Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File scan.exe received on 2008.08.30 12:22:40 (UTC)
Current status: finished
Result: 18/36 (50.00%)
Antivirus Version Last Update Result
AhnLab-V3 2008.8.29.0 2008.08.29 -
AntiVir 7.8.1.23 2008.08.29 BDS/Frauder.bu
Authentium 5.1.0.4 2008.08.30 -
Avast 4.8.1195.0 2008.08.30 Win32:Tibs-EJA
AVG 8.0.0.161 2008.08.29 Downloader.FraudLoad.N
BitDefender 7.2 2008.08.30 Trojan.FakeAlert.ACR
CAT-QuickHeal 9.50 2008.08.29 (Suspicious) - DNAScan
ClamAV 0.93.1 2008.08.30 -
DrWeb 4.44.0.09170 2008.08.30 Trojan.Packed.619
eSafe 7.0.17.0 2008.08.28 Suspicious File
eTrust-Vet 31.6.6057 2008.08.29 Win32/BugnrawCryptorB!generic
Ewido 4.0 2008.08.30 -
F-Prot 4.4.4.56 2008.08.29 -
F-Secure 7.60.13501.0 2008.08.30 Backdoor.Win32.Frauder.bu
Fortinet 3.14.0.0 2008.08.30 W32/PackMal.A!tr
GData 19 2008.08.30 Backdoor.Win32.Frauder.bu
Ikarus T3.1.1.34.0 2008.08.30 -
K7AntiVirus 7.10.432 2008.08.29 -
Kaspersky 7.0.0.125 2008.08.30 Backdoor.Win32.Frauder.bu
McAfee 5373 2008.08.29 Downloader-ASH.gen.b
Microsoft 1.3807 2008.08.25 -
NOD32v2 3401 2008.08.30 a variant of Win32/Kryptik.E
Norman 5.80.02 2008.08.29 W32/Tibs.gen225
Panda 9.0.0.4 2008.08.30 -
PCTools 4.4.2.0 2008.08.29 -
Prevx1 V2 2008.08.30 -
Rising 20.59.51.00 2008.08.30 -
Sophos 4.33.0 2008.08.30 Mal/EncPk-EU
Sunbelt 3.1.1592.1 2008.08.30 -
Symantec 10 2008.08.30 Trojan.Blusod
TheHacker 6.3.0.6.068 2008.08.30 -
TrendMicro 8.700.0.1004 2008.08.29 -
VBA32 3.12.8.4 2008.08.30 -
ViRobot 2008.8.30.1357 2008.08.30 -
VirusBuster 4.5.11.0 2008.08.29 -
Webwasher-Gateway 6.6.2 2008.08.29 Trojan.Backdoor.Frauder.bu
Additional information
File size: 203776 bytes
MD5...: aca8b3bf12af0b652af5997db629bdc5
SHA1..: 6c456f26404c660baa255e669b72efc10daaf0c4
SHA256: db371fd95147e702d7a512e9ad699c477c82c3764c9b96ac8c3d8dd4e3736b8c
SHA512: fe98e7b731c121afb92eb4c7f975e7fd53c8099f4f2807990cf5ec82f2d1545a
5860bfbd52b5a9d69b55a1fa5ded23b3a6a4c827b92065a0fcc250918d35d0b9
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (38.4%)
Win32 Dynamic Link Library (generic) (34.2%)
Clipper DOS Executable (9.1%)
Generic Win/DOS Executable (9.0%)
DOS Executable Generic (9.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x401a9d
timedatestamp.....: 0x48a5befd (Fri Aug 15 17:38:05 2008)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xeb07 0x9800 8.00 f9efe91d6126625b22be3bf66d311870
.rdata 0x10000 0x3fe0 0x1a00 7.97 ab365b5cbb10039e9e8a64443a82133a
.data 0x14000 0xb679e 0x23600 8.00 01431e12685e9355c860bea1f7cfc520
.rsrc 0xcb000 0xf000 0x3000 6.60 b77802a38f5f85c72abe4ebe0882c6db

( 4 imports )
> wsock32.dll: bind, WSAStartup, listen
> kernel32.dll: CreatePipe, TerminateProcess, VirtualProtect
> gdi32.dll: SetRelAbs, StretchBlt, SetICMMode, ResetDCW, UpdateColors, SaveDC, TextOutW, SetDIBColorTable
> shell32.dll: SHAppBarMessage, StrRChrIA, StrStrIA

( 0 exports )

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file