Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File 3xNt0f6b9e3R.exe received on 2009.05.21 13:00:54 (UTC)
Current status: finished
Result: 6/40 (15.00%)
Antivirus Version Last Update Result
a-squared 4.0.0.101 2009.05.21 -
AhnLab-V3 5.0.0.2 2009.05.21 -
AntiVir 7.9.0.168 2009.05.21 -
Antiy-AVL 2.0.3.1 2009.05.21 -
Authentium 5.1.2.4 2009.05.20 -
Avast 4.8.1335.0 2009.05.20 -
AVG 8.5.0.339 2009.05.21 -
BitDefender 7.2 2009.05.21 -
CAT-QuickHeal 10.00 2009.05.21 (Suspicious) - DNAScan
ClamAV 0.94.1 2009.05.21 -
Comodo 1157 2009.05.08 -
DrWeb 5.0.0.12182 2009.05.21 -
eSafe 7.0.17.0 2009.05.19 -
eTrust-Vet 31.6.6516 2009.05.21 -
F-Prot 4.4.4.56 2009.05.20 -
F-Secure 8.0.14470.0 2009.05.21 -
Fortinet 3.117.0.0 2009.05.21 -
GData 19 2009.05.21 -
Ikarus T3.1.1.49.0 2009.05.21 -
K7AntiVirus 7.10.739 2009.05.19 -
Kaspersky 7.0.0.125 2009.05.21 Heur.Invader
McAfee 5621 2009.05.20 -
McAfee+Artemis 5621 2009.05.20 Artemis!F18B2440D805
McAfee-GW-Edition 6.7.6 2009.05.21 -
Microsoft 1.4701 2009.05.21 -
NOD32 4093 2009.05.21 Win32/Agent.NYF
Norman 6.01.05 2009.05.20 -
nProtect 2009.1.8.0 2009.05.21 -
Panda 10.0.0.14 2009.05.21 -
PCTools 4.4.2.0 2009.05.21 -
Prevx 3.0 2009.05.21 Medium Risk Malware
Rising 21.30.32.00 2009.05.21 -
Sophos 4.42.0 2009.05.21 -
Sunbelt 3.2.1858.2 2009.05.20 -
Symantec 1.4.4.12 2009.05.21 -
TheHacker 6.3.4.1.328 2009.05.20 -
TrendMicro 8.950.0.1092 2009.05.21 PAK_Generic.001
VBA32 3.12.10.5 2009.05.21 -
ViRobot 2009.5.21.1745 2009.05.21 -
VirusBuster 4.6.5.0 2009.05.20 -
Additional information
File size: 12288 bytes
MD5...: f18b2440d8054040461eb3bc4edf4c9d
SHA1..: 5de5d756a1dbe4d74d556d48692c1fa05874db8a
SHA256: ed7481bde971b80f84a15110ef2bc001a84102ec5866b9fd01b8dbea1e455f28
SHA512: f4057f3180f8b843e3a60bcb3fb6038e4e37bd9ee666eb12166941a6e21ce179
e3df7b583ee6885a8405801449c11e23e256c27ac7fdf1a69d42a2a4810450fd
ssdeep: 192:uSgFhBg1dPwOPSFF4y/XJPjNOQ8XcY81oXbqUVE7B+ll0ZXzRDx:uSurg15w
Oqf4mJLYQ8Xr81oLQ7sID
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (42.3%)
Win32 Dynamic Link Library (generic) (37.6%)
Generic Win/DOS Executable (9.9%)
DOS Executable Generic (9.9%)
VXD Driver (0.1%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x118d
timedatestamp.....: 0x4a13ed88 (Wed May 20 11:46:16 2009)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x10a6 0x1200 6.00 336db100f2bf8b0db55bcbbb564b6170
.rdata 0x3000 0x3a8 0x400 4.55 219593173ec6db0fae5bfd4b3df02fd2
.data 0x4000 0x163c 0x1800 7.36 f9ff64b778450c39f54876ce41ea0b9a

( 3 imports )
> kernel32.dll: GetFileTime, GetModuleFileNameA, GetModuleHandleA, GetProcAddress, GetThreadContext, GetVersionExA, LoadLibraryExA, MoveFileExA, OpenProcess, OpenThread, ResumeThread, GetCurrentProcess, SetPriorityClass, Sleep, SuspendThread, VirtualAlloc, VirtualAllocEx, VirtualFree, WriteProcessMemory, _lopen, lstrcatA, lstrcmpiA, FreeLibrary, ExitProcess, SetFileTime, CloseHandle
> user32.dll: GetClassNameA, EnumWindows, GetWindowThreadProcessId
> advapi32.dll: LookupPrivilegeValueA, OpenProcessToken, AdjustTokenPrivileges

( 0 exports )
PDFiD.: -
RDS...: NSRL Reference Data Set
-
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=AD595359006C4272304400616774CC00EBE300EB

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file