Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español
Virus Total

Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information...

File b9f6db0c66541b5db8938728758f4ab1- received on 2009.04.27 18:32:39 (UTC)
Current status: finished
Result: 8/40 (20.00%)
Antivirus Version Last Update Result
a-squared 4.0.0.101 2009.04.27 Trojan-PWS.Sinowal!IK
AhnLab-V3 5.0.0.2 2009.04.27 -
AntiVir 7.9.0.156 2009.04.27 TR/PWS.Sinowal.Gen
Antiy-AVL 2.0.3.1 2009.04.27 -
Authentium 5.1.2.4 2009.04.27 -
Avast 4.8.1335.0 2009.04.27 -
AVG 8.5.0.287 2009.04.27 -
BitDefender 7.2 2009.04.27 -
CAT-QuickHeal 10.00 2009.04.27 -
ClamAV 0.94.1 2009.04.27 -
Comodo 1137 2009.04.27 -
DrWeb 4.44.0.09170 2009.04.27 Trojan.Packed.2447
eSafe 7.0.17.0 2009.04.27 -
eTrust-Vet 31.6.6478 2009.04.27 -
F-Prot 4.4.4.56 2009.04.27 -
F-Secure 8.0.14470.0 2009.04.27 Trojan:W32/Mebroot.gen!A
Fortinet 3.117.0.0 2009.04.27 -
GData 19 2009.04.27 -
Ikarus T3.1.1.49.0 2009.04.27 Trojan-PWS.Sinowal
K7AntiVirus 7.10.717 2009.04.27 -
Kaspersky 7.0.0.125 2009.04.27 -
McAfee 5598 2009.04.27 -
McAfee+Artemis 5598 2009.04.27 -
McAfee-GW-Edition 6.7.6 2009.04.27 Trojan.PWS.Sinowal.Gen
Microsoft 1.4602 2009.04.27 PWS:Win32/Sinowal.gen!M
NOD32 4037 2009.04.27 -
Norman 6.00.06 2009.04.27 -
nProtect 2009.1.8.0 2009.04.27 -
Panda 10.0.0.14 2009.04.27 -
PCTools 4.4.2.0 2009.04.27 -
Prevx1 3.0 2009.04.27 -
Rising 21.27.02.00 2009.04.27 -
Sophos 4.41.0 2009.04.27 -
Sunbelt 3.2.1858.2 2009.04.24 -
Symantec 1.4.4.12 2009.04.27 -
TheHacker 6.3.4.1.315 2009.04.27 -
TrendMicro 8.700.0.1004 2009.04.27 -
VBA32 3.12.10.3 2009.04.27 -
ViRobot 2009.4.27.1710 2009.04.27 -
VirusBuster 4.6.5.0 2009.04.27 Trojan.DR.Sinowal.Gen.11
Additional information
File size: 335872 bytes
MD5...: b00a570c3315f416586e786331b26fc1
SHA1..: 4267c4b23e4c46ea449ebdebf0644c3b0e49db0c
SHA256: b62d4d89ed707c09600b656ca82bff67b86661ed0cf47939104a6e036dd822ec
SHA512: 3a01d783848f8eed07dde2d31a7d3fa2ee1548be5352b60c144724b3c895d97e
dc57523c15a5faf3993c2edcebbed3b987f32bec85b7bad9e719ab4b3ea7c727
ssdeep: 6144:modbsIKRL+KmvVL49hdak5utfI8spXc91q2Mkfvr0gNX5x7Ge:modbEaP3v
fI8sdWdXbvX/
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (38.5%)
Win32 Dynamic Link Library (generic) (34.2%)
Clipper DOS Executable (9.1%)
Generic Win/DOS Executable (9.0%)
DOS Executable Generic (9.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x8760
timedatestamp.....: 0x47be0952 (Thu Feb 21 23:29:22 2008)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x7e48 0x8000 6.47 c05d80032d7cfc9cc746abb91819ca19
.rdata 0x9000 0x32a 0x1000 1.10 0084ee69ee2b02e67fd5114483da9b6f
.data 0xa000 0x46c68 0x47000 8.00 3619cf8ac20663fc4f99a98324b3a968
.reloc 0x51000 0xa3ce 0x1000 0.45 d649ef2ca95cce582b08c34292e3997c

( 6 imports )
> ntdll.dll: memcpy, memcmp
> KERNEL32.dll: Sleep, VirtualAlloc, VirtualFree, VirtualProtect, GetProcAddress, LoadLibraryA, CreateFileA, GetEnvironmentVariableW, Heap32Next
> USER32.dll: GetInputState, SendMessageA
> WININET.dll: InternetCloseHandle, InternetConnectA
> ole32.dll: CoInitializeEx
> ADVAPI32.dll: RegOpenKeyA

( 0 exports )
PDFiD.: -
RDS...: NSRL Reference Data Set
-

ATENTION ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.

Scan another file