|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.5.0.41 | 2009.11.04 | Trojan-Banker.Win32.Banker!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.11.04 | - |
| AntiVir | 7.9.1.53 | 2009.11.04 | SPR/PSW.MailPassVie |
| Antiy-AVL | 2.0.3.7 | 2009.11.04 | - |
| Authentium | 5.2.0.5 | 2009.11.04 | W32/HackTool.DNZ |
| Avast | 4.8.1351.0 | 2009.11.03 | - |
| AVG | 8.5.0.423 | 2009.11.04 | HackTool.HEY.dropper |
| BitDefender | 7.2 | 2009.11.04 | Trojan.Spy.Banker.ACDT |
| CAT-QuickHeal | 10.00 | 2009.11.04 | - |
| ClamAV | 0.94.1 | 2009.11.04 | - |
| Comodo | 2836 | 2009.11.04 | - |
| DrWeb | 5.0.0.12182 | 2009.11.04 | Tool.PassView.138 |
| eSafe | 7.0.17.0 | 2009.11.03 | - |
| eTrust-Vet | 35.1.7101 | 2009.11.04 | - |
| F-Prot | 4.5.1.85 | 2009.11.04 | W32/HackTool.DNZ |
| F-Secure | 9.0.15370.0 | 2009.11.04 | Trojan.Spy.Delf.NPF |
| Fortinet | 3.120.0.0 | 2009.11.04 | - |
| GData | 19 | 2009.11.04 | Trojan.Spy.Banker.ACDT |
| Ikarus | T3.1.1.74.0 | 2009.11.04 | Trojan-Banker.Win32.Banker |
| Jiangmin | 11.0.800 | 2009.11.04 | - |
| K7AntiVirus | 7.10.887 | 2009.11.03 | - |
| Kaspersky | 7.0.0.125 | 2009.11.04 | - |
| McAfee | 5791 | 2009.11.03 | Generic PWS.y!q |
| McAfee+Artemis | 5791 | 2009.11.03 | Generic PWS.y!q |
| McAfee-GW-Edition | 6.8.5 | 2009.11.04 | Riskware.PSW.MailPassVie |
| Microsoft | 1.5202 | 2009.11.04 | - |
| NOD32 | 4572 | 2009.11.04 | probably a variant of Win32/Spy.Banker.PPH |
| Norman | 6.03.02 | 2009.11.03 | W32/Malware.JNPZ.dropper |
| nProtect | 2009.1.8.0 | 2009.11.04 | - |
| Panda | 10.0.2.2 | 2009.11.03 | - |
| PCTools | 7.0.3.5 | 2009.11.04 | - |
| Prevx | 3.0 | 2009.11.04 | - |
| Rising | 21.54.23.00 | 2009.11.04 | - |
| Sophos | 4.47.0 | 2009.11.04 | MailPassView |
| Sunbelt | 3.2.1858.2 | 2009.11.04 | - |
| Symantec | 1.4.4.12 | 2009.11.04 | Infostealer |
| TheHacker | 6.5.0.2.060 | 2009.11.04 | - |
| TrendMicro | 9.0.0.1003 | 2009.11.04 | - |
| VBA32 | 3.12.10.11 | 2009.11.03 | - |
| ViRobot | 2009.11.4.2021 | 2009.11.04 | - |
| VirusBuster | 4.6.5.0 | 2009.11.03 | - |
| Additional information |
|---|
| File size: 632320 bytes |
| MD5 : 3ce50d5a0cc4aed6338daa9f56433f02 |
| SHA1 : 458d7b5996f846f8e86f074947d1de086d7b22a2 |
| SHA256: e99c0415ecec09ea01b09632a5f098fa71fa42b0e692951b765a501daf172d61 |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x6FF2C timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992) machinetype.......: 0x14C (Intel I386) ( 8 sections ) name viradd virsiz rawdsiz ntrpy md5 CODE 0x1000 0x6EF74 0x6F000 6.52 bcdc03947186f057178245151fa0a84b DATA 0x70000 0x1EB8 0x2000 4.66 8b087aa6be62bf49b1c4e87c9bb36a00 BSS 0x72000 0x1039 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .idata 0x74000 0x21D8 0x2200 4.95 26a0ca98969e6c66bdcda925907900f3 .tls 0x77000 0x10 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .rdata 0x78000 0x18 0x200 0.18 97f8d9df4861031ee4daa015bb9463f2 .reloc 0x79000 0x8CF0 0x8E00 6.63 c6b8aae82869d3bdcb842d588ac7e7cb .rsrc 0x82000 0x1E000 0x1E000 5.89 b32e152948cfefed28d6bccaac33ecc2 ( 7 imports ) > advapi32.dll: RegQueryValueExA, RegOpenKeyExA, RegCloseKey, RegQueryValueExA, RegOpenKeyExA, RegCloseKey > comctl32.dll: