Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File dsc_4788.scr received on 2008.12.02 13:33:19 (UTC)
Current status: finished
Result: 11/37 (29.73%)
Antivirus Version Last Update Result
AhnLab-V3 2008.12.2.2 2008.12.02 -
AntiVir 7.9.0.36 2008.12.02 TR/Crypt.CFI.Gen
Authentium 5.1.0.4 2008.12.02 W32/Banload.E.gen!Eldorado
Avast 4.8.1281.0 2008.12.01 -
AVG 8.0.0.199 2008.12.02 -
BitDefender 7.2 2008.12.02 -
CAT-QuickHeal 10.00 2008.12.02 TrojanDownloader.Agent.arpx
ClamAV 0.94.1 2008.12.02 -
DrWeb 4.44.0.09170 2008.12.02 -
eSafe 7.0.17.0 2008.11.30 Suspicious File
eTrust-Vet 31.6.6239 2008.12.02 -
Ewido 4.0 2008.12.02 -
F-Prot 4.4.4.56 2008.12.01 W32/Banload.E.gen!Eldorado
F-Secure 8.0.14332.0 2008.12.02 Suspicious:W32/Malware!Gemini
Fortinet 3.117.0.0 2008.12.02 -
GData 19 2008.12.02 Trojan.AgentMB.AWDCB5879381
Ikarus T3.1.1.45.0 2008.12.02 -
K7AntiVirus 7.10.539 2008.12.01 -
Kaspersky 7.0.0.125 2008.12.02 -
McAfee 5451 2008.12.01 -
McAfee+Artemis 5451 2008.12.01 -
Microsoft 1.4104 2008.12.02 -
NOD32 3657 2008.12.02 -
Norman 5.80.02 2008.12.02 W32/Smalltroj.ITOJ
Panda 9.0.0.4 2008.12.02 Suspicious file
PCTools 4.4.2.0 2008.12.02 -
Prevx1 V2 2008.12.02 -
Rising 21.06.12.00 2008.12.02 -
SecureWeb-Gateway 6.7.6 2008.12.02 Trojan.Crypt.CFI.Gen
Sophos 4.36.0 2008.12.02 -
Sunbelt 3.1.1832.2 2008.12.01 -
Symantec 10 2008.12.02 -
TheHacker 6.3.1.2.171 2008.12.02 -
TrendMicro 8.700.0.1004 2008.12.02 -
VBA32 3.12.8.9 2008.12.01 Trojan-Downloader.Win32.Agent.aoyc
ViRobot 2008.12.2.1496 2008.12.02 -
VirusBuster 4.5.11.0 2008.12.01 -
Additional information
File size: 192000 bytes
MD5...: e4ce197392e1c30f330755e672a64f1c
SHA1..: 21deaf543f59d71307697aaeac02d7864c6233cf
SHA256: 378d46ce447c1ad025021a6873486abb285504654f1cae64d47d15b83e719249
SHA512: 1b135d51f9095b008a169f7d4c5f0aba7526f8b64e13112fcc41b343439e3a01
4cf9a87b60b9f2950e3ffa56407a44114aafa2202de0eb7bafefa1a12096ad83
ssdeep: 3072:UFdoQkeNde4u5lohSnpkIX5phXilLzJryp9nr5f/qwPwNGOUHLc+/hvoanJ
K:UzoSZufoQpZp3XuLStf/LMG1rc+ZvoaJ
PEiD..: -
TrID..: File type identification
UPX compressed Win32 Executable (38.5%)
Win32 EXE Yoda's Crypter (33.4%)
Win32 Executable Generic (10.7%)
Win32 Dynamic Link Library (generic) (9.5%)
Win16/32 Executable Delphi generic (2.6%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x474a90
timedatestamp.....: 0x2a425e19 (Fri Jun 19 22:22:17 1992)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
UPX0 0x1000 0x4c000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
UPX1 0x4d000 0x28000 0x27e00 7.92 89b1fdf1cccd698b9a544670187177ea
.rsrc 0x75000 0x7000 0x6c00 5.62 2e6d6c1e0de7975ffc2e4e73a06e0026

( 8 imports )
> KERNEL32.DLL: LoadLibraryA, GetProcAddress, VirtualProtect, ExitProcess
> advapi32.dll: RegCloseKey
> comctl32.dll: ImageList_Add
> gdi32.dll: SaveDC
> oleaut32.dll: VariantCopy
> URLMON.DLL: URLDownloadToFileA
> user32.dll: GetDC
> version.dll: VerQueryValueA

( 0 exports )
packers (F-Prot): UPX
packers (Kaspersky): PE_Patch.UPX, UPX
packers (Authentium): UPX

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file