Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Polski | Español | English
Virus Total

Virustotal je služba, která analyzuje podezřelé soubory na přítomnost virů, červů, trojanů a dalšího malware, pomocí detekčního jádra mnoha antivirů. Více informací...

Soubor gamingharbor_installer.exe přijatý 2009.09.15 15:19:23 (UTC)
Současný stav: Dokončeno
Výsledek: 8/41 (19.51%)
Antivirus Verze Poslední aktualizace Výsledek
a-squared 4.5.0.24 2009.09.15 -
AhnLab-V3 5.0.0.2 2009.09.15 -
AntiVir 7.9.1.14 2009.09.15 -
Antiy-AVL 2.0.3.7 2009.09.15 -
Authentium 5.1.2.4 2009.09.15 -
Avast 4.8.1351.0 2009.09.14 -
AVG 8.5.0.412 2009.09.15 -
BitDefender 7.2 2009.09.15 -
CAT-QuickHeal 10.00 2009.09.15 -
ClamAV 0.94.1 2009.09.15 -
Comodo 2326 2009.09.15 UnclassifiedMalware
DrWeb 5.0.0.12182 2009.09.15 Adware.DoubleD.5
eSafe 7.0.17.0 2009.09.15 -
eTrust-Vet 31.6.6738 2009.09.15 -
F-Prot 4.5.1.85 2009.09.15 -
F-Secure 8.0.14470.0 2009.09.15 -
Fortinet 3.120.0.0 2009.09.15 Adware/DoubleD
GData 19 2009.09.15 -
Ikarus T3.1.1.72.0 2009.09.15 -
Jiangmin 11.0.800 2009.09.15 -
K7AntiVirus 7.10.845 2009.09.15 -
Kaspersky 7.0.0.125 2009.09.15 -
McAfee 5741 2009.09.14 -
McAfee+Artemis 5741 2009.09.14 Artemis!BA147201FDCA
McAfee-GW-Edition 6.8.5 2009.09.15 Heuristic.LooksLike.Riskware.Tool.J
Microsoft 1.5005 2009.09.15 -
NOD32 4427 2009.09.15 a variant of Win32/Adware.DoubleD.AB
Norman 6.01.09 2009.09.15 -
nProtect 2009.1.8.0 2009.09.15 -
Panda 10.0.2.2 2009.09.14 Suspicious file
PCTools 4.4.2.0 2009.09.14 -
Prevx 3.0 2009.09.15 Medium Risk Malware
Rising 21.47.14.00 2009.09.15 -
Sophos 4.45.0 2009.09.15 -
Sunbelt 3.2.1858.2 2009.09.15 -
Symantec 1.4.4.12 2009.09.15 -
TheHacker 6.3.4.4.404 2009.09.15 -
TrendMicro 8.950.0.1094 2009.09.15 -
VBA32 3.12.10.10 2009.09.14 -
ViRobot 2009.9.15.1937 2009.09.15 -
VirusBuster 4.6.5.0 2009.09.14 -
Rozšiřující informace
File size: 659456 bytes
MD5   : ba147201fdcacf1f9717a2f26f40eaae
SHA1  : 9d8d4070aa78cfd649f53a6d934c334c6ddef042
SHA256: b49653de11a7689fd2519a490b3c99bd9699475e269306289ac0a02fc9d9528d
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x37EC5
timedatestamp.....: 0x4AA077F5 (Fri Sep 4 04:14:13 2009)
machinetype.......: 0x14C (Intel I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x51C90 0x52000 6.68 0a6c06517b05a8a2f01f85698db9c856
.rdata 0x53000 0x18A4E 0x19000 5.78 24c3d15ba3c914b91c944518cb089dee
.data 0x6C000 0x7984 0x3000 3.13 24ac16c7efad3a4c18bc07918e202f6e
.rsrc 0x74000 0x31E2C 0x32000 7.40 7b547a91badaddc4fd4625f9daaed9ac

( 14 imports )

