Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File regx32.exe received on 2008.12.02 11:40:48 (UTC)
Current status: finished
Result: 2/37 (5.41%)
Antivirus Version Last Update Result
AhnLab-V3 2008.12.2.2 2008.12.02 -
AntiVir 7.9.0.36 2008.12.02 -
Authentium 5.1.0.4 2008.12.02 -
Avast 4.8.1281.0 2008.12.01 -
AVG 8.0.0.199 2008.12.02 -
BitDefender 7.2 2008.12.02 -
CAT-QuickHeal 10.00 2008.12.02 -
ClamAV 0.94.1 2008.12.02 -
DrWeb 4.44.0.09170 2008.12.02 -
eSafe 7.0.17.0 2008.11.30 Suspicious File
eTrust-Vet 31.6.6238 2008.12.02 -
Ewido 4.0 2008.12.01 -
F-Prot 4.4.4.56 2008.12.01 -
F-Secure 8.0.14332.0 2008.12.02 -
Fortinet 3.117.0.0 2008.12.02 -
GData 19 2008.12.02 -
Ikarus T3.1.1.45.0 2008.12.02 -
K7AntiVirus 7.10.539 2008.12.01 -
Kaspersky 7.0.0.125 2008.12.02 -
McAfee 5451 2008.12.01 -
McAfee+Artemis 5451 2008.12.01 -
Microsoft 1.4104 2008.12.02 -
NOD32 3657 2008.12.02 -
Norman 5.80.02 2008.12.01 -
Panda 9.0.0.4 2008.12.02 Suspicious file
PCTools 4.4.2.0 2008.12.01 -
Prevx1 V2 2008.12.02 -
Rising 21.06.12.00 2008.12.02 -
SecureWeb-Gateway 6.7.6 2008.12.02 -
Sophos 4.36.0 2008.12.02 -
Sunbelt 3.1.1832.2 2008.12.01 -
Symantec 10 2008.12.02 -
TheHacker 6.3.1.2.171 2008.12.02 -
TrendMicro 8.700.0.1004 2008.12.02 -
VBA32 3.12.8.9 2008.12.01 -
ViRobot 2008.12.2.1496 2008.12.02 -
VirusBuster 4.5.11.0 2008.12.01 -
Additional information
File size: 285327 bytes
MD5...: c18f42f18471d5affa76ff2f08dba22c
SHA1..: 567989b9bb7ed25164c6435429ec3454564039ba
SHA256: 68a4a8f3af22cbfec9480d03bdb0eae7dafb6b708c13eaaa087a2f484de0540d
SHA512: 87ca8452a937af57a9380119fee30cb0378cf391de061757bdb621287a9fa1df
4b08c7482f1bb5daf8b6ec9c7a2a4f2b86204ca375955a667d81a5b9a6711e34
ssdeep: 6144:5ODw40+MvW+ocKOoakG3+ngwppto+HPwYF6vBfMuLPIW14bQc:XFd8OoakG
ungkJn0vBUu14bQc
PEiD..: -
TrID..: File type identification
UPX compressed Win32 Executable (43.8%)
Win32 EXE Yoda's Crypter (38.1%)
Win32 Executable Generic (12.2%)
Generic Win/DOS Executable (2.8%)
DOS Executable Generic (2.8%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x493fe0
timedatestamp.....: 0x4850e36d (Thu Jun 12 08:50:53 2008)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
UPX0 0x1000 0x5c000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
UPX1 0x5d000 0x38000 0x37200 7.93 cb31587aba938298bb034b27affca223
.rsrc 0x95000 0xf000 0xe200 4.97 9ee22a76277c8a6749e84950cc843902

( 13 imports )
> KERNEL32.DLL: LoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess
> ADVAPI32.dll: RegCloseKey
> COMCTL32.dll: ImageList_Create
> comdlg32.dll: GetSaveFileNameA
> GDI32.dll: LineTo
> MPR.dll: WNetGetConnectionA
> ole32.dll: CoInitialize
> OLEAUT32.dll: -
> SHELL32.dll: DragFinish
> USER32.dll: GetDC
> VERSION.dll: VerQueryValueA
> WINMM.dll: timeGetTime
> WSOCK32.dll: -

( 0 exports )
packers (F-Prot): UPX
CWSandbox info: http://research.sunbelt-software.com/partnerresource/MD5.aspx?md5=c18f42f18471d5affa76ff2f08dba22c
packers (Kaspersky): PE_Patch.UPX, UPX
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=c18f42f18471d5affa76ff2f08dba22c

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file