -
TrendMicro 8.700.0.1004 2008.07.18 -
VBA32 3.12.8.1 2008.07.19 -
VirusBuster 4.5.11.0 2008.07.19 Rootkit.QQHelp.Gen.6
Webwasher-Gateway 6.6.2 2008.07.19 Trojan.Dropper.Gen
Additional information
File size: 140800 bytes
MD5...: a6960aea602e5c843471e086943dbbed
SHA1..: 48779fb4784bc46539e0d0fb0f460c167e438c3d
SHA256: 8d4bf504ad995b5dd2eb1e66b312cfe4724b2e3541b6184fa0c9b17716e900d6
SHA512: 339b2c515cc8bcd04cdddd314507052735aa1f37164f7cdd49ce406951ba089c
efbce4c82518bee9c97d286db0a7fb927d882da409992d258220d4fbf806acfd
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x40135f
timedatestamp.....: 0x487f3c57 (Thu Jul 17 12:34:31 2008)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xd9e 0xe00 6.31 f65672138122c1dc71e9ffe192871c75
.rdata 0x2000 0x458 0x600 3.82 b384ad688f354f46048d2ab912adc0a2
.data 0x3000 0x20894 0x20a00 6.88 7ddd570aab01c901d4ab827c243ec69b
.reloc 0x24000 0x2d6 0x400 1.74 04f6bb08f6497b37fe61559132ce1f89

( 3 imports )
> KERNEL32.dll: GetWindowsDirectoryA, HeapAlloc, GetProcessHeap, HeapReAlloc, HeapFree, WritePrivateProfileStringA, SetCurrentDirectoryA, lstrlenA, GetSystemTimeAsFileTime, RtlUnwind, InterlockedExchange, VirtualQuery, GetFullPathNameA, GetFileAttributesA, GetLastError, CreateFileA, WriteFile, CloseHandle, WinExec
> USER32.dll: wvsprintfA
> ADVAPI32.dll: StartServiceA, CloseServiceHandle, CreateServiceA, EnumServicesStatusA, OpenSCManagerA

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=9FAFDDB3002A262C26FF02EA44092D003E23358E

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file