Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File tydytyb.exe received on 2009.10.31 00:44:38 (UTC)
Current status: finished
Result: 3/41 (7.32%)
Antivirus Version Last Update Result
a-squared 4.5.0.41 2009.10.30 -
AhnLab-V3 5.0.0.2 2009.10.30 -
AntiVir 7.9.1.53 2009.10.30 -
Antiy-AVL 2.0.3.7 2009.10.30 -
Authentium 5.1.2.4 2009.10.30 -
Avast 4.8.1351.0 2009.10.30 -
AVG 8.5.0.423 2009.10.30 -
BitDefender 7.2 2009.10.31 -
CAT-QuickHeal 10.00 2009.10.30 -
ClamAV 0.94.1 2009.10.31 -
Comodo 2780 2009.10.30 -
DrWeb 5.0.0.12182 2009.10.30 BACKDOOR.Trojan
eSafe 7.0.17.0 2009.10.29 Suspicious File
eTrust-Vet 35.1.7094 2009.10.30 -
F-Prot 4.5.1.85 2009.10.30 -
F-Secure 9.0.15370.0 2009.10.30 -
Fortinet 3.120.0.0 2009.10.30 -
GData 19 2009.10.31 -
Ikarus T3.1.1.72.0 2009.10.30 -
Jiangmin 11.0.800 2009.10.30 -
K7AntiVirus 7.10.884 2009.10.30 -
Kaspersky 7.0.0.125 2009.10.31 Worm.Win32.AutoRun.bafj
McAfee 5787 2009.10.30 -
McAfee+Artemis 5787 2009.10.30 -
McAfee-GW-Edition 6.8.5 2009.10.31 -
Microsoft 1.5202 2009.10.30 -
NOD32 4559 2009.10.30 -
Norman 6.03.02 2009.10.30 -
nProtect 2009.1.8.0 2009.10.30 -
Panda 10.0.2.2 2009.10.30 -
PCTools 7.0.3.5 2009.10.30 -
Prevx 3.0 2009.10.31 -
Rising 21.53.43.00 2009.10.30 -
Sophos 4.47.0 2009.10.30 -
Sunbelt 3.2.1858.2 2009.10.30 -
Symantec 1.4.4.12 2009.10.31 -
TheHacker 6.5.0.2.056 2009.10.28 -
TrendMicro 8.950.0.1094 2009.10.30 -
VBA32 3.12.10.11 2009.10.30 -
ViRobot 2009.10.30.2013 2009.10.30 -
VirusBuster 4.6.5.0 2009.10.30 -
Additional information
File size: 434176 bytes
MD5   : c6e07c0266ca60bdc5a8f45cfd565337
SHA1  : 86c1c73f99aaa260d785736ce5a69e77ae2cab77
SHA256: b712a2f7f32cc6e2f1e79542a3be6a0cb1018be80eb264dd2e73584c7553db94
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x12B8
timedatestamp.....: 0x49DFD61E (Sat Apr 11 01:28:30 2009)
machinetype.......: 0x14C (Intel I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x372B0 0x38000 5.10 736264d13b2bba31d09ed1e4469412a8
.data 0x39000 0x1D0C 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rsrc 0x3B000 0x304F8 0x31000 7.87 48ee41e100ffe0fa13aa8f1a83bcb650

( 1 imports )

> msvbvm60.dll: EVENT_SINK_GetIDsOfNames, -, -, MethCallEngine, EVENT_SINK_Invoke, -, -, -, -, -, Zombie_GetTypeInfo, -, -, -, -, -, -, -, -, -, -, -, -, EVENT_SINK_AddRef, -, -, -, -, DllFunctionCall, -, Zombie_GetTypeInfoCount, EVENT_SINK_Release, -, -, -, EVENT_SINK_QueryInterface, __vbaExceptHandler, -, -, -, -, -, -, -, -, -, -, ProcCallEngine, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -

( 0 exports )
TrID  : File type identification
Win32 Executable Microsoft Visual Basic 6 (64.4%)
UPX compressed Win32 Executable (15.6%)
Win32 EXE Yoda's Crypter (13.5%)
Win32 Executable Generic (4.3%)
Generic Win/DOS Executable (1.0%)
ssdeep: 6144:ztGggosj9TSgGIfjFQ4OP28ovtdbJ4PMnh:ztt2SgR0uFbJ4P
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=76AA57FF0016DB81A09C06D3C42C6300AD8DE4F1
PEiD  : -
packers (F-Prot): UPX
RDS   : NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file