Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File Adobe_Player11.exe received on 2009.03.15 20:20:56 (UTC)
Current status: finished
Result: 14/39 (35.90%)
Antivirus Version Last Update Result
a-squared 4.0.0.101 2009.03.15 Trojan-PWS.Win32.Papras!IK
AhnLab-V3 5.0.0.2 2009.03.15 -
AntiVir 7.9.0.114 2009.03.15 TR/PSW.Papras.JG
Authentium 5.1.0.4 2009.03.15 -
Avast 4.8.1335.0 2009.03.15 -
AVG 8.0.0.237 2009.03.15 SHeur2.VZA
BitDefender 7.2 2009.03.15 -
CAT-QuickHeal 10.00 2009.03.14 -
ClamAV 0.94.1 2009.03.15 -
Comodo 1057 2009.03.15 -
DrWeb 4.44.0.09170 2009.03.15 -
eSafe 7.0.17.0 2009.03.15 Suspicious File
eTrust-Vet 31.6.6388 2009.03.09 -
F-Prot 4.4.4.56 2009.03.15 -
F-Secure 8.0.14470.0 2009.03.15 Trojan-PSW:W32/Papras.DL
Fortinet 3.117.0.0 2009.03.15 W32/Papras.JG!tr.pws
GData 19 2009.03.15 -
Ikarus T3.1.1.45.0 2009.03.15 Trojan-PWS.Win32.Papras
K7AntiVirus 7.10.671 2009.03.14 -
Kaspersky 7.0.0.125 2009.03.15 Trojan-PSW.Win32.Papras.jg
McAfee 5554 2009.03.15 -
McAfee+Artemis 5554 2009.03.15 -
McAfee-GW-Edition 6.7.6 2009.03.15 Trojan.PSW.Papras.JG
Microsoft 1.4405 2009.03.15 TrojanSpy:Win32/Ursnif.B
NOD32 3937 2009.03.15 -
Norman 6.00.06 2009.03.13 -
nProtect 2009.1.8.0 2009.03.15 -
Panda 10.0.0.10 2009.03.15 -
PCTools 4.4.2.0 2009.03.15 -
Prevx1 V2 2009.03.15 Medium Risk Malware
Rising 21.20.62.00 2009.03.15 -
Sophos 4.39.0 2009.03.15 Mal/EncPk-HJ
Sunbelt 3.2.1858.2 2009.03.15 -
Symantec 1.4.4.12 2009.03.15 Infostealer
TheHacker 6.3.3.0.282 2009.03.15 -
TrendMicro 8.700.0.1004 2009.03.13 -
VBA32 3.12.10.1 2009.03.15 suspected of Malware-Cryptor.Win32.General.3
ViRobot 2009.3.13.1648 2009.03.13 -
VirusBuster 4.6.5.0 2009.03.15 -
Additional information
File size: 35840 bytes
MD5...: 803ab2de5e6c00c86f76ea2b60a5ee4f
SHA1..: d7c4b5cbc239932176b72652351c15848e6d9b34
SHA256: 18f82b5a4387707b11d9c003a26fd3777e37ee54b223c06cca3f5733daa00587
SHA512: 8eb69f74d24858e26c2d4a4600b5d0bdac029ceb75c9a66c8e5712f441a33c09
296504a74d59b742b1c8beb675cab59c089784cf55aad4a5bd564f97fda5e36c
ssdeep: 768:bImz1hc4ANSJkpEqF9sLXpi2GRa6UQm7bEem2IBv:bBz1hc4ANSJkp1F9spi
2GRq74evQ
PEiD..: -
TrID..: File type identification
Win64 Executable Generic (80.9%)
Win32 Executable Generic (8.0%)
Win32 Dynamic Link Library (generic) (7.1%)
Generic Win/DOS Executable (1.8%)
DOS Executable Generic (1.8%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x7491
timedatestamp.....: 0x47d08184 (Thu Mar 06 23:43:00 2008)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x71bc 0x7200 7.91 1f69a77888d2fc71829c684011fd749d
.rdata 0x9000 0x90c 0xa00 4.90 46bb9a0ca3bf9c91c2d2a3c6cc0c7f4c
.data 0xa000 0xf778 0x800 5.67 76807863d32ee91752a16b344a272c70
.rsrc 0x1a000 0x3c0 0x400 3.24 53aba6c8e7a3af666be80e442a8744c5

( 5 imports )
> ole32.dll: CoTaskMemFree, OleCreateLinkFromData, OleCreateFromFileEx, CoAddRefServerProcess, OleQueryCreateFromData, OleNoteObjectVisible, CoDisconnectObject, CoTaskMemRealloc, OleCreate, CoTreatAsClass, OleRegEnumFormatEtc
> ADVAPI32.dll: RegQueryValueExW, CreateProcessAsUserW, OpenSCManagerW, LookupPrivilegeValueW, EqualSid, RegOpenKeyW, OpenProcessToken, CloseServiceHandle, SetSecurityInfo, CopySid
> GDI32.dll: StartDocW, GetObjectW, MoveToEx, DeleteObject, SetTextAlign, GetTextMetricsW, CreateCompatibleDC, CreateRectRgnIndirect, SetBkColor
> KERNEL32.dll: GetTickCount, InterlockedCompareExchange, QueryPerformanceCounter, IsDebuggerPresent, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, Sleep, InterlockedExchange, GetCommState, FindNextVolumeMountPointA
> ulib.dll: _Initialize@LONG_ARGUMENT@@QAEEPAD@Z, _CheckSpace@WSTRING@@CGHPAG@Z, _Strupr@WSTRING@@QAEPAV1@XZ, _RemoveNode@SYSTEM@@SGEPAPAVFSNODE@@E@Z, _Acquire@HMEM@@UAEPAXKK@Z, _IsEmpty@FSN_DIRECTORY@@QBEEXZ, _Acquire@CONT_MEM@@UAEPAXKK@Z, _Initialize@MEM_ALLOCATOR@@QAEE_KK@Z, _DisableBreakHandling@KEYBOARD@@SGEXZ

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=C8CDEAB800F2F2438C9800B72DCBC4006572000C
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=803ab2de5e6c00c86f76ea2b60a5ee4f

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file