|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.5.0.41 | 2009.11.12 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.11.12 | - |
| AntiVir | 7.9.1.65 | 2009.11.12 | - |
| Antiy-AVL | 2.0.3.7 | 2009.11.12 | - |
| Authentium | 5.2.0.5 | 2009.11.12 | - |
| Avast | 4.8.1351.0 | 2009.11.12 | - |
| AVG | 8.5.0.425 | 2009.11.12 | - |
| BitDefender | 7.2 | 2009.11.12 | - |
| CAT-QuickHeal | 10.00 | 2009.11.12 | - |
| ClamAV | 0.94.1 | 2009.11.12 | - |
| Comodo | 2932 | 2009.11.12 | Heur.Suspicious |
| DrWeb | 5.0.0.12182 | 2009.11.12 | - |
| eSafe | 7.0.17.0 | 2009.11.12 | - |
| eTrust-Vet | 35.1.7117 | 2009.11.12 | - |
| F-Prot | 4.5.1.85 | 2009.11.12 | - |
| F-Secure | 9.0.15370.0 | 2009.11.11 | - |
| Fortinet | 3.120.0.0 | 2009.11.11 | - |
| GData | 19 | 2009.11.12 | - |
| Ikarus | T3.1.1.74.0 | 2009.11.12 | - |
| Jiangmin | 11.0.800 | 2009.11.12 | - |
| K7AntiVirus | 7.10.894 | 2009.11.11 | - |
| Kaspersky | 7.0.0.125 | 2009.11.12 | - |
| McAfee | 5800 | 2009.11.12 | - |
| McAfee+Artemis | 5800 | 2009.11.12 | - |
| McAfee-GW-Edition | 6.8.5 | 2009.11.12 | - |
| Microsoft | 1.5202 | 2009.11.12 | - |
| NOD32 | 4601 | 2009.11.12 | - |
| Norman | 6.03.02 | 2009.11.11 | - |
| nProtect | 2009.1.8.0 | 2009.11.12 | - |
| Panda | 10.0.2.2 | 2009.11.12 | - |
| PCTools | 7.0.3.5 | 2009.11.12 | - |
| Prevx | 3.0 | 2009.11.12 | - |
| Rising | 22.21.03.09 | 2009.11.12 | - |
| Sophos | 4.47.0 | 2009.11.12 | - |
| Sunbelt | 3.2.1858.2 | 2009.11.12 | - |
| Symantec | 1.4.4.12 | 2009.11.12 | - |
| TheHacker | 6.5.0.2.066 | 2009.11.11 | - |
| TrendMicro | 9.0.0.1003 | 2009.11.12 | - |
| VBA32 | 3.12.10.11 | 2009.11.11 | - |
| ViRobot | 2009.11.12.2033 | 2009.11.12 | - |
| VirusBuster | 4.6.5.0 | 2009.11.12 | - |
| Additional information |
|---|
| File size: 2001648 bytes |
| MD5 : 7b39a679cdff93e2edc695f0174d4332 |
| SHA1 : 3dc03ba1d855853fddc163a9920648ccb26f8a2a |
| SHA256: a0f9c7e5229fb29dfec6afdfacf9684c8a29965fb0da3b7903cd374692b4b2d1 |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0xA2C35 timedatestamp.....: 0x4AFB014B (Wed Nov 11 19:24:11 2009) machinetype.......: 0x14C (Intel I386) ( 4 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0xDEAE3 0xDEC00 6.42 235fc9229e309326f316c2f4003141ed .rdata 0xE0000 0x287CE 0x28800 5.03 5277dd6911d09031051eeb487830499c .data 0x109000 0x54C64 0x9C00 5.36 f04687ac6a61461de8fb12a56d5032c5 .rsrc 0x15E000 0xD694C 0xD6A00 6.50 2c7099760d31e4194126108993af8b1f ( 14 imports ) > comctl32.dll: InitCommonControlsEx, ImageList_Create, ImageList_ReplaceIcon, PropertySheetA, CreatePropertySheetPageA > comdlg32.dll: GetSaveFileNameA > gdi32.dll: SetBkMode, DeleteDC, BitBlt, GetObjectA, CreateCompatibleDC, SelectObject, CreateSolidBrush, SetBkColor, GetTextExtentPoint32A, GetStockObject, SetTextColor, DeleteObject, SetGraphicsMode, ModifyWorldTransform, SetViewportOrgEx, CreateFontIndirectA, GetBkColor, ExtTextOutA, SetWindowOrgEx, GetDeviceCaps > iphlpapi.dll: GetAdaptersInfo > kernel32.dll: