Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File installer.exe received on 2008.08.19 16:53:06 (UTC)
Current status: finished
Result: 18/36 (50.00%)
Antivirus Version Last Update Result
AhnLab-V3 2008.8.19.0 2008.08.19 -
AntiVir 7.8.1.23 2008.08.19 TR/Crypt.XPACK.Gen
Authentium 5.1.0.4 2008.08.19 -
Avast 4.8.1195.0 2008.08.19 -
AVG 8.0.0.161 2008.08.19 I-Worm/Nuwar.W
BitDefender 7.2 2008.08.19 Trojan.Peed.JRU
CAT-QuickHeal 9.50 2008.08.18 (Suspicious) - DNAScan
ClamAV 0.93.1 2008.08.19 -
DrWeb 4.44.0.09170 2008.08.19 Trojan.Packed.606
eSafe 7.0.17.0 2008.08.19 Suspicious File
eTrust-Vet 31.6.6036 2008.08.19 -
Ewido 4.0 2008.08.19 -
F-Prot 4.4.4.56 2008.08.18 -
F-Secure 7.60.13501.0 2008.08.19 Trojan-Downloader.Win32.Exchanger.oz
Fortinet 3.14.0.0 2008.08.19 PossibleThreat
GData 2.0.7306.1023 2008.08.19 Trojan-Downloader.Win32.Exchanger.oz
Ikarus T3.1.1.34.0 2008.08.19 Trojan-Dropper.Win32.Nuwar.ldt
K7AntiVirus 7.10.421 2008.08.19 -
Kaspersky 7.0.0.125 2008.08.19 Trojan-Downloader.Win32.Exchanger.oz
McAfee 5364 2008.08.19 -
Microsoft 1.3807 2008.08.19 TrojanDownloader:Win32/Cbeplay.gen!E
NOD32v2 3368 2008.08.19 a variant of Win32/Agent.ETH
Norman 5.80.02 2008.08.19 -
Panda 9.0.0.4 2008.08.19 -
PCTools 4.4.2.0 2008.08.19 -
Prevx1 V2 2008.08.19 Malicious Software
Rising 20.58.12.00 2008.08.19 -
Sophos 4.32.0 2008.08.19 Mal/EncPk-DA
Sunbelt 3.1.1546.1 2008.08.15 -
Symantec 10 2008.08.19 Trojan.Erotpics
TheHacker 6.3.0.5.054 2008.08.19 -
TrendMicro 8.700.0.1004 2008.08.19 -
VBA32 3.12.8.3 2008.08.19 -
ViRobot 2008.8.19.1341 2008.08.19 -
VirusBuster 4.5.11.0 2008.08.19 Trojan.DL.Exchanger.DA
Webwasher-Gateway 6.6.2 2008.08.19 Trojan.Crypt.XPACK.Gen
Additional information
File size: 74752 bytes
MD5...: 10105674cc0b639b313a3db9e18d9444
SHA1..: 436848261cbbc6c265b30ed8107ef17743f39ecd
SHA256: 38e6b08f83dad2162e74ea56d0bf5a92a5756e40dc5994f21ada916f02e6a033
SHA512: 963809e3a7b4341d232774b01b9306043db34b6acaa508778dd0fc70537f4df0
7089f3a729a37716c03a97fc257d0a5684002d0472c65984b839299653421b17
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x408b53
timedatestamp.....: 0x48907860 (Wed Jul 30 14:19:12 2008)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xde3f 0xc200 8.00 5faf273a7ff350443b5ccc6dd10f35bc
.rdata 0xf000 0x35e4 0x2200 7.98 488515da210de6da51529b13f08076b5
.data 0x13000 0x8000 0x3000 4.05 5bdfa34e28a5235425b32e5d77ba6a5e

( 4 imports )
> ADVAPI32.DLL: UnlockServiceDatabase, RevertToSelf, LsaOpenSecret, RegUnLoadKeyW, LsaClose
> MSVCRT.DLL: strlen, iswcntrl, strcmp
> USER32.DLL: GetScrollPos, LoadKeyboardLayoutW, GetForegroundWindow, GetMenuStringW, SetDoubleClickTime, SendInput
> WININET.DLL: ShowCertificate, InternetDialW, InternetGetCookieW, InternetSetCookieW, UrlZonesDetach

( 0 exports )
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=10105674cc0b639b313a3db9e18d9444
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=C4EDC245007C5D2F24BF01AC067D5500BF526964

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file