|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.5.0.18 | 2009.07.09 | Trojan.Win32.FakeXPA!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.07.09 | - |
| AntiVir | 7.9.0.204 | 2009.07.08 | - |
| Antiy-AVL | 2.0.3.1 | 2009.07.09 | - |
| Authentium | 5.1.2.4 | 2009.07.08 | - |
| Avast | 4.8.1335.0 | 2009.07.08 | - |
| AVG | 8.5.0.386 | 2009.07.09 | - |
| BitDefender | 7.2 | 2009.07.09 | - |
| CAT-QuickHeal | 10.00 | 2009.07.09 | - |
| ClamAV | 0.94.1 | 2009.07.08 | - |
| Comodo | 1588 | 2009.07.09 | - |
| DrWeb | 5.0.0.12182 | 2009.07.09 | - |
| eSafe | 7.0.17.0 | 2009.07.08 | - |
| eTrust-Vet | 31.6.6604 | 2009.07.08 | - |
| F-Prot | 4.4.4.56 | 2009.07.08 | - |
| F-Secure | 8.0.14470.0 | 2009.07.09 | - |
| Fortinet | 3.117.0.0 | 2009.07.03 | - |
| GData | 19 | 2009.07.09 | - |
| Ikarus | T3.1.1.64.0 | 2009.07.09 | Trojan.Win32.FakeXPA |
| Jiangmin | 11.0.706 | 2009.07.08 | - |
| K7AntiVirus | 7.10.787 | 2009.07.08 | - |
| Kaspersky | 7.0.0.125 | 2009.07.09 | - |
| McAfee | 5670 | 2009.07.08 | FakeAlert-DI |
| McAfee+Artemis | 5670 | 2009.07.08 | FakeAlert-DI |
| McAfee-GW-Edition | 6.8.5 | 2009.07.09 | - |
| Microsoft | 1.4803 | 2009.07.08 | Trojan:Win32/FakeXPA |
| NOD32 | 4227 | 2009.07.09 | a variant of Win32/Kryptik.XH |
| Norman | 6.01.09 | 2009.07.08 | - |
| nProtect | 2009.1.8.0 | 2009.07.09 | - |
| Panda | 10.0.0.14 | 2009.07.08 | - |
| PCTools | 4.4.2.0 | 2009.07.08 | - |
| Prevx | 3.0 | 2009.07.09 | - |
| Rising | 21.37.24.00 | 2009.07.08 | - |
| Sophos | 4.43.0 | 2009.07.09 | - |
| Sunbelt | 3.2.1858.2 | 2009.07.09 | - |
| Symantec | 1.4.4.12 | 2009.07.09 | - |
| TheHacker | 6.3.4.3.363 | 2009.07.08 | - |
| TrendMicro | 8.950.0.1094 | 2009.07.09 | - |
| VBA32 | 3.12.10.7 | 2009.07.09 | - |
| ViRobot | 2009.7.9.1825 | 2009.07.09 | - |
| VirusBuster | 4.6.5.0 | 2009.07.08 | - |
| Additional information |
|---|
| File size: 196608 bytes |
| MD5 : a778ceee0fa0161bf77fa318fa3f1a51 |
| SHA1 : a60f8c7c7a2b8a10824684e4abad433c9ca418fe |
| SHA256: c3b4c5d75fa6aa45c6fdb47108e5c7a93f74905552bd8fe5e4cc791eaecb46a9 |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x11887 timedatestamp.....: 0x4596D229 (Sat Dec 30 21:55:05 2006) machinetype.......: 0x14C (Intel I386) ( 8 sections ) name viradd virsiz rawdsiz ntrpy md5 .init 0x1000 0x23095 0x24000 6.61 cfb07fd247a9e5884ea7e9a16dd2df7b DATA 0x25000 0x13FB 0x2000 0.00 0829f71740aab1ab98b33eae21dee122 .reloc 0x27000 0x982 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110 .edata 0x28000 0x2829CF 0x2000 1.27 53ea272e80c4fd62be721ef36da264b4 .bss 0x2AB000 0xDD 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110 .rdata 0x2AC000 0x818 0x1000 0.04 03ffb1fc701ca7bbca3d01b470be2640 .idata 0x2AD000 0x1696 0x2000 1.43 bcf3d4b5b86e7df07a10cf46e0c6a86c .rsrc 0x2AF000 0x19F0 0x2000 5.78 05e6aa7391e6153e19ff6d2b5aefbc60 ( 1 imports ) > kernel32.dll: CreateThread, Sleep, GetStdHandle, GetFileTime, OpenFile, ReadConsoleA, CopyFileExW, DeleteFileA, ReadFile, GetCPInfo, CreateDirectoryA, CopyFileA, GetComputerNameA, GetCommandLineA, DeleteAtom, GlobalFree, WriteFile, FindFirstFileA, DeleteFileW, GlobalFree, FindFirstFileA, GetFileSize, ReadConsoleA, GetCommandLineA, DeleteFileW, GetStdHandle, GetCPInfo, CopyFileA, GetLastError, OpenFileMappingA, ReadConsoleW, GetComputerNameA, CopyFileW, WriteFile, ExitThread, ReadFile, OpenFile, CopyFileA, GetComputerNameA, GetLastError, DeleteFileA, Sleep, GetCommandLineA, CreateProcessA, DeleteFileW, GetFileSize, GetCPInfo, CopyFileExW, GetConsoleMode, WriteFile, CreateDirectoryA, GetLastError, DeleteAtom, GetConsoleMode, ReadFile, GetFileTime, GetCommandLineA, OpenFile, CopyFileW, CreateThread, GetCPInfo, FindAtomA, CopyFileExW, GetStdHandle, OpenFileMappingA, FindFirstFileA, GetComputerNameA ( 0 exports ) |
| TrID : File type identification - |
| ThreatExpert: http://www.threatexpert.com/report.aspx?md5=a778ceee0fa0161bf77fa318fa3f1a51 |
| ssdeep: 3072:gN5+KqwgvtDww4OIIn0BzcbG1CWKlp5CTaJ3u1Mq/f:gcKqzFUCUeGCW2+Tu3uGq |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.