Srpski | Македонски | العربية | Suomi | ihMdI | | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

VirusTotal הינו שירות אשר מנתח קבצים חשודים ומקדם זיהוי מהיר של וירוסים, תולעים, טרויינים וכל סוגי תוכנות זדונה שמזוהות על ידי מנועים של אנטיורוסים שונים. מידע נוסף...

קובץ gamingharbor_installer.exe התקבל ב 2009.09.15 15:19:23 (UTC)
מצב נוכחי: הסתיים
תוצאה:8/41 (19.51%)
אנטיוירוס גרסה עדכון אחרון תוצאה
a-squared 4.5.0.24 2009.09.15 -
AhnLab-V3 5.0.0.2 2009.09.15 -
AntiVir 7.9.1.14 2009.09.15 -
Antiy-AVL 2.0.3.7 2009.09.15 -
Authentium 5.1.2.4 2009.09.15 -
Avast 4.8.1351.0 2009.09.14 -
AVG 8.5.0.412 2009.09.15 -
BitDefender 7.2 2009.09.15 -
CAT-QuickHeal 10.00 2009.09.15 -
ClamAV 0.94.1 2009.09.15 -
Comodo 2326 2009.09.15 UnclassifiedMalware
DrWeb 5.0.0.12182 2009.09.15 Adware.DoubleD.5
eSafe 7.0.17.0 2009.09.15 -
eTrust-Vet 31.6.6738 2009.09.15 -
F-Prot 4.5.1.85 2009.09.15 -
F-Secure 8.0.14470.0 2009.09.15 -
Fortinet 3.120.0.0 2009.09.15 Adware/DoubleD
GData 19 2009.09.15 -
Ikarus T3.1.1.72.0 2009.09.15 -
Jiangmin 11.0.800 2009.09.15 -
K7AntiVirus 7.10.845 2009.09.15 -
Kaspersky 7.0.0.125 2009.09.15 -
McAfee 5741 2009.09.14 -
McAfee+Artemis 5741 2009.09.14 Artemis!BA147201FDCA
McAfee-GW-Edition 6.8.5 2009.09.15 Heuristic.LooksLike.Riskware.Tool.J
Microsoft 1.5005 2009.09.15 -
NOD32 4427 2009.09.15 a variant of Win32/Adware.DoubleD.AB
Norman 6.01.09 2009.09.15 -
nProtect 2009.1.8.0 2009.09.15 -
Panda 10.0.2.2 2009.09.14 Suspicious file
PCTools 4.4.2.0 2009.09.14 -
Prevx 3.0 2009.09.15 Medium Risk Malware
Rising 21.47.14.00 2009.09.15 -
Sophos 4.45.0 2009.09.15 -
Sunbelt 3.2.1858.2 2009.09.15 -
Symantec 1.4.4.12 2009.09.15 -
TheHacker 6.3.4.4.404 2009.09.15 -
TrendMicro 8.950.0.1094 2009.09.15 -
VBA32 3.12.10.10 2009.09.14 -
ViRobot 2009.9.15.1937 2009.09.15 -
VirusBuster 4.6.5.0 2009.09.14 -
מידע נוסף
File size: 659456 bytes
MD5   : ba147201fdcacf1f9717a2f26f40eaae
SHA1  : 9d8d4070aa78cfd649f53a6d934c334c6ddef042
SHA256: b49653de11a7689fd2519a490b3c99bd9699475e269306289ac0a02fc9d9528d
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x37EC5
timedatestamp.....: 0x4AA077F5 (Fri Sep 4 04:14:13 2009)
machinetype.......: 0x14C (Intel I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x51C90 0x52000 6.68 0a6c06517b05a8a2f01f85698db9c856
.rdata 0x53000 0x18A4E 0x19000 5.78 24c3d15ba3c914b91c944518cb089dee
.data 0x6C000 0x7984 0x3000 3.13 24ac16c7efad3a4c18bc07918e202f6e
.rsrc 0x74000 0x31E2C 0x32000 7.40 7b547a91badaddc4fd4625f9daaed9ac

( 14 imports )