ImageList_SetIconSize, ImageList_GetIconSize, ImageList_Write, ImageList_Read, ImageList_GetDragImage, ImageList_DragShowNolock, ImageList_SetDragCursorImage, ImageList_DragMove, ImageList_DragLeave, ImageList_DragEnter, ImageList_EndDrag, ImageList_BeginDrag, ImageList_Remove, ImageList_DrawEx, ImageList_Draw, ImageList_GetBkColor, ImageList_SetBkColor, ImageList_ReplaceIcon, ImageList_Add, ImageList_GetImageCount, ImageList_Destroy, ImageList_Create > gdi32.dll: UnrealizeObject, StretchBlt, SetWindowOrgEx, SetViewportOrgEx, SetTextColor, SetStretchBltMode, SetROP2, SetPixel, SetDIBColorTable, SetBrushOrgEx, SetBkMode, SetBkColor, SelectPalette, SelectObject, SaveDC, RestoreDC, RectVisible, RealizePalette, Polyline, PatBlt, MoveToEx, MaskBlt, LineTo, IntersectClipRect, GetWindowOrgEx, GetTextMetricsA, GetTextExtentPoint32A, GetSystemPaletteEntries, GetStockObject, GetPixel, GetPaletteEntries, GetObjectA, GetDeviceCaps, GetDIBits, GetDIBColorTable, GetDCOrgEx, GetCurrentPositionEx, GetClipBox, GetBrushOrgEx, GetBitmapBits, ExcludeClipRect, DeleteObject, DeleteDC, CreateSolidBrush, CreatePenIndirect, CreatePalette, CreateHalftonePalette, CreateFontIndirectA, CreateDIBitmap, CreateDIBSection, CreateCompatibleDC, CreateCompatibleBitmap, CreateBrushIndirect, CreateBitmap, BitBlt > kernel32.dll: DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, VirtualFree, VirtualAlloc, LocalFree, LocalAlloc, GetVersion, GetCurrentThreadId, InterlockedDecrement, InterlockedIncrement, VirtualQuery, WideCharToMultiByte, MultiByteToWideChar, lstrlenA, lstrcpynA, LoadLibraryExA, GetThreadLocale, GetStartupInfoA, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLastError, GetCommandLineA, FreeLibrary, FindFirstFileA, FindClose, ExitProcess, ExitThread, CreateThread, WriteFile, UnhandledExceptionFilter, SetFilePointer, SetEndOfFile, RtlUnwind, ReadFile, RaiseException, GetStdHandle, GetFileSize, GetFileType, CreateFileA, CloseHandle, TlsSetValue, TlsGetValue, LocalAlloc, GetModuleHandleA, lstrcpyA, WriteFile, WinExec, WaitForSingleObject, VirtualQuery, VirtualAlloc, Sleep, SizeofResource, SetThreadLocale, SetFilePointer, SetEvent, SetErrorMode, SetEndOfFile, ResumeThread, ResetEvent, ReadFile, MulDiv, MoveFileA, LockResource, LoadResource, LoadLibraryA, LeaveCriticalSection, InitializeCriticalSection, GlobalUnlock, GlobalReAlloc, GlobalHandle, GlobalLock, GlobalFree, GlobalFindAtomA, GlobalDeleteAtom, GlobalAlloc, GlobalAddAtomA, GetVersionExA, GetVersion, GetTimeZoneInformation, GetTickCount, GetThreadLocale, GetTempPathA, GetTempFileNameA, GetSystemInfo, GetSystemDirectoryA, GetStringTypeExA, GetStdHandle, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLocalTime, GetLastError, GetFullPathNameA, GetFileSize, GetExitCodeThread, GetDiskFreeSpaceA, GetDateFormatA, GetCurrentThreadId, GetCurrentProcessId, GetComputerNameA, GetCPInfo, GetACP, FreeResource, InterlockedIncrement, InterlockedExchange, InterlockedDecrement, FreeLibrary, FormatMessageA, FindResourceA, FindNextFileA, FindFirstFileA, FindClose, FileTimeToLocalFileTime, FileTimeToDosDateTime, EnumCalendarInfoA, EnterCriticalSection, DeleteFileA, DeleteCriticalSection, CreateThread, CreateFileA, CreateEventA, CompareStringA, CloseHandle, Sleep > oleaut32.dll: