Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File officetoolbar.exe received on 2009.03.18 10:48:28 (UTC)
Current status: finished
Result: 11/37 (29.73%)
Antivirus Version Last Update Result
a-squared 4.0.0.101 2009.03.18 -
AhnLab-V3 5.0.0.2 2009.03.18 -
AntiVir 7.9.0.116 2009.03.18 BDS/Delf.agr
Authentium 5.1.2.4 2009.03.18 -
Avast 4.8.1335.0 2009.03.17 Win32:Banker-FMH
AVG 8.0.0.237 2009.03.18 Dialer.ORT
CAT-QuickHeal 10.00 2009.03.18 -
ClamAV 0.94.1 2009.03.18 -
Comodo 1062 2009.03.17 -
DrWeb 4.44.0.09170 2009.03.18 -
eSafe 7.0.17.0 2009.03.17 -
eTrust-Vet 31.6.6388 2009.03.09 -
F-Prot 4.4.4.56 2009.03.17 -
F-Secure 8.0.14470.0 2009.03.18 Trojan-Banker.Win32.Banker.afls
Fortinet 3.117.0.0 2009.03.18 -
GData 19 2009.03.18 -
Ikarus T3.1.1.45.0 2009.03.18 -
K7AntiVirus 7.10.674 2009.03.17 -
Kaspersky 7.0.0.125 2009.03.18 Trojan-Banker.Win32.Banker.afls
McAfee 5556 2009.03.17 -
McAfee+Artemis 5556 2009.03.17 -
McAfee-GW-Edition 6.7.6 2009.03.18 Trojan.Crypt.XPACK.Gen
Microsoft 1.4502 2009.03.18 -
NOD32 3944 2009.03.17 -
Norman 6.00.06 2009.03.17 Dialer.dam
nProtect 2009.1.8.0 2009.03.18 -
Panda 10.0.0.10 2009.03.18 Trj/CI.A
PCTools 4.4.2.0 2009.03.17 -
Prevx1 V2 2009.03.18 -
Rising 21.21.22.00 2009.03.18 -
Sophos 4.39.0 2009.03.18 Troj/Agent-JFS
Sunbelt 3.2.1858.2 2009.03.18 -
Symantec 1.4.4.12 2009.03.18 -
TheHacker 6.3.3.0.283 2009.03.16 -
TrendMicro 8.700.0.1004 2009.03.18 TROJ_BANKER.HIJ
ViRobot 2009.3.18.1654 2009.03.18 -
VirusBuster 4.6.5.0 2009.03.17 Trojan.PWS.Banker.BKVW
Additional information
File size: 709068 bytes
MD5...: addcf81db8a633e385b9db83dc6c0d3a
SHA1..: 40f6cf368c1965407a72a283f55471436862312b
SHA256: 1de77833a9367729a8ad2f0e4d30d5fa0ceb5047d9575954f7078b73a941d04e
SHA512: e3680bea5cc3953bde46a3844b7ea3eb9d648346d16eaf1b7ed4aec89d1205a9
b7dbe3b862a10fc06145531d1a9c1e412acd71631d6a7384ad54930aba3dd3a4
ssdeep: 12288:f37CMz9MVMm89XCLr4j73jS385vUpFWXsRflQmBSrZX2dxnGSeSPuwaXUc
E09C:f37CA8/89XCYXjP8Rf7BSp2bnGEP5asV
PEiD..: -
TrID..: File type identification
Win32 EXE Yoda's Crypter (56.9%)
Win32 Executable Generic (18.2%)
Win32 Dynamic Link Library (generic) (16.2%)
Generic Win/DOS Executable (4.2%)
DOS Executable Generic (4.2%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1000
timedatestamp.....: 0x2a425e19 (Fri Jun 19 22:22:17 1992)
machinetype.......: 0x14c (I386)

( 2 sections )
name viradd virsiz rawdsiz ntrpy md5
.UPX1 0x1000 0x9b5000 0x200 1.36 e34f11038dc81e7a0be53ebaf9f98006
.UPX1 0x9b6000 0xb00a4 0xacdcc 7.92 c3db9788137b1882ffa38e310a48d714

( 1 imports )
> kernel32.dll: LoadLibraryA, GetProcAddress, VirtualAlloc, VirtualProtect, VirtualFree, GetModuleHandleA

( 0 exports )
packers (Avast): RLPack

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file