Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File PhotoCube.exe received on 2009.03.18 18:59:46 (UTC)
Current status: finished
Result: 31/39 (79.49%)
Antivirus Version Last Update Result
a-squared 4.0.0.101 2009.03.18 Trojan.Win32.Agent2!IK
AhnLab-V3 5.0.0.2 2009.03.18 -
AntiVir 7.9.0.120 2009.03.18 TR/Agent2.dhg.2
Authentium 5.1.2.4 2009.03.18 W32/Trojan2.GBWT
Avast 4.8.1335.0 2009.03.17 Win32:Agent-ADPW
AVG 8.0.0.237 2009.03.18 Dropper.VB.BYE
BitDefender 7.2 2009.03.18 Trojan.Generic.1437766
CAT-QuickHeal 10.00 2009.03.18 Trojan.Agent2.dhg
ClamAV 0.94.1 2009.03.18 -
Comodo 1066 2009.03.18 Backdoor.Win32.Agent.~ZZZP
DrWeb 4.44.0.09170 2009.03.18 Trojan.Packed.2361
eSafe 7.0.17.0 2009.03.18 Win32.Agent.Dhg
eTrust-Vet 31.6.6388 2009.03.09 Win32/VBInject.N
F-Prot 4.4.4.56 2009.03.17 W32/Trojan2.GBWT
F-Secure 8.0.14470.0 2009.03.18 Trojan.Win32.Agent2.dhg
Fortinet 3.117.0.0 2009.03.18 W32/Agent2.DHG!tr
GData 19 2009.03.18 Trojan.Generic.1437766
Ikarus T3.1.1.48.0 2009.03.18 Trojan.Win32.Agent2
K7AntiVirus 7.10.674 2009.03.17 Trojan.Win32.Agent2.dhg
Kaspersky 7.0.0.125 2009.03.18 Trojan.Win32.Agent2.dhg
McAfee 5557 2009.03.18 Generic BackDoor.k
McAfee+Artemis 5557 2009.03.18 Generic BackDoor.k
McAfee-GW-Edition 6.7.6 2009.03.18 Trojan.Agent2.dhg.2
Microsoft 1.4502 2009.03.18 VirTool:Win32/VBInject.gen!S
NOD32 3946 2009.03.18 a variant of Win32/Injector.HP
Norman 6.00.06 2009.03.18 W32/Agent.LQEP
nProtect 2009.1.8.0 2009.03.18 Trojan/W32.Agent2.106496.B
Panda 10.0.0.10 2009.03.18 Trj/Zlob.KH
PCTools 4.4.2.0 2009.03.18 -
Prevx1 V2 2009.03.18 -
Rising 21.21.22.00 2009.03.18 -
Sophos 4.39.0 2009.03.18 -
Sunbelt 3.2.1858.2 2009.03.18 Trojan.Win32.Agent2.dhg
Symantec 1.4.4.12 2009.03.18 Trojan Horse
TheHacker 6.3.3.0.283 2009.03.16 -
TrendMicro 8.700.0.1004 2009.03.18 TROJ_DROPPER.HME
VBA32 3.12.10.1 2009.03.17 Trojan.Win32.Agent2.dhg
ViRobot 2009.3.18.1654 2009.03.18 Trojan.Win32.Agent.106496.T
VirusBuster 4.6.5.0 2009.03.18 -
Additional information
File size: 1765376 bytes
MD5...: 30ec68d8611130e789b1f4f34ff43c0c
SHA1..: 1880775036ebb8a87d55c8cbc8545e9d0edb1643
SHA256: 8e8779231aa3967ed08f428aba3ae9b1936795f82171ef9b97164285d5151671
SHA512: 3d59685b43d9d840ff4a582f8aed2d0c12ac87976d55921ce3f2568d0419d80f
219b77dbdcf347fe597ae74e4bd7c33dc13cd99ac8c6ab777fcfb901ffb9eccd
ssdeep: 49152:NS5dJ+I10dUx0oRGsbuGZPTIM0tASPP/oM5ICafS0EBM5:NS5dl10Sx0oR
CGZbP02SPHpmK0EBU
PEiD..: -
TrID..: File type identification
Win32 Executable Microsoft Visual Basic 6 (86.2%)
Win32 Executable Generic (5.8%)
Win32 Dynamic Link Library (generic) (5.1%)
Generic Win/DOS Executable (1.3%)
DOS Executable Generic (1.3%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x20c8
timedatestamp.....: 0x496983f9 (Sun Jan 11 05:30:33 2009)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xb120 0xc000 5.51 3d394c7de020a700dd7b7f1a6e35f583
.data 0xd000 0x768 0x1000 0.00 620f0b67a91f7f74151bc5be745b7110
.rsrc 0xe000 0x1a0e5c 0x1a1000 8.00 310169c68ec1b24c36234e0668f018d5

( 1 imports )
> MSVBVM60.DLL: __vbaVarSub, _CIcos, _adj_fptan, __vbaVarMove, __vbaVarVargNofree, __vbaAryMove, __vbaFreeVar, __vbaStrVarMove, __vbaLenBstr, __vbaEnd, __vbaFreeVarList, __vbaVarIdiv, _adj_fdiv_m64, __vbaFreeObjList, -, _adj_fprem1, __vbaRecAnsiToUni, __vbaCopyBytes, __vbaResume, __vbaVarCmpNe, __vbaStrCat, __vbaSetSystemError, __vbaRecDestruct, __vbaHresultCheckObj, _adj_fdiv_m32, __vbaAryVar, __vbaVarCmpGe, __vbaAryDestruct, -, __vbaVarPow, __vbaExitProc, __vbaStrLike, __vbaOnError, __vbaObjSet, _adj_fdiv_m16i, _adj_fdivr_m16i, __vbaVarIndexLoad, _CIsin, -, __vbaErase, -, __vbaVarCmpGt, -, __vbaVarZero, __vbaChkstk, -, __vbaFileClose, -, __vbaStrCmp, -, __vbaAryConstruct2, __vbaPutOwner3, __vbaVarTstEq, DllFunctionCall, -, __vbaVarOr, __vbaStrR4, _adj_fpatan, __vbaRedim, __vbaRecUniToAnsi, -, -, _CIsqrt, __vbaVarAnd, __vbaVarMul, __vbaExceptHandler, -, __vbaStrToUnicode, __vbaPrintFile, _adj_fprem, _adj_fdivr_m64, __vbaVarDiv, -, __vbaVarCmpLe, __vbaFPException, -, __vbaUbound, __vbaVarCat, -, -, _CIlog, __vbaFileOpen, -, __vbaNew2, __vbaInStr, _adj_fdiv_m32i, _adj_fdivr_m32i, __vbaStrCopy, __vbaVarCmpLt, __vbaFreeStrList, _adj_fdivr_m32, __vbaPowerR8, _adj_fdiv_r, -, -, __vbaI4Var, __vbaVarCmpEq, __vbaAryLock, __vbaVarAdd, __vbaVarDup, __vbaStrToAnsi, __vbaVarMod, -, __vbaVarTstGe, __vbaFpI4, -, _CIatan, __vbaAryCopy, __vbaStrMove, _allmul, _CItan, __vbaAryUnlock, _CIexp, __vbaI4ErrVar, __vbaFreeObj, __vbaFreeStr

( 0 exports )

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file