Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | English
Virus Total

Virustotal es un servicio de análisis de archivos sospechosos que permite detectar virus, gusanos, troyanos, y malware en general. Más información...

Análisis del archivo VideoCodec.exe recibido el 2009.07.09 05:02:16 (UTC)
Estado actual: análisis terminado
Resultado: 14/41 (34.15%)
Motor antivirus Versión Última actualización Resultado
a-squared 4.5.0.18 2009.07.09 Trojan.Win32.Alureon!IK
AhnLab-V3 5.0.0.2 2009.07.08 -
AntiVir 7.9.0.204 2009.07.08 -
Antiy-AVL 2.0.3.1 2009.07.09 Trojan/Win32.TDSS
Authentium 5.1.2.4 2009.07.08 -
Avast 4.8.1335.0 2009.07.08 -
AVG 8.5.0.386 2009.07.09 SHeur2.APUC
BitDefender 7.2 2009.07.09 -
CAT-QuickHeal 10.00 2009.07.09 -
ClamAV 0.94.1 2009.07.08 Trojan.Agent-118946
Comodo 1588 2009.07.09 -
DrWeb 5.0.0.12182 2009.07.09 -
eSafe 7.0.17.0 2009.07.08 -
eTrust-Vet 31.6.6604 2009.07.08 -
F-Prot 4.4.4.56 2009.07.08 -
F-Secure 8.0.14470.0 2009.07.09 Packed.Win32.Tdss.w
Fortinet 3.117.0.0 2009.07.03 -
GData 19 2009.07.09 -
Ikarus T3.1.1.64.0 2009.07.09 Packed.Win32.Tdss
Jiangmin 11.0.706 2009.07.08 -
K7AntiVirus 7.10.787 2009.07.08 -
Kaspersky 7.0.0.125 2009.07.09 Packed.Win32.Tdss.w
McAfee 5670 2009.07.08 -
McAfee+Artemis 5670 2009.07.08 Artemis!8254D797DC12
McAfee-GW-Edition 6.8.5 2009.07.09 Heuristic.LooksLike.Win32.NewMalware.H
Microsoft 1.4803 2009.07.08 Trojan:Win32/Alureon.gen!J
NOD32 4226 2009.07.09 Win32/AutoRun.ABH
Norman 6.01.09 2009.07.08 -
nProtect 2009.1.8.0 2009.07.09 -
Panda 10.0.0.14 2009.07.08 Trj/CI.A
PCTools 4.4.2.0 2009.07.08 -
Prevx 3.0 2009.07.09 Medium Risk Malware
Rising 21.37.24.00 2009.07.08 -
Sophos 4.43.0 2009.07.09 -
Sunbelt 3.2.1858.2 2009.07.09 Trojan.NSIS.DnsChanger (v)
Symantec 1.4.4.12 2009.07.09 -
TheHacker 6.3.4.3.363 2009.07.08 -
TrendMicro 8.950.0.1094 2009.07.09 -
VBA32 3.12.10.7 2009.07.09 -
ViRobot 2009.7.9.1825 2009.07.09 -
VirusBuster 4.6.5.0 2009.07.08 -
Información adicional
File size: 93106 bytes
MD5   : 8254d797dc12adaa7e50f30128199b17
SHA1  : c4271a82c3eb84b40b3be9bfd282de0db0e8d28f
SHA256: a6eafe94a84080fe8596b30aacf9d0be69d68bed3c78df16c0497c5683ee6a31
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x39BC
timedatestamp.....: 0x49F083E9 (Thu Apr 23 17:06:17 2009)
machinetype.......: 0x14C (Intel I386)

( 7 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x76B8 0x7800 6.17 c5dc8044686b4e8cf4971a6245d3ea06
.data 0x9000 0x8C 0x200 1.19 93f0608a16a7e3925514f558dc4e804e
.rdata 0xA000 0xC54 0xE00 5.05 9290c338008ca65e13a690384caf847b
.bss 0xB000 0x399648 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.idata 0x3A5000 0x13E0 0x1400 5.17 9ce0f458cdff9feedca5723172e6629b
.ndata 0x3A7000 0x8000 0x400 0.00 0f343b0931126a20f133d67c2b018a3b
.rsrc 0x3AF000 0x4CC0 0x4E00 4.49 f4d79c4c7bb6908e58d9d8d1ddd2be2e

( 8 imports )

