Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File 03.exe received on 2009.07.07 03:16:32 (UTC)
Current status: finished
Result: 10/41 (24.39%)
Antivirus Version Last Update Result
a-squared 4.5.0.18 2009.07.07 Trojan-PWS.Win32.Delf!IK
AhnLab-V3 5.0.0.2 2009.07.06 -
AntiVir 7.9.0.204 2009.07.06 TR/ATRAPS.Gen
Antiy-AVL 2.0.3.1 2009.07.06 -
Authentium 5.1.2.4 2009.07.07 -
Avast 4.8.1335.0 2009.07.06 -
AVG 8.5.0.386 2009.07.06 -
BitDefender 7.2 2009.07.07 Trojan.Crypt.Delf.G
CAT-QuickHeal 10.00 2009.07.07 -
ClamAV 0.94.1 2009.07.06 -
Comodo 1538 2009.07.02 -
DrWeb 5.0.0.12182 2009.07.07 BackDoor.BlackHole.3397
eSafe 7.0.17.0 2009.07.06 Suspicious File
eTrust-Vet 31.6.6598 2009.07.06 -
F-Prot 4.4.4.56 2009.07.06 -
F-Secure 8.0.14470.0 2009.07.07 -
Fortinet 3.117.0.0 2009.07.03 -
GData 19 2009.07.07 Trojan.Crypt.Delf.G
Ikarus T3.1.1.64.0 2009.07.07 Trojan-PWS.Win32.Delf
Jiangmin 11.0.706 2009.07.06 -
K7AntiVirus 7.10.785 2009.07.06 -
Kaspersky 7.0.0.125 2009.07.07 -
McAfee 5668 2009.07.06 -
McAfee+Artemis 5668 2009.07.06 -
McAfee-GW-Edition 6.8.5 2009.07.06 Heuristic.LooksLike.Trojan.Dropper.H
Microsoft 1.4803 2009.07.06 -
NOD32 4221 2009.07.06 -
Norman 6.01.09 2009.07.06 -
nProtect 2009.1.8.0 2009.07.07 -
Panda 10.0.0.14 2009.07.06 Suspicious file
PCTools 4.4.2.0 2009.07.06 -
Prevx 3.0 2009.07.07 -
Rising 21.37.10.00 2009.07.07 -
Sophos 4.43.0 2009.07.07 -
Sunbelt 3.2.1858.2 2009.07.07 -
Symantec 1.4.4.12 2009.07.07 -
TheHacker 6.3.4.3.364 2009.07.06 -
TrendMicro 8.950.0.1094 2009.07.06 -
VBA32 3.12.10.7 2009.07.07 Trojan-Downloader.Win32.Banload.adot
ViRobot 2009.7.6.1820 2009.07.06 -
VirusBuster 4.6.5.0 2009.07.06 -
Additional information
File size: 214528 bytes
MD5   : 4939499c2a3aaabc3ad63aaabb1172f2
SHA1  : 2912bf3e1b7264f94dc729ccd1ba65605b6ecc85
SHA256: a229d5cb3ff7606de3f93cc23ca94c712a85d970647ba2532722afd63e1023cf
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x900D0
timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992)
machinetype.......: 0x14C (Intel I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
UPX0 0x1000 0x63000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
UPX1 0x64000 0x2D000 0x2CE00 8.00 c42b5eab96247590f6dac873252b861a
.rsrc 0x91000 0x8000 0x7400 4.89 931ddf28da485e36a780c4f942df061d

( 9 imports )

> advapi32.dll: RegFlushKey
> comctl32.dll: ImageList_Add
> gdi32.dll: SaveDC
> kernel32.dll: LoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess
> ole32.dll: CoCreateGuid
> oleaut32.dll: VariantCopy
> user32.dll: GetDC
> version.dll: VerQueryValueA
> wininet.dll: InternetCheckConnectionA

( 0 exports )
TrID  : File type identification
UPX compressed Win32 Executable (38.5%)
Win32 EXE Yoda's Crypter (33.4%)
Win32 Executable Generic (10.7%)
Win32 Dynamic Link Library (generic) (9.5%)
Win16/32 Executable Delphi generic (2.6%)
ssdeep: 6144:XXQjrT/zlqLufIrFiy+gvNDKoSK2iphVRZKYKn:XgjrTLlIBggFWoSXiphVRZKYKn
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=E71CD15700D095A146F403E03C39C60040F55AD1
PEiD  : -
packers (Kaspersky): UPX
packers (F-Prot): UPX_LZMA
RDS   : NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file