|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.0.0.101 | 2009.04.04 | Trojan-Dropper!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.04.03 | - |
| AntiVir | 7.9.0.129 | 2009.04.03 | TR/Dropper.Gen |
| Antiy-AVL | 2.0.3.1 | 2009.04.03 | - |
| Authentium | 5.1.2.4 | 2009.04.04 | - |
| Avast | 4.8.1335.0 | 2009.04.03 | - |
| AVG | 8.5.0.285 | 2009.04.03 | SHeur2.ZFF |
| BitDefender | 7.2 | 2009.04.04 | - |
| CAT-QuickHeal | 10.00 | 2009.04.03 | - |
| ClamAV | 0.94.1 | 2009.04.03 | - |
| Comodo | 1097 | 2009.04.03 | - |
| DrWeb | 4.44.0.09170 | 2009.04.04 | Trojan.Packed.140 |
| eSafe | 7.0.17.0 | 2009.04.02 | - |
| eTrust-Vet | 31.6.6435 | 2009.04.03 | - |
| F-Prot | 4.4.4.56 | 2009.04.03 | - |
| F-Secure | 8.0.14470.0 | 2009.04.03 | - |
| Fortinet | 3.117.0.0 | 2009.04.03 | - |
| GData | 19 | 2009.04.04 | - |
| Ikarus | T3.1.1.49.0 | 2009.04.04 | Trojan-Dropper |
| K7AntiVirus | 7.10.692 | 2009.04.03 | - |
| Kaspersky | 7.0.0.125 | 2009.04.04 | - |
| McAfee | 5573 | 2009.04.03 | - |
| McAfee+Artemis | 5573 | 2009.04.03 | Generic!Artemis |
| McAfee-GW-Edition | 6.7.6 | 2009.04.03 | Trojan.Dropper.Gen |
| Microsoft | 1.4502 | 2009.04.03 | - |
| NOD32 | 3986 | 2009.04.03 | - |
| Norman | 6.00.06 | 2009.04.03 | - |
| nProtect | 2009.1.8.0 | 2009.04.03 | - |
| Panda | 10.0.0.14 | 2009.04.03 | Suspicious file |
| Prevx1 | V2 | 2009.04.04 | High Risk Fraudulent Security Program |
| Rising | 21.23.41.00 | 2009.04.03 | - |
| Sophos | 4.40.0 | 2009.04.04 | Mal/Generic-A |
| Sunbelt | 3.2.1858.2 | 2009.04.04 | - |
| Symantec | 1.4.4.12 | 2009.04.04 | - |
| TheHacker | 6.3.4.0.301 | 2009.04.03 | - |
| TrendMicro | 8.700.0.1004 | 2009.04.03 | - |
| VBA32 | 3.12.10.2 | 2009.04.03 | Malware-Cryptor.Win32.Xla.a |
| ViRobot | 2009.4.3.1676 | 2009.04.03 | - |
| VirusBuster | 4.6.5.0 | 2009.04.03 | - |
| Additional information |
|---|
| File size: 354320 bytes |
| MD5...: 903215b664e5cc24361fa1a4c9d9691a |
| SHA1..: 27aafc0f00a262c1c99ff33c0857f78dcff14be1 |
| SHA256: 4fc65733e5e9329d6d5ade47847ba3f07a90f81c51fd3ff63dfd2e25101608d8 |
| SHA512: ca8197d07daa12fa24ae5b56d5c0605e97a7adfd0251e9b7556dbf6509463f44 67f7a7158d50c3ba67b16ee9e4f86d92b4f03464a30139acabf0138bc857ebbb |
| ssdeep: 6144:OV90+JCwup5kDJbosyZYqoR7JhQCutCnrY3iBVt75vTcohRXjG9T7Jg:c0w CPpqNbosymdNxoiBVtdT/mxg |
| PEiD..: - |
| TrID..: File type identification Win32 Executable Generic (68.0%) Generic Win/DOS Executable (15.9%) DOS Executable Generic (15.9%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x74c8 timedatestamp.....: 0x49d5026b (Thu Apr 02 18:22:35 2009) machinetype.......: 0x14c (I386) ( 3 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x1ceba 0x14000 8.00 70f94a6363eb502ee4a381e07c32e29a .rdata 0x1e000 0x49a30 0x3e400 8.00 c06f0b1cf4ab162e617c8d7425c69af8 .data 0x68000 0x8e1c 0x4000 7.76 9c13a88587122d5abfdf6dba759490cb ( 3 imports ) > GDI32.DLL: GetBkColor, GetBrushOrgEx, GetCharWidthW, GetClipBox, GdiFlush, GetDeviceCaps, GetFontData, GetMapMode, GetMiterLimit, GetPixel, CreateCompatibleDC, CreatePalette, EqualRgn, EndDoc, Escape, FillPath, FillRgn, GetRelAbs, SetBkColor, GetTextFaceW > USER32.DLL: CascadeWindows, CheckRadioButton, CreateWindowExW, ActivateKeyboardLayout, DefWindowProcW, DestroyIcon, DlgDirListW, DrawEdge, DrawIconEx, EndMenu, GetKeyNameTextW, GetMessageW, GetMessageTime, GetPropW, GetScrollRange, UnhookWinEvent, VkKeyScanExW, ToAsciiEx, SetWindowLongW, SetTimer > KERNEL32.DLL: GlobalGetAtomNameW, GlobalLock, InitAtomTable, IsBadCodePtr, IsValidLocale, ReadFile, SetConsoleCP, GetModuleHandleW, VirtualProtect, GetPriorityClass, GetThreadLocale, GetTickCount, GetUserDefaultLangID, GlobalAlloc, ExitProcess, SetConsoleMode, GetStdHandle, GetProcessVersion ( 0 exports ) |
| RDS...: NSRL Reference Data Set - |
| Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=B28D7AB2102439D3684A05C301159400B2D5D9C2 |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.