> advapi32.dll: CryptAcquireContextW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, RegOpenKeyExW, RegCreateKeyExW, RegOpenKeyW, RegCloseKey, FreeSid, EqualSid, AllocateAndInitializeSid, GetTokenInformation, OpenThreadToken, GetUserNameW, CryptGetHashParam, CryptDestroyHash, CryptHashData, CryptCreateHash, CryptDestroyKey, CryptGetKeyParam, CryptDeriveKey, CryptEncrypt, CryptReleaseContext, CryptDecrypt, RegQueryValueExW, RegCreateKeyW, RegCreateKeyA, RegQueryValueExA, RegSetValueExA, RegOpenKeyA
> comctl32.dll: InitCommonControlsEx
> gdi32.dll: SetTextColor, CreateBitmap, DPtoLP, DeleteObject, GetObjectW, DeleteDC, GetDIBits, SetBkMode, CreateCompatibleDC, SetBkColor, CreateCompatibleBitmap, BitBlt, SetMapMode, SelectObject, StretchBlt, GetMapMode
> kernel32.dll: CopyFileW, GetCurrentProcess, CreateToolhelp32Snapshot, Process32FirstW, GetModuleHandleW, LoadLibraryW, GetProcAddress, FreeLibrary, Process32NextW, CloseHandle, ExitThread, CreateThread, RaiseException, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, FlushInstructionCache, GetCurrentThreadId, GetLastError, lstrcmpiW, SetLastError, SizeofResource, LoadResource, FindResourceW, CreateDirectoryW, DeleteFileW, OpenProcess, CreateProcessW, CreateEventW, WaitForSingleObject, GetExitCodeProcess, TerminateProcess, FindFirstFileW, FindClose, OutputDebugStringW, DebugBreak, lstrlenA, InterlockedIncrement, InterlockedDecrement, LoadLibraryExW, GetModuleFileNameW, Sleep, CreateMutexW, GetConsoleWindow, CreatePipe, CreateProcessA, SetHandleInformation, GetEnvironmentVariableA, CreateFileMappingA, GetOverlappedResult, GetProcessTimes, GetWindowsDirectoryA, GlobalMemoryStatus, GetThreadTimes, GetSystemTimeAdjustment, SetConsoleMode, FindFirstFileA, CreateEventA, lstrlenW, MultiByteToWideChar, FindNextFileA, ReleaseMutex, LocalAlloc, FindResourceA, GlobalAlloc, GlobalFree, GetSystemTime, GetVersionExW, LocalFree, GetLocalTime, UnmapViewOfFile, MapViewOfFile, GetCurrentThread, GetFileSize, CreateFileW, ReadFile, GetTickCount, SetEvent, LoadLibraryA, GetModuleHandleA, GetTempPathW, LockResource, GetTempFileNameW, GetVersionExA, InterlockedCompareExchange, HeapFree, GetProcessHeap, HeapAlloc, IsProcessorFeaturePresent, VirtualFree, VirtualAlloc, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, WideCharToMultiByte, RtlUnwind, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapReAlloc, GetStartupInfoW, GetSystemTimeAsFileTime, LCMapStringA, LCMapStringW, GetCPInfo, GetStringTypeA, GetStringTypeW, ExitProcess, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, GetOEMCP, IsValidCodePage, HeapDestroy, HeapCreate, WriteFile, GetStdHandle, GetModuleFileNameA, HeapSize, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, GetCommandLineW, SetHandleCount, GetFileType, GetStartupInfoA, QueryPerformanceCounter, GetCurrentProcessId, GetConsoleCP, GetConsoleMode, FlushFileBuffers, SetFilePointer, GetTimeFormatA, GetDateFormatA, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, SetStdHandle, CreateFileA, CompareStringA, CompareStringW, SetEnvironmentVariableA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, GetLocaleInfoW, GetTimeZoneInformation, SetEndOfFile, DeleteFileA
> netapi32.dll: NetUserGetInfo, NetApiBufferFree
> ole32.dll: CreateStreamOnHGlobal, OleRun, CoInitializeEx, CoUninitialize, CoTaskMemFree, CoInitialize, CoTaskMemAlloc, CoTaskMemRealloc, CoCreateInstance
> oleaut32.dll: -, -, -, -, -, -
> psapi.dll: EnumProcesses, EnumProcessModules, GetModuleFileNameExW
> shell32.dll: SHGetFolderPathW, Shell_NotifyIconW, ShellExecuteExW
> shlwapi.dll: PathSearchAndQualifyW
> urlmon.dll: URLDownloadToFileW
> user32.dll: CharNextW, wvsprintfW, LoadStringW, GetWindowLongW, SetWindowTextW, GetWindowTextW, SetWindowPos, InvalidateRect, ShowWindow, EnableWindow, SendMessageW, UnregisterClassA, CopyImage, GetForegroundWindow, GetCapture, GetQueueStatus, GetClipboardOwner, SendMessageA, FindWindowA, GetDlgItem, MessageBoxW, GetActiveWindow, DialogBoxParamW, GetCursorPos, ClientToScreen, CreateWindowExW, IsMenu, GetSubMenu, SetMenuDefaultItem, TrackPopupMenu, RegisterClassExW, LoadCursorW, GetClassInfoExW, CallWindowProcW, KillTimer, SetTimer, IsWindow, DefWindowProcW, DestroyMenu, DestroyWindow, SetWindowLongW, EndPaint, BeginPaint, GetDC, EndDialog, DrawTextW, GetSystemMetrics, LoadImageW, DestroyIcon, GetParent, GetWindow, GetWindowRect, SystemParametersInfoW, GetClientRect, MapWindowPoints
> version.dll: VerQueryValueW, GetFileVersionInfoSizeW, GetFileVersionInfoW
> wininet.dll: InternetOpenW, InternetCloseHandle, DeleteUrlCacheEntryW, InternetReadFile, InternetQueryDataAvailable, HttpSendRequestW, HttpOpenRequestW, InternetConnectW, HttpQueryInfoW

( 0 exports )
TrID  : File type identification
Win32 Executable MS Visual C++ (generic) (75.0%)
Win32 Executable Generic (16.9%)
Generic Win/DOS Executable (3.9%)
DOS Executable Generic (3.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ssdeep: 12288:NqPdJxVbspi5XRwl0OOwcXZOQV12/IL8U81b9mXtG1:NqPrxVbspiRRZwUZOQV219yi
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=44AD881300F3D27B10D80AFC94DE5000FE648854
PEiD  : -
RDS   : NSRL Reference Data Set
-

שימו לב שימו לב: VirusTotal הינו שיורת חינם המוצע על ידי Hispasec Sistemas. אין הבטחות לגבי זמינות והמשך השירות הזה. למרות שרמת הזיהוי שמתאפשרת על ידי שימוש בכמה מנועי אנטיוירוסים הרבה יותר עליונה מאשר רק מוצר אחד, התוצאות הללו אינן מבטיחות את אי-נזק של הקובץ. כרגע, לא קיים פתרון אשר מציע 100% אפקטיביות לזיהוי וירוסים ותוכנות זדונה.

קובץ אחר