SetFilePointer, DeleteFileA, DeleteFileW, CopyFileA, CopyFileW, CreateDirectoryW, GetFileAttributesA, GetFileAttributesW, SetFileAttributesA, SetFileAttributesW, MoveFileExA, MoveFileExW, GetFileTime, GetShortPathNameA, GetShortPathNameW, GetOverlappedResult, RemoveDirectoryA, RemoveDirectoryW, BackupRead, BackupSeek, CreateEventA, CreateEventW, OpenProcess, TerminateProcess, CreateToolhelp32Snapshot, Toolhelp32ReadProcessMemory, Module32First, Module32FirstW, Module32Next, Module32NextW, Process32First, Process32FirstW, Process32Next, Process32NextW, GetVersionExA, lstrlenW, HeapAlloc, GetProcessHeap, MultiByteToWideChar, TlsAlloc, SetNamedPipeHandleState, WaitNamedPipeA, GetSystemTime, SetLastError, TlsSetValue, TlsGetValue, SearchPathA, GetWindowsDirectoryA, VirtualAlloc, VirtualFree, VirtualProtect, HeapCreate, HeapDestroy, QueryPerformanceCounter, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, QueryPerformanceFrequency, TlsFree, OutputDebugStringA, GetCurrentThreadId, WaitForSingleObject, FileTimeToSystemTime, FileTimeToLocalFileTime, DosDateTimeToFileTime, GetDiskFreeSpaceExA, MoveFileA, GetTempFileNameA, SetEndOfFile, SetFileTime, IsBadReadPtr, HeapFree, GetVolumeInformationA, GetModuleHandleA, MapViewOfFile, CreateFileMappingA, UnmapViewOfFile, VirtualQuery, GetDiskFreeSpaceA, GetSystemDirectoryA, GetDriveTypeA, GetCommandLineA, MulDiv, SetProcessAffinityMask, GetProcessAffinityMask, FindNextFileW, SystemTimeToFileTime, ResetEvent, GlobalMemoryStatus, GetFileSize, SetUnhandledExceptionFilter, GetSystemDefaultLangID, GetComputerNameA, VerLanguageNameA, CompareFileTime, SetEvent, GetLogicalDriveStringsA, CallNamedPipeA, GetLocaleInfoA, LocalFileTimeToFileTime, GetCurrentDirectoryA, GetFileInformationByHandle, FindNextFileA, FindFirstFileW, FindFirstFileA, VirtualLock, FindResourceA, LoadResource, LockResource, FreeResource, VirtualUnlock, SetCurrentDirectoryA, SetVolumeLabelA, CreateProcessA, IsBadStringPtrA, FileTimeToDosDateTime, GlobalSize, GlobalReAlloc, IsDBCSLeadByte, lstrcmpA, GlobalLock, GlobalAlloc, GlobalHandle, GlobalUnlock, GlobalFree, SetEnvironmentVariableA, CompareStringW, CompareStringA, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, FlushFileBuffers, SetStdHandle, InitializeCriticalSectionAndSpinCount, GetStringTypeW, GetStringTypeA, GetFileType, SetHandleCount, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetTimeZoneInformation, HeapSize, GetConsoleMode, GetConsoleCP, ExitProcess, HeapReAlloc, GetStdHandle, LCMapStringW, LCMapStringA, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, InterlockedDecrement, InterlockedIncrement, GetModuleHandleW, IsDebuggerPresent, UnhandledExceptionFilter, GetStartupInfoA, GetSystemTimeAsFileTime, RtlUnwind, RaiseException, InterlockedExchange, LocalFree, LocalAlloc, WriteFile, ReadFile, CreateFileW, LoadLibraryA, CloseHandle, WideCharToMultiByte, OpenEventA, FindClose, lstrcpynA, GetTempPathA, CreateDirectoryA, ExpandEnvironmentStringsA, GetProcAddress, FreeLibrary, lstrlenA, GetModuleFileNameA, lstrcpyA, lstrcatA, GetTickCount, Sleep, GetFullPathNameA, GetCurrentProcessId, DeviceIoControl, GetLastError, CreateFileA, GetCurrentProcess, GetLocalTime, CreateThread, lstrcmpiA > ole32.dll: StgCreateDocfile, StgCreateStorageEx, StgIsStorageFile, OleUninitialize, CoTaskMemFree, StgOpenStorage, StgOpenStorageEx, CoInitializeSecurity, CoSetProxyBlanket, OleInitialize, CoInitialize, CoUninitialize, CoCreateInstance, CoCreateGuid, StringFromGUID2, CoInitializeEx > oleaut32.dll: -, -, -, -, -, -, -, -, -, - > shell32.dll: