|
Virustotal es un servicio de análisis de archivos sospechosos que permite detectar virus, gusanos, troyanos, y malware en general. Más información... |
| Motor antivirus | Versión | Última actualización | Resultado |
|---|---|---|---|
| a-squared | 4.5.0.18 | 2009.06.17 | Trojan-Downloader!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.06.16 | Win-Trojan/Downloader.163840.U |
| AntiVir | 7.9.0.187 | 2009.06.16 | TR/Downloader.Gen |
| Antiy-AVL | 2.0.3.1 | 2009.06.16 | - |
| Authentium | 5.1.2.4 | 2009.06.16 | - |
| Avast | 4.8.1335.0 | 2009.06.16 | - |
| AVG | 8.5.0.339 | 2009.06.17 | - |
| BitDefender | 7.2 | 2009.06.17 | - |
| CAT-QuickHeal | 10.00 | 2009.06.16 | - |
| ClamAV | 0.94.1 | 2009.06.16 | - |
| Comodo | 1346 | 2009.06.16 | - |
| DrWeb | 5.0.0.12182 | 2009.06.16 | - |
| eSafe | 7.0.17.0 | 2009.06.16 | - |
| eTrust-Vet | 31.6.6564 | 2009.06.17 | - |
| F-Prot | 4.4.4.56 | 2009.06.16 | - |
| F-Secure | 8.0.14470.0 | 2009.06.17 | - |
| Fortinet | 3.117.0.0 | 2009.06.17 | - |
| GData | 19 | 2009.06.17 | - |
| Ikarus | T3.1.1.59.0 | 2009.06.17 | Trojan-Downloader |
| Jiangmin | 11.0.706 | 2009.06.16 | - |
| K7AntiVirus | 7.10.765 | 2009.06.16 | - |
| Kaspersky | 7.0.0.125 | 2009.06.17 | - |
| McAfee | 5648 | 2009.06.16 | - |
| McAfee+Artemis | 5648 | 2009.06.16 | Artemis!987DD6DCE330 |
| McAfee-GW-Edition | 6.7.6 | 2009.06.16 | Trojan.Downloader.Gen |
| Microsoft | 1.4701 | 2009.06.17 | Trojan:Win32/Mespam.B |
| NOD32 | 4160 | 2009.06.16 | - |
| Norman | 6.01.09 | 2009.06.16 | - |
| nProtect | 2009.1.8.0 | 2009.06.17 | - |
| Panda | 10.0.0.14 | 2009.06.16 | - |
| PCTools | 4.4.2.0 | 2009.06.12 | - |
| Prevx | 3.0 | 2009.06.17 | Medium Risk Malware |
| Rising | 21.34.13.00 | 2009.06.16 | - |
| Sophos | 4.42.0 | 2009.06.17 | Mal/Cimuz-D |
| Sunbelt | 3.2.1858.2 | 2009.06.17 | - |
| Symantec | 1.4.4.12 | 2009.06.17 | - |
| TheHacker | 6.3.4.3.347 | 2009.06.17 | - |
| TrendMicro | 8.950.0.1094 | 2009.06.16 | - |
| VBA32 | 3.12.10.7 | 2009.06.17 | - |
| ViRobot | 2009.6.16.1789 | 2009.06.17 | - |
| VirusBuster | 4.6.5.0 | 2009.06.16 | - |
| Información adicional |
|---|
| File size: 163840 bytes |
| MD5 : 987dd6dce3309818811cc5481aeb0edc |
| SHA1 : 8a7d1baaed3142d347d9126bf5173f7a85d0bb60 |
| SHA256: 85d86e234c2b4ae30cf7e1a74f2e5ced29ad95dafd48cc7f7b4b4db9ff71870f |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x1C13F timedatestamp.....: 0x4A363EBB (Mon Jun 15 14:29:47 2009) machinetype.......: 0x14C (Intel I386) ( 6 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x1C680 0x1D000 5.90 b1c9a770d75dd3d16d7a55f64c37aed7 .text1 0x1E000 0xD90 0x1000 4.40 b6c0efbf5bbbe564a2da295399f84cdd .rdata 0x1F000 0x1DD5 0x2000 4.39 a07f4f417f4144e7d59a278ae9af330f .data 0x21000 0x1D08 0x1000 