Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File knlwrap.exe received on 2008.07.25 16:46:00 (UTC)
Current status: finished
Result: 0/35 (0.00%)
Antivirus Version Last Update Result
AhnLab-V3 2008.7.26.0 2008.07.25 -
AntiVir 7.8.1.12 2008.07.25 -
Authentium 5.1.0.4 2008.07.25 -
Avast 4.8.1195.0 2008.07.25 -
AVG 8.0.0.130 2008.07.25 -
BitDefender 7.2 2008.07.25 -
CAT-QuickHeal 9.50 2008.07.25 -
ClamAV 0.93.1 2008.07.25 -
DrWeb 4.44.0.09170 2008.07.25 -
eSafe 7.0.17.0 2008.07.24 -
eTrust-Vet 31.6.5981 2008.07.25 -
Ewido 4.0 2008.07.25 -
F-Prot 4.4.4.56 2008.07.24 -
F-Secure 7.60.13501.0 2008.07.25 -
Fortinet 3.14.0.0 2008.07.25 -
GData 2.0.7306.1023 2008.07.25 -
Ikarus T3.1.1.34.0 2008.07.25 -
Kaspersky 7.0.0.125 2008.07.25 -
McAfee 5347 2008.07.25 -
Microsoft 1.3704 2008.07.25 -
NOD32v2 3299 2008.07.25 -
Norman 5.80.02 2008.07.24 -
Panda 9.0.0.4 2008.07.25 -
PCTools 4.4.2.0 2008.07.25 -
Prevx1 V2 2008.07.25 -
Rising 20.54.42.00 2008.07.25 -
Sophos 4.31.0 2008.07.25 -
Sunbelt 3.1.1536.1 2008.07.18 -
Symantec 10 2008.07.25 -
TheHacker 6.2.96.389 2008.07.25 -
TrendMicro 8.700.0.1004 2008.07.25 -
VBA32 3.12.8.1 2008.07.25 -
ViRobot 2008.7.25.1310 2008.07.25 -
VirusBuster 4.5.11.0 2008.07.25 -
Webwasher-Gateway 6.6.2 2008.07.25 -
Additional information
File size: 126976 bytes
MD5...: 48befc3e2b36de65a415977b1288c0d7
SHA1..: 8bb9c177e08aec0f011b2e7f903922a2f008cc60
SHA256: f0368857aa97124f87d14113f381f6ca5382f43d89e2b5d43ea06e49ce378155
SHA512: a706604fceb11c69df9e027daf96affa67bc92f4cf9ac9fec27a13d95efb2abe
f9cae15a454813b9b1c51e43ea952583c71b9517df3fd328a8270d500ebac7a5
PEiD..: Armadillo v1.71
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x40fabc
timedatestamp.....: 0x39d8af70 (Mon Oct 02 15:53:20 2000)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x15776 0x16000 5.99 57999374b8342a004afc37f328ef835d
.rdata 0x17000 0x2e3a 0x3000 5.40 4ae8aa2059cd2b0bd9c402d8a39c33b8
.data 0x1a000 0x4988 0x4000 1.15 b2836bfbfa367f1f12f7b7546a811681
.rsrc 0x1f000 0xe48 0x1000 3.73 7cce7ea7b15bcdb6581c75b29c34bea3

( 5 imports )
> KERNEL32.dll: GetPrivateProfileIntA, Sleep, InterlockedIncrement, LeaveCriticalSection, DebugBreak, EnterCriticalSection, InterlockedDecrement, WideCharToMultiByte, lstrlenW, OutputDebugStringA, WaitForSingleObject, CloseHandle, MultiByteToWideChar, SetEvent, lstrcmpiA, GetCurrentThreadId, GetCommandLineA, HeapDestroy, InitializeCriticalSection, DeleteCriticalSection, GetShortPathNameA, GetModuleHandleA, GetModuleFileNameA, lstrcpyA, lstrcatA, GetPrivateProfileStringA, lstrlenA, GetTickCount, LoadLibraryA, GetProcAddress, CreateEventA, CreateThread, FreeLibrary, RaiseException, HeapReAlloc, HeapAlloc, SetStdHandle, FlushFileBuffers, ReadFile, LCMapStringW, LCMapStringA, GetOEMCP, GetACP, GetCPInfo, GetStringTypeW, GetStringTypeA, IsBadCodePtr, IsBadReadPtr, SetUnhandledExceptionFilter, WriteFile, GetFileType, GetStdHandle, SetHandleCount, GetEnvironmentStrings, FreeEnvironmentStringsW, FreeEnvironmentStringsA, GetStartupInfoA, SetFilePointer, GetVersion, ExitProcess, GetEnvironmentVariableA, GetVersionExA, VirtualAlloc, VirtualFree, GetLastError, LocalFree, InterlockedExchange, RtlUnwind, TlsSetValue, ExitThread, HeapCreate, GetCurrentProcess, HeapFree, HeapSize, TlsAlloc, IsBadWritePtr, GetEnvironmentStringsW, TerminateProcess, TlsGetValue, SetLastError, UnhandledExceptionFilter
> USER32.dll: DispatchMessageA, UnhookWindowsHookEx, SetParent, GetWindow, PostThreadMessageA, SetWindowsHookExA, SetWindowRgn, ShowWindow, KillTimer, LoadStringA, CharNextA, PeekMessageA, MsgWaitForMultipleObjects, TranslateMessage, wsprintfA, CreateWindowExA, SetTimer, GetMessageA, InvalidateRect, FindWindowA, FindWindowExA, IsWindowVisible, DestroyWindow
> ADVAPI32.dll: RegCloseKey, RegQueryValueExA, RegOpenKeyExA, RegSetValueExA, RegCreateKeyExA, RegDeleteKeyA, RegEnumKeyExA
> ole32.dll: CoInitialize, CoRegisterClassObject, StringFromCLSID, CoTaskMemFree, CoMarshalInterThreadInterfaceInStream, CoGetInterfaceAndReleaseStream, CoUninitialize, GetRunningObjectTable, CLSIDFromString, CoCreateInstance, CoRevokeClassObject
> OLEAUT32.dll: -, -, -, -, -, -, -

( 0 exports )
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=48befc3e2b36de65a415977b1288c0d7

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file