SHGetPathFromIDListA, SHBrowseForFolderA, Shell_NotifyIconA, ShellExecuteA, ShellExecuteExA, SHFileOperationA, SHGetMalloc, SHGetSpecialFolderLocation > shlwapi.dll: PathRemoveBackslashA, PathGetDriveNumberA, PathFindNextComponentA, StrChrA, PathRemoveExtensionA, StrStrA, PathQuoteSpacesA, PathRemoveArgsA, PathUnquoteSpacesA, StrCmpNIA, PathRemoveBlanksA, PathGetArgsA, StrCpyW, PathFindFileNameA, SHCopyKeyW, SHCopyKeyA, SHDeleteValueW, SHDeleteValueA, SHDeleteKeyW, PathStripToRootA, PathIsFileSpecA, PathIsNetworkPathA, UrlUnescapeA, StrCmpNA, PathAddExtensionA, PathSetDlgItemPathA, StrRChrA, PathFindExtensionA, PathRemoveFileSpecA, StrStrIA, PathAppendA, PathAddBackslashA, PathFileExistsA, PathFileExistsW, PathIsDirectoryA, PathIsDirectoryW, SHGetValueA, SHGetValueW, SHSetValueA, SHSetValueW, SHDeleteKeyA > user32.dll: GetClientRect, CreateWindowExA, GetWindowRect, CharUpperBuffA, CharPrevA, CharNextA, OemToCharA, CharUpperA, GetActiveWindow, GetWindowThreadProcessId, WaitForInputIdle, CharLowerA, OemToCharBuffA, CharToOemA, SendMessageA, ShowWindow, DestroyWindow, TranslateAcceleratorA, GetFocus, GetNextDlgTabItem, GetMessageA, LoadAcceleratorsA, GetAsyncKeyState, FindWindowA, EnableWindow, SendMessageTimeoutA, SetWindowTextA, FindWindowExA, BringWindowToTop, GetForegroundWindow, IsIconic, SendDlgItemMessageA, IsWindowVisible, IsWindow, GetDlgItem, CreateDialogParamA, PostMessageA, GetSystemMetrics, ExitWindowsEx, wsprintfA, DispatchMessageA, IsDialogMessageA, DestroyAcceleratorTable, SetWindowsHookExA, GetSysColor, FillRect, DrawIconEx, FrameRect, PostQuitMessage, TranslateMessage, PeekMessageA, MessageBoxA, LoadImageA, MoveWindow, ScreenToClient, EndPaint, DrawTextA, DrawEdge, BeginPaint, CallWindowProcA, SetCursor, LoadCursorA, GetWindowTextA, GetWindowLongA, SetWindowLongA, GetClassNameA, EnumChildWindows, GetMenuItemCount, GetMenuItemInfoA, GetMenuStringA, SetMenuItemInfoA, LoadMenuA, GetSubMenu, CheckMenuItem, DeleteMenu, TrackPopupMenu, DestroyMenu, CallNextHookEx, SetDlgItemInt, EnumWindows, RegisterWindowMessageA, GetCursorPos, GetDesktopWindow, SetRect, GetClassInfoA, LoadIconA, CopyRect, SystemParametersInfoA, GetDC, ReleaseDC, RegisterClassA, InvalidateRect, UpdateWindow, DefWindowProcA, CheckDlgButton, IsDlgButtonChecked, KillTimer, SetTimer, DialogBoxParamA, EndDialog, LoadStringA, SetFocus, GetDlgItemTextA, SetDlgItemTextA, GetParent, SetForegroundWindow, SetWindowPos, SetActiveWindow > version.dll: GetFileVersionInfoSizeA, GetFileVersionInfoSizeW, GetFileVersionInfoA, GetFileVersionInfoW, VerQueryValueA > wininet.dll: FindNextUrlCacheEntryA, FindCloseUrlCache, DeleteUrlCacheEntry, InternetCrackUrlA, HttpSendRequestW, HttpSendRequestA, HttpOpenRequestW, HttpOpenRequestA, InternetConnectW, InternetConnectA, InternetOpenW, InternetOpenA, InternetCloseHandle, FindFirstUrlCacheEntryA, InternetReadFile, InternetOpenUrlA, InternetGetCookieA > winmm.dll: timeGetTime, PlaySoundA > ws2_32.dll: WSCInstallProvider ( 0 exports ) |
| TrID : File type identification Win64 Executable Generic (87.2%) Win32 Executable Generic (8.6%) Generic Win/DOS Executable (2.0%) DOS Executable Generic (2.0%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
| ssdeep: 24576:lXSgaLlq5IEdITOrx5pPs/R1jWRa9sAwfi5JbD2Cf7AeV6mtmNxHAsGAsagM7S:Gq0SesRCGoBAip6VAsGAsZMu |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.