Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File kk.exe received on 2008.07.07 03:24:16 (UTC)
Current status: finished
Result: 18/33 (54.55%)
Antivirus Version Last Update Result
AhnLab-V3 2008.7.4.1 2008.07.05 Win-Trojan/Xema.variant
AntiVir 7.8.0.64 2008.07.05 Worm/Mytob.BI.178
Authentium 5.1.0.4 2008.07.06 -
Avast 4.8.1195.0 2008.07.06 Win32:Banload-COP
AVG 7.5.0.516 2008.07.06 I-Worm/Mytob.ABR
BitDefender 7.2 2008.07.07 Win32.Worm.Mytob.BI
CAT-QuickHeal 9.50 2008.07.04 (Suspicious) - DNAScan
ClamAV 0.93.1 2008.07.06 Trojan.Banload.OWJ
DrWeb 4.44.0.09170 2008.07.06 -
eSafe 7.0.17.0 2008.07.03 -
eTrust-Vet 31.6.5927 2008.07.04 -
Ewido 4.0 2008.07.06 -
F-Prot 4.4.4.56 2008.07.06 -
F-Secure 7.60.13501.0 2008.07.03 -
Fortinet 3.14.0.0 2008.07.06 W32/MyTob.NL@mm
GData 2.0.7306.1023 2008.07.07 Win32:Banload-COP
Ikarus T3.1.1.26.0 2008.07.07 Backdoor.Win32.Nuclear.ai
Kaspersky 7.0.0.125 2008.07.06 -
McAfee 5332 2008.07.04 W32/Mytob.gen@MM
Microsoft 1.3704 2008.07.06 -
NOD32v2 3244 2008.07.05 -
Norman 5.80.02 2008.07.04 -
Panda 9.0.0.4 2008.07.06 Generic Worm
Prevx1 V2 2008.07.07 Malicious Software
Rising 20.51.60.00 2008.07.06 -
Sophos 4.31.0 2008.07.07 -
Sunbelt 3.1.1509.1 2008.07.04 Worm.Win32.Mytob.BI
Symantec 10 2008.07.07 W32.Mytob@mm
TheHacker 6.2.96.374 2008.07.07 -
TrendMicro 8.700.0.1004 2008.07.05 WORM_MYTOB.ACO
VBA32 3.12.6.8 2008.07.06 Net-Worm.Win32.Mytob.bi
VirusBuster 4.5.11.0 2008.07.06 -
Webwasher-Gateway 6.6.2 2008.07.05 Worm.Mytob.BI.178
Additional information
File size: 782426 bytes
MD5...: 917d3b0998d1beea063c51d36c25b2f3
SHA1..: 997624321a63ac093fc04f6a134aa0dba5e04f27
SHA256: 55686b8006f31cabd9c89cce5fdd672e04612a1fa13babc8ee630dec62fb750a
SHA512: a9e6bd39e281138fe339e1d9ada0497dbb6e8d7a8994e44b260680ea76134d78
2af395fcae53561435803ca7374ab4787111d036a4b5e087e0da3adff450caf8
PEiD..: Thinstall 2.5 -> ??? (h)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x401a94
timedatestamp.....: 0x42003440 (Wed Feb 02 02:00:32 2005)
machinetype.......: 0x14c (I386)

( 1 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x7b000 0x8d24 6.73 59b9017b32e057f4978925952fc8d7f0

( 16 imports )
> USER32.dll: MessageBoxA
> KERNEL32.dll: GetModuleFileNameA, GetEnvironmentVariableA, ExitProcess, FormatMessageA, GetLastError, SetLastError, GetProcAddress, VirtualProtect, LoadLibraryA, GetModuleHandleA, MultiByteToWideChar, GetModuleFileNameW, GetVersionExA, VirtualFree, VirtualAlloc, GlobalAlloc, SetFilePointer, ReadFile, CreateFileA
> oleaut32.dll: SysFreeString
> advapi32.dll: RegQueryValueExA
> user32.dll: GetKeyboardType
> kernel32.dll: GetACP
> kernel32.dll: TlsSetValue
> user32.dll: CreateWindowExA
> gdi32.dll: UnrealizeObject
> version.dll: VerQueryValueA
> kernel32.dll: lstrcpyA
> advapi32.dll: RegQueryValueExA
> ole32.dll: CoTaskMemFree
> kernel32.dll: Sleep
> oleaut32.dll: SafeArrayPtrOfIndex
> comctl32.dll: _TrackMouseEvent

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=ACD4ACA75AE46C62F0A50BB863E2150076AAB09D

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file