Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File c-setup.exe received on 2009.01.19 08:56:51 (UTC)
Current status: finished
Result: 12/39 (30.77%)
Antivirus Version Last Update Result
a-squared 4.0.0.73 2009.01.19 -
AhnLab-V3 2009.1.15.0 2009.01.19 -
AntiVir 7.9.0.57 2009.01.18 TR/Drop.Agent.adti
Authentium 5.1.0.4 2009.01.18 -
Avast 4.8.1281.0 2009.01.18 -
AVG 8.0.0.229 2009.01.18 -
BitDefender 7.2 2009.01.19 Trojan.Dropper.SMN
CAT-QuickHeal 10.00 2009.01.19 -
ClamAV 0.94.1 2009.01.19 -
Comodo 935 2009.01.18 -
DrWeb 4.44.0.09170 2009.01.19 Adware.Bho.407
eSafe 7.0.17.0 2009.01.19 Suspicious File
eTrust-Vet 31.6.6315 2009.01.19 -
F-Prot 4.4.4.56 2009.01.18 -
F-Secure 8.0.14470.0 2009.01.19 -
Fortinet 3.117.0.0 2009.01.15 -
GData 19 2009.01.19 Trojan.Dropper.SMN
Ikarus T3.1.1.45.0 2009.01.19 -
K7AntiVirus 7.10.594 2009.01.17 -
Kaspersky 7.0.0.125 2009.01.19 Trojan-Dropper.Win32.Agent.aeux
McAfee 5499 2009.01.18 -
McAfee+Artemis 5499 2009.01.18 -
Microsoft 1.4205 2009.01.19 TrojanDownloader:Win32/Renos.FS
NOD32 3776 2009.01.19 a variant of Win32/Adware.IeDefender.NIC
Norman 5.93.01 2009.01.16 -
nProtect 2009.1.8.0 2009.01.19 Trojan.Dropper.SMN
Panda 9.5.1.2 2009.01.19 -
PCTools 4.4.2.0 2009.01.18 -
Prevx1 V2 2009.01.19 -
Rising 21.13.01.00 2009.01.19 -
SecureWeb-Gateway 6.7.6 2009.01.18 Trojan.Drop.Agent.adti
Sophos 4.37.0 2009.01.19 -
Sunbelt 3.2.1835.2 2009.01.16 -
Symantec 10 2009.01.19 Trojan.Dropper
TheHacker 6.3.1.5.223 2009.01.18 -
TrendMicro 8.700.0.1004 2009.01.19 PAK_Generic.001
VBA32 3.12.8.10 2009.01.18 -
ViRobot 2009.1.18.1564 2009.01.19 -
VirusBuster 4.5.11.0 2009.01.18 -
Additional information
File size: 96263 bytes
MD5...: 01c4831840676a14879267554f40fd31
SHA1..: 70bda50e6a643414c5aec87f21bc118c6a51cdb8
SHA256: 8fb33988843ab3a79bdf8a559fe345273ea2cd6571905106b242262305113e8a
SHA512: 6f61e12c4086a4529d5b17fcd3bc249c9d3986718851be4ecda9d2dda5fe2063
9c9b1bf4814674f496b3f61bd6c8b11322de75b9b415f4b839a8803c48205172
ssdeep: 1536:jGmg6C/nRZZzjNUnBs4qHSBRUXXqNK0R/sVElbmrFks8q9m8EyfTUVxLX:q
4C/xzjKR1mXXqM0RUVUmBJm8Ey7mVX
PEiD..: -
TrID..: File type identification
UPX compressed Win32 Executable (39.5%)
Win32 EXE Yoda's Crypter (34.3%)
Win32 Executable Generic (11.0%)
Win32 Dynamic Link Library (generic) (9.8%)
Generic Win/DOS Executable (2.5%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x43ca00
timedatestamp.....: 0x4973c94b (Mon Jan 19 00:28:59 2009)
machinetype.......: 0x14c (I386)

( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
UPX0 0x1000 0x26000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
UPX1 0x27000 0x16000 0x15c00 7.92 d58aea6a7a3e04e8e3c8400ed874a29e
.rsrc 0x3d000 0x2000 0x1800 2.37 ff98d2a80b22b23350a84ca220c8d11c

( 3 imports )
> KERNEL32.DLL: LoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess
> ADVAPI32.dll: RegCloseKey
> SHELL32.dll: ShellExecuteA

( 0 exports )
packers (Kaspersky): PE_Patch.UPX, UPX
packers (F-Prot): UPX

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file