> advapi32.dll: RegCloseKey, RegCreateKeyExA, RegDeleteKeyA, RegDeleteValueA, RegEnumKeyA, RegEnumValueA, RegOpenKeyExA, RegQueryValueExA, RegSetValueExA
> comctl32.dll: ImageList_AddMasked, ImageList_Create, ImageList_Destroy, InitCommonControls
> gdi32.dll: CreateBrushIndirect, CreateFontIndirectA, DeleteObject, GetDeviceCaps, SelectObject, SetBkColor, SetBkMode, SetTextColor
> kernel32.dll: CloseHandle, CompareFileTime, CopyFileA, CreateDirectoryA, CreateFileA, CreateProcessA, CreateThread, DeleteFileA, ExitProcess, ExpandEnvironmentStringsA, FindClose, FindFirstFileA, FindNextFileA, FreeLibrary, GetCommandLineA, GetCurrentProcess, GetDiskFreeSpaceA, GetExitCodeProcess, GetFileAttributesA, GetFileSize, GetFullPathNameA, GetLastError, GetModuleFileNameA, GetModuleHandleA, GetPrivateProfileStringA, GetProcAddress, GetShortPathNameA, GetSystemDirectoryA, GetTempFileNameA, GetTempPathA, GetTickCount, GetVersion, GetWindowsDirectoryA, GlobalAlloc, GlobalFree, GlobalLock, GlobalUnlock, LoadLibraryA, LoadLibraryExA, MoveFileA, MulDiv, MultiByteToWideChar, ReadFile, RemoveDirectoryA, SearchPathA, SetCurrentDirectoryA, SetErrorMode, SetFileAttributesA, SetFilePointer, SetFileTime, Sleep, WaitForSingleObject, WriteFile, WritePrivateProfileStringA, lstrcatA, lstrcmpA, lstrcmpiA, lstrcpynA, lstrlenA
> ole32.dll: CoCreateInstance, CoTaskMemFree, OleInitialize, OleUninitialize
> shell32.dll: SHBrowseForFolderA, SHFileOperationA, SHGetFileInfoA, SHGetPathFromIDListA, SHGetSpecialFolderLocation, ShellExecuteA
> user32.dll: AppendMenuA, BeginPaint, CallWindowProcA, CharNextA, CharPrevA, CheckDlgButton, CloseClipboard, CreateDialogParamA, CreatePopupMenu, CreateWindowExA, DefWindowProcA, DestroyWindow, DialogBoxParamA, DispatchMessageA, DrawTextA, EmptyClipboard, EnableMenuItem, EnableWindow, EndDialog, EndPaint, ExitWindowsEx, FillRect, FindWindowExA, GetClassInfoA, GetClientRect, GetDC, GetDlgItem, GetDlgItemTextA, GetMessagePos, GetSysColor, GetSystemMenu, GetSystemMetrics, GetWindowLongA, GetWindowRect, InvalidateRect, IsWindow, IsWindowEnabled, IsWindowVisible, LoadBitmapA, LoadCursorA, LoadImageA, MessageBoxIndirectA, OpenClipboard, PeekMessageA, PostQuitMessage, RegisterClassA, ScreenToClient, SendMessageA, SendMessageTimeoutA, SetClassLongA, SetClipboardData, SetCursor, SetDlgItemTextA, SetForegroundWindow, SetTimer, SetWindowLongA, SetWindowPos, SetWindowTextA, ShowWindow, SystemParametersInfoA, TrackPopupMenu, wsprintfA
> version.dll: GetFileVersionInfoA, GetFileVersionInfoSizeA, VerQueryValueA

( 0 exports )
TrID  : File type identification
Win32 Executable MS Visual C++ (generic) (75.0%)
Win32 Executable Generic (16.9%)
Generic Win/DOS Executable (3.9%)
DOS Executable Generic (3.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ThreatExpert: http://www.threatexpert.com/report.aspx?md5=8254d797dc12adaa7e50f30128199b17
ssdeep: 1536:Wdb/vBxIdFlU0AfLhANuIj7Aw6RkFz4Tso7Ovm+cMU0DYyFwHXzHhEGBR:WnilMfONuXw6R9YG8DdFOT
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=305CB116B25F1C376B72012E07AF6D00809E3C8B
PEiD  : -
RDS   : NSRL Reference Data Set
-

Importante IMPORTANTE: VirusTotal es un servicio gratuito ofrecido por Hispasec Sistemas, quien no garantiza la disponibilidad y continuidad de funcionamiento de éste. Pese a que el índice de detección ofrecido por el análisis simultáneo de múltiples motores antivirus es muy superior al de un sólo producto, los resultados NO garantizan la inocuidad de un archivo. No existe solución que pueda ofrecer un 100% de efectividad en el reconocimiento de virus y malware en general.

Analizar otro archivo