Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File xscnmtwabwkw.dll received on 2009.02.01 20:00:02 (UTC)
Current status: finished
Result: 2/39 (5.13%)
Antivirus Version Last Update Result
a-squared 4.0.0.93 2009.02.01 -
AhnLab-V3 5.0.0.2 2009.01.31 -
AntiVir 7.9.0.60 2009.01.30 -
Authentium 5.1.0.4 2009.02.01 -
Avast 4.8.1281.0 2009.02.01 -
AVG 8.0.0.229 2009.01.31 Adload_r.HG
BitDefender 7.2 2009.02.01 -
CAT-QuickHeal 10.00 2009.01.31 -
ClamAV 0.94.1 2009.02.01 -
Comodo 957 2009.02.01 -
DrWeb 4.44.0.09170 2009.02.01 -
eSafe 7.0.17.0 2009.02.01 -
eTrust-Vet 31.6.6335 2009.01.29 -
F-Prot 4.4.4.56 2009.02.01 -
F-Secure 8.0.14470.0 2009.02.01 -
Fortinet 3.117.0.0 2009.02.01 -
GData 19 2009.02.01 -
Ikarus T3.1.1.45.0 2009.02.01 -
K7AntiVirus 7.10.612 2009.01.31 -
Kaspersky 7.0.0.125 2009.02.01 -
McAfee 5512 2009.01.31 -
McAfee+Artemis 5513 2009.02.01 -
Microsoft 1.4306 2009.02.01 -
NOD32 3816 2009.02.01 -
Norman 6.00.02 2009.01.31 -
nProtect 2009.1.8.0 2009.01.30 -
Panda 9.5.1.2 2009.02.01 -
PCTools 4.4.2.0 2009.02.01 -
Prevx1 V2 2009.02.01 Malicious Software
Rising 21.14.61.00 2009.02.01 -
SecureWeb-Gateway 6.7.6 2009.01.30 -
Sophos 4.38.0 2009.02.01 -
Sunbelt 3.2.1835.2 2009.01.16 -
Symantec 10 2009.02.01 -
TheHacker 6.3.1.5.243 2009.02.01 -
TrendMicro 8.700.0.1004 2009.01.30 -
VBA32 3.12.8.12 2009.02.01 -
ViRobot 2009.1.31.1583 2009.01.31 -
VirusBuster 4.5.11.0 2009.02.01 -
Additional information
File size: 304128 bytes
MD5...: d0b80f45ea08cc903264a69b7afaeb57
SHA1..: 5ed2bcfca4c9f61fbcd876fe59396b6e11eccb80
SHA256: db180159ef1d7ae17fa1dd2b85f691afde6fc67b504c89a05cbc61d142fc1f61
SHA512: 5bb82384e6e6db8905e80e81b4a784f6f2cf83c6f0bc998d6b2f6a36c234ce87
f9d1be7caa3ead0379cddd7933f8c487be3fcf9a3e77cf3e50be4f6789b109b0
ssdeep: 6144:DEUR9aU6DLeO1a7oz0zQ4ZRMf9zVltC8EYE/7mO:P9TOLv1a760k6KVltC8
EYSm
PEiD..: -
TrID..: File type identification
Win64 Executable Generic (59.6%)
Win32 Executable MS Visual C++ (generic) (26.2%)
Win32 Executable Generic (5.9%)
Win32 Dynamic Link Library (generic) (5.2%)
Generic Win/DOS Executable (1.3%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x280f1
timedatestamp.....: 0x497a74f4 (Sat Jan 24 01:55:00 2009)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x39be2 0x39c00 6.71 b3c909563623d146ec0274ee3ef72105
.rdata 0x3b000 0x7635 0x7800 4.77 63cc6a9d6d5d92f1300bb5084692f686
.data 0x43000 0x3d7c 0x1600 3.71 17b11715e9ccf75b1c097e8905134b69
.rsrc 0x47000 0x34c 0x400 4.71 3acc9535cab258914f986412a6a5c621
.reloc 0x48000 0x714c 0x7200 4.70 b5fd086990c058e1e80595ce4996f955

( 6 imports )
> SHLWAPI.dll: StrCmpIW, SHDeleteKeyW, UrlEscapeW, PathStripPathW, StrStrIW
> KERNEL32.dll: LoadLibraryA, CloseHandle, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, GetSystemTime, CreateEventW, ExitThread, WideCharToMultiByte, MultiByteToWideChar, FreeLibrary, WriteConsoleW, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, LCMapStringW, GetProcAddress, GetStringTypeW, GetStringTypeA, GetLocaleInfoA, GetConsoleMode, GetConsoleCP, SetFilePointer, InitializeCriticalSectionAndSpinCount, IsValidCodePage, GetOEMCP, GetACP, GetCPInfo, HeapReAlloc, VirtualAlloc, CreateFileA, FlushFileBuffers, LCMapStringA, GetCurrentProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, VirtualFree, HeapDestroy, HeapCreate, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, GetFileType, SetHandleCount, GetModuleFileNameA, GetStdHandle, TerminateProcess, GetModuleHandleA, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, GetCurrentThreadId, GetCommandLineA, RaiseException, RtlUnwind, GetLastError, HeapFree, GetModuleHandleW, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, InterlockedIncrement, SetLastError, InterlockedDecrement, Sleep, HeapSize, ExitProcess, HeapAlloc, WriteFile
> USER32.dll: CharUpperW, CharLowerW, GetClassNameW, CallWindowProcW, GetWindowTextW, RealGetWindowClassW, EnumChildWindows, ClientToScreen, InflateRect, IntersectRect, OffsetRect, SetWindowTextW, SendMessageW, PostMessageW, SetActiveWindow, RemovePropW, GetPropW, SetPropW, DispatchMessageW, TranslateMessage, PeekMessageW, MsgWaitForMultipleObjects, GetWindowThreadProcessId, SetWindowLongW
> ADVAPI32.dll: RegSetValueExW, RegQueryValueExW, RegCloseKey, RegCreateKeyW, SetSecurityInfo
> ole32.dll: CoCreateInstance, CoTaskMemFree, CoUninitialize, CoInitializeEx
> OLEAUT32.dll: -, -, -, -, -, -, -, -, -, -

( 5 exports )
DllAuxEntryPoint, DllCanUnloadNow, DllGetClassObject, DllRegisterServer, DllUnregisterServer
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=9626C6BB00403165A41B0413E9706600E9DED244

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file