> advapi32.dll: CryptAcquireContextW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, RegOpenKeyExW, RegCreateKeyExW, RegOpenKeyW, RegCloseKey, FreeSid, EqualSid, AllocateAndInitializeSid, GetTokenInformation, OpenThreadToken, GetUserNameW, CryptGetHashParam, CryptDestroyHash, CryptHashData, CryptCreateHash, CryptDestroyKey, CryptGetKeyParam, CryptDeriveKey, CryptEncrypt, CryptReleaseContext, CryptDecrypt, RegQueryValueExW, RegCreateKeyW, RegCreateKeyA, RegQueryValueExA, RegSetValueExA, RegOpenKeyA
> comctl32.dll: InitCommonControlsEx
> gdi32.dll: SetTextColor, CreateBitmap, DPtoLP, DeleteObject, GetObjectW, DeleteDC, GetDIBits, SetBkMode, CreateCompatibleDC, SetBkColor, CreateCompatibleBitmap, BitBlt, SetMapMode, SelectObject, StretchBlt, GetMapMode
> kernel32.dll: CopyFileW, GetCurrentProcess, CreateToolhelp32Snapshot, Process32FirstW, GetModuleHandleW, LoadLibraryW, GetProcAddress, FreeLibrary, Process32NextW, CloseHandle, ExitThread, CreateThread, RaiseException, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, FlushInstructionCache, GetCurrentThreadId, GetLastError, lstrcmpiW, SetLastError, SizeofResource, LoadResource, FindResourceW, CreateDirectoryW, DeleteFileW, OpenProcess, CreateProcessW, CreateEventW, WaitForSingleObject, GetExitCodeProcess, TerminateProcess, FindFirstFileW, FindClose, OutputDebugStringW, DebugBreak, lstrlenA, InterlockedIncrement, InterlockedDecrement, LoadLibraryExW, GetModuleFileNameW, Sleep, CreateMutexW, GetConsoleWindow, CreatePipe, CreateProcessA, SetHandleInformation, GetEnvironmentVariableA, CreateFileMappingA, GetOverlappedResult, GetProcessTimes, GetWindowsDirectoryA, GlobalMemoryStatus, GetThreadTimes, GetSystemTimeAdjustment, SetConsoleMode, FindFirstFileA, CreateEventA, lstrlenW, MultiByteToWideChar, FindNextFileA, ReleaseMutex, LocalAlloc, FindResourceA, GlobalAlloc, GlobalFree, GetSystemTime, GetVersionExW, LocalFree, GetLocalTime, UnmapViewOfFile, MapViewOfFile, GetCurrentThread, GetFileSize, CreateFileW, ReadFile, GetTickCount, SetEvent, LoadLibraryA, GetModuleHandleA, GetTempPathW, LockResource, GetTempFileNameW, GetVersionExA, InterlockedCompareExchange, HeapFree, GetProcessHeap, HeapAlloc, IsProcessorFeaturePresent, VirtualFree, VirtualAlloc, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, WideCharToMultiByte, RtlUnwind, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapReAlloc, GetStartupInfoW, GetSystemTimeAsFileTime, LCMapStringA, LCMapStringW, GetCPInfo, GetStringTypeA, GetStringTypeW, ExitProcess, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, GetOEMCP, IsValidCodePage, HeapDestroy, HeapCreate, WriteFile, GetStdHandle, GetModuleFileNameA, HeapSize, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, GetCommandLineW, SetHandleCount, GetFileType, GetStartupInfoA, QueryPerformanceCounter, GetCurrentProcessId, GetConsoleCP, GetConsoleMode, FlushFileBuffers, SetFilePointer, GetTimeFormatA, GetDateFormatA, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, SetStdHandle, CreateFileA, CompareStringA, CompareStringW, SetEnvironmentVariableA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, GetLocaleInfoW, GetTimeZoneInformation, SetEndOfFile, DeleteFileA
> netapi32.dll: NetUserGetInfo, NetApiBufferFree
> ole32.dll: CreateStreamOnHGlobal, OleRun, CoInitializeEx, CoUninitialize, CoTaskMemFree, CoInitialize, CoTaskMemAlloc, CoTaskMemRealloc, CoCreateInstance
> oleaut32.dll: -, -, -, -, -, -
> psapi.dll: EnumProcesses, EnumProcessModules, GetModuleFileNameExW
> shell32.dll: SHGetFolderPathW, Shell_NotifyIconW, ShellExecuteExW
> shlwapi.dll: PathSearchAndQualifyW
> urlmon.dll: URLDownloadToFileW
> user32.dll: CharNextW, wvsprintfW, LoadStringW, GetWindowLongW, SetWindowTextW, GetWindowTextW, SetWindowPos, InvalidateRect, ShowWindow, EnableWindow, SendMessageW, UnregisterClassA, CopyImage, GetForegroundWindow, GetCapture, GetQueueStatus, GetClipboardOwner, SendMessageA, FindWindowA, GetDlgItem, MessageBoxW, GetActiveWindow, DialogBoxParamW, GetCursorPos, ClientToScreen, CreateWindowExW, IsMenu, GetSubMenu, SetMenuDefaultItem, TrackPopupMenu, RegisterClassExW, LoadCursorW, GetClassInfoExW, CallWindowProcW, KillTimer, SetTimer, IsWindow, DefWindowProcW, DestroyMenu, DestroyWindow, SetWindowLongW, EndPaint, BeginPaint, GetDC, EndDialog, DrawTextW, GetSystemMetrics, LoadImageW, DestroyIcon, GetParent, GetWindow, GetWindowRect, SystemParametersInfoW, GetClientRect, MapWindowPoints
> version.dll: VerQueryValueW, GetFileVersionInfoSizeW, GetFileVersionInfoW
> wininet.dll: InternetOpenW, InternetCloseHandle, DeleteUrlCacheEntryW, InternetReadFile, InternetQueryDataAvailable, HttpSendRequestW, HttpOpenRequestW, InternetConnectW, HttpQueryInfoW

( 0 exports )
TrID  : File type identification
Win32 Executable MS Visual C++ (generic) (75.0%)
Win32 Executable Generic (16.9%)
Generic Win/DOS Executable (3.9%)
DOS Executable Generic (3.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ssdeep: 12288:NqPdJxVbspi5XRwl0OOwcXZOQV12/IL8U81b9mXtG1:NqPrxVbspiRRZwUZOQV219yi
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=44AD881300F3D27B10D80AFC94DE5000FE648854
PEiD  : -
RDS   : NSRL Reference Data Set
-

VAROVÁNÍ VAROVÁNÍ: VirusTotal je služba poskytovaná zdarma společnosti Hispasec Sistemas. Kvalita výsledků není nijak zaručena. Výsledky jsou závislé na tvůrci daného produktu. Vysledky testů nemusí být 100% správné. Tyto výsledky nemusí znamenat, že daný soubor je infikován, nebo čistý!

Scan another file