|
Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
| Antivirus | Version | Last Update | Result |
|---|---|---|---|
| a-squared | 4.0.0.101 | 2009.03.11 | Virus.Win32.Trojan!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.03.11 | - |
| AntiVir | 7.9.0.107 | 2009.03.10 | TR/Agent.1245209.A |
| Authentium | 5.1.0.4 | 2009.03.10 | - |
| Avast | 4.8.1335.0 | 2009.03.10 | Win32:Trojan-gen {Other} |
| AVG | 8.0.0.237 | 2009.03.10 | SHeur.BUYK |
| BitDefender | 7.2 | 2009.03.11 | - |
| CAT-QuickHeal | 10.00 | 2009.03.11 | - |
| ClamAV | 0.94.1 | 2009.03.11 | - |
| Comodo | 1046 | 2009.03.10 | - |
| DrWeb | 4.44.0.09170 | 2009.03.11 | - |
| eSafe | 7.0.17.0 | 2009.03.09 | - |
| eTrust-Vet | 31.6.6388 | 2009.03.09 | - |
| F-Prot | 4.4.4.56 | 2009.03.10 | - |
| F-Secure | 8.0.14470.0 | 2009.03.11 | Agent.IZEO |
| Fortinet | 3.117.0.0 | 2009.03.10 | - |
| GData | 19 | 2009.03.11 | Win32:Trojan-gen {Other} |
| Ikarus | T3.1.1.45.0 | 2009.03.11 | Virus.Win32.Trojan |
| K7AntiVirus | 7.10.665 | 2009.03.10 | - |
| Kaspersky | 7.0.0.125 | 2009.03.11 | - |
| McAfee | 5549 | 2009.03.10 | - |
| McAfee+Artemis | 5549 | 2009.03.10 | Generic!Artemis |
| Microsoft | 1.4405 | 2009.03.11 | - |
| NOD32 | 3925 | 2009.03.11 | - |
| Norman | 6.00.06 | 2009.03.10 | Agent.IZEO |
| nProtect | 2009.1.8.0 | 2009.03.11 | - |
| Panda | 10.0.0.10 | 2009.03.10 | Suspicious file |
| PCTools | 4.4.2.0 | 2009.03.10 | - |
| Prevx1 | V2 | 2009.03.11 | High Risk Worm |
| Rising | 21.20.20.00 | 2009.03.11 | - |
| SecureWeb-Gateway | 6.7.6 | 2009.03.10 | Trojan.Agent.1245209.A |
| Sophos | 4.39.0 | 2009.03.11 | - |
| Sunbelt | 3.2.1858.2 | 2009.03.10 | - |
| Symantec | 1.4.4.12 | 2009.03.11 | Trojan Horse |
| TheHacker | 6.3.3.0.278 | 2009.03.11 | - |
| TrendMicro | 8.700.0.1004 | 2009.03.11 | - |
| VBA32 | 3.12.10.1 | 2009.03.11 | - |
| ViRobot | 2009.3.11.1644 | 2009.03.11 | - |
| VirusBuster | 4.5.11.0 | 2009.03.10 | - |
| Additional information |
|---|
| File size: 1245209 bytes |
| MD5...: 889a039d80ca35e67a2a6c1fc7f94cab |
| SHA1..: 6ae4ee826e36e026e04bb9b6394f581e793c897c |
| SHA256: f5a5cb4710082787b5ef543b9ebce89865a9ea776bcbc5daaae18c6adb8bcdac |
| SHA512: 993817751d8b395296392241439f08022e01fb3ae4d1aa9b8142827fba1488c8 09e9445bec41bc3cbdd2968d8190334c1756c3eff5ba1463636369e4707e3e8b |
| ssdeep: 24576:93WV5UY4ULral3V8opNBQftc/f6BDDurcEQOdDf87Ug94ggNzOlL5vppQH nv:9GV5N3Lra00/8tcnIHurcEQuDk7UZ05+ |
| PEiD..: MoleBox V2.3X -> MoleStudio.com |
| TrID..: File type identification Win32 Executable Generic (67.8%) Generic Win/DOS Executable (15.9%) DOS Executable Generic (15.9%) VXD Driver (0.2%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x239353 timedatestamp.....: 0x2a425e19 (Fri Jun 19 22:22:17 1992) machinetype.......: 0x14c (I386) ( 12 sections ) name viradd virsiz rawdsiz ntrpy md5 0DE 0x1000 0x17f000 0xad600 8.00 4920553d9628ce8170b5652a557830b5 1TA 0x180000 0x5000 0x4a00 4.78 f51e220db147f8ae1f6a1cb3cf324155 2S 0x185000 0x26000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e 3data 0x1ab000 0x4000 0x1600 7.92 0db3d64f32fc51db4ada7e3dbec66959 4ls 0x1af000 0x1000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e 5data 0x1b0000 0x1000 0x200 0.18 6f3dc8ebbdb16132bf4226b696bdfcb1 6eloc 0x1b1000 0x19000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e 7src 0x1ca000 0x6c000 0x6b200 6.86 6999c65255d8a0064711b4de236b4812 8tolen 0x236000 0x1000 0x400 6.68 d254148406be5b3cae9bf79bfc1b734f 9ext 0x237000 0x11870 0xc000 7.88 c94a50368edab7e3197591571c92fb9e 10ata 0x249000 0x1102 0x1200 4.61 88e3b57001e8da0237c5f0002214b89a 11ta 0x24b000 0x7a24 0x1c00 7.98 9a46832c165eea7fc0a054a32bcf3d44 ( 5 imports ) > KERNEL32.dll: LocalAlloc, GetModuleHandleA, LeaveCriticalSection, EnterCriticalSection, GetCurrentDirectoryA, GetShortPathNameA, FindResourceExA, EnumResourceLanguagesA, ResumeThread, WriteProcessMemory, RaiseException, SetFileAttributesA, CreateDirectoryA, QueryPerformanceCounter, QueryPerformanceFrequency, GetCurrentThreadId, GetPrivateProfileSectionA, GetStringTypeA, LCMapStringW, LCMapStringA, MultiByteToWideChar, LocalFree, GetProcAddress, GetModuleFileNameW, InitializeCriticalSection, WideCharToMultiByte, RtlUnwind, GetStringTypeW > USER32.dll: DefWindowProcA, SetFocus, AdjustWindowRectEx > ADVAPI32.dll: RegCreateKeyA, RegSetValueA, RegCloseKey > ole32.dll: ReadClassStm, CoRegisterClassObject > OLEAUT32.dll: - ( 0 exports ) |
| ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=889a039d80ca35e67a2a6c1fc7f94cab |
| packers (Kaspersky): Molebox |
| Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=E0851D6A19B50D7800001399C26F1D0015301D22 |
| CWSandbox info: http://research.sunbelt-software.com/partnerresource/MD5.aspx?md5=889a039d80ca35e67a2a6c1fc7f94cab |
ATTENTION:
VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.