SysFreeString, SysReAllocStringLen, SysAllocStringLen, SafeArrayPtrOfIndex, SafeArrayGetUBound, SafeArrayGetLBound, SafeArrayCreate, VariantChangeType, VariantCopy, VariantClear, VariantInit > user32.dll: GetKeyboardType, LoadStringA, MessageBoxA, CharNextA, CreateWindowExA, WindowFromPoint, WinHelpA, WaitMessage, UpdateWindow, UnregisterClassA, UnhookWindowsHookEx, TranslateMessage, TranslateMDISysAccel, TrackPopupMenu, SystemParametersInfoA, ShowWindow, ShowScrollBar, ShowOwnedPopups, ShowCursor, SetWindowsHookExA, SetWindowTextA, SetWindowPos, SetWindowPlacement, SetWindowLongA, SetTimer, SetScrollRange, SetScrollPos, SetScrollInfo, SetRect, SetPropA, SetParent, SetMenuItemInfoA, SetMenu, SetForegroundWindow, SetFocus, SetCursor, SetClassLongA, SetCapture, SetActiveWindow, SendMessageA, ScrollWindow, ScreenToClient, RemovePropA, RemoveMenu, ReleaseDC, ReleaseCapture, RegisterWindowMessageA, RegisterClipboardFormatA, RegisterClassA, RedrawWindow, PtInRect, PostQuitMessage, PostMessageA, PeekMessageA, OffsetRect, OemToCharA, MsgWaitForMultipleObjects, MessageBoxA, MapWindowPoints, MapVirtualKeyA, LoadStringA, LoadKeyboardLayoutA, LoadIconA, LoadCursorA, LoadBitmapA, KillTimer, IsZoomed, IsWindowVisible, IsWindowEnabled, IsWindow, IsRectEmpty, IsIconic, IsDialogMessageA, IsChild, InvalidateRect, IntersectRect, InsertMenuItemA, InsertMenuA, InflateRect, GetWindowThreadProcessId, GetWindowTextA, GetWindowRect, GetWindowPlacement, GetWindowLongA, GetWindowDC, GetTopWindow, GetSystemMetrics, GetSystemMenu, GetSysColorBrush, GetSysColor, GetSubMenu, GetScrollRange, GetScrollPos, GetScrollInfo, GetPropA, GetParent, GetWindow, GetMenuStringA, GetMenuState, GetMenuItemInfoA, GetMenuItemID, GetMenuItemCount, GetMenu, GetLastActivePopup, GetKeyboardState, GetKeyboardLayoutList, GetKeyboardLayout, GetKeyState, GetKeyNameTextA, GetIconInfo, GetForegroundWindow, GetFocus, GetDesktopWindow, GetDCEx, GetDC, GetCursorPos, GetCursor, GetClientRect, GetClassNameA, GetClassInfoA, GetCapture, GetActiveWindow, FrameRect, FindWindowA, FillRect, EqualRect, EnumWindows, EnumThreadWindows, EndPaint, EnableWindow, EnableScrollBar, EnableMenuItem, DrawTextA, DrawMenuBar, DrawIconEx, DrawIcon, DrawFrameControl, DrawEdge, DispatchMessageA, DestroyWindow, DestroyMenu, DestroyIcon, DestroyCursor, DeleteMenu, DefWindowProcA, DefMDIChildProcA, DefFrameProcA, CreatePopupMenu, CreateMenu, CreateIcon, ClientToScreen, CheckMenuItem, CallWindowProcA, CallNextHookEx, BeginPaint, CharNextA, CharLowerA, CharUpperBuffA, CharToOemA, AdjustWindowRectEx, ActivateKeyboardLayout > version.dll: VerQueryValueA, GetFileVersionInfoSizeA, GetFileVersionInfoA ( 0 exports ) |
| TrID : File type identification Win32 Executable Borland Delphi 7 (66.6%) Win32 Executable Borland Delphi 6 (26.1%) InstallShield setup (4.2%) Win32 Executable Delphi generic (1.4%) Win32 Executable Generic (0.8%) |
| ThreatExpert: http://www.threatexpert.com/report.aspx?md5=3ce50d5a0cc4aed6338daa9f56433f02 |
| ssdeep: 12288:X2B2SwJTmFUKHLOgsE7Y1AAABJQ154yj40fSM1Z5C1H9pBanssOP:GASAKrM84SbQbfj40fSGM1xanssOP |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=999BC20200EC5F39A6300905E49F9C005F74940E |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.