0.95 e73ac79014959eebbca3ec45377249a4 .data1 0x23000 0x3098 0x4000 3.38 496ede6d56ab2fa26cfee2cbd802d255 .reloc 0x27000 0x1A6C 0x2000 5.15 42ce102ea1a013c9f66140a11142f018 ( 10 imports ) > advapi32.dll: RegEnumValueA, RegDeleteValueA, RegEnumKeyA, RegCloseKey, RegSetValueExA, RegQueryValueExA, RegOpenKeyExA > gdi32.dll: GetStockObject > kernel32.dll: GetWindowsDirectoryA, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, CreateThread, GetLastError, CreateMutexA, DeleteFileA, OutputDebugStringA, Sleep, lstrlenA, GetLocaleInfoA, GetTempPathA, GetSystemDirectoryA, ResetEvent, SetLastError, TlsGetValue, WaitForSingleObject, GetModuleHandleA, GetProcAddress, GetTickCount, LoadLibraryA, FreeLibraryAndExitThread, CloseHandle, FreeLibrary, ExpandEnvironmentStringsA, PostQueuedCompletionStatus, ReleaseSemaphore, GetVersionExA, CreateIoCompletionPort, CreateSemaphoreA, GetSystemInfo, GetQueuedCompletionStatus, WaitForSingleObjectEx, TlsFree, TlsAlloc, TlsSetValue, GetModuleFileNameA > mfc42.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, - > msvcrt.dll: _adjust_fdiv, _initterm, __1type_info@@UAE@XZ, _terminate@@YAXXZ, _except_handler3, _onexit, __dllonexit, realloc, atoi, srand, time, strcpy, strlen, wcstombs, memcmp, _stricmp, strcmp, rand, memset, malloc, _purecall, _itoa, memcpy, calloc, __CxxFrameHandler, free > ole32.dll: StringFromGUID2, CoCreateGuid > shell32.dll: ShellExecuteA > urlmon.dll: URLDownloadToFileA > user32.dll: DefWindowProcA, DestroyWindow, LoadIconA, LoadCursorA, RegisterClassA, GetWindowLongA, SetWindowLongA, PostThreadMessageA, TranslateMessage, GetMessageA, CreateWindowExA, DispatchMessageA > ws2_32.dll: -, -, -, -, -, -, WSCEnumProtocols, - ( 1 exports ) > WSPStartup |
| TrID : File type identification Windows Screen Saver (37.0%) Win32 Executable Generic (24.1%) Win32 Dynamic Link Library (generic) (21.4%) Win16/32 Executable Delphi generic (5.8%) Generic Win/DOS Executable (5.6%) |
| ThreatExpert: http://www.threatexpert.com/report.aspx?md5=987dd6dce3309818811cc5481aeb0edc |
| ssdeep: 3072:Ot6L6vD7WfT2BdCAQzYUSkdTss63MhfS7EU6a:66Wv+fTi50Qs63MhfSAo |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=ADD5F6FA00936ED980B002620EFA4D00E5E80A4B |
| PEiD : Armadillo v1.xx - v2.xx |
| RDS : NSRL Reference Data Set - |
IMPORTANTE:
VirusTotal es un servicio gratuito ofrecido por Hispasec Sistemas, quien no garantiza la disponibilidad y continuidad de funcionamiento de éste. Pese a que el índice de detección ofrecido por el análisis simultáneo de múltiples motores antivirus es muy superior al de un sólo producto, los resultados NO garantizan la inocuidad de un archivo. No existe solución que pueda ofrecer un 100% de efectividad en el reconocimiento de virus y malware en general.