|
VirusTotal הינו שירות אשר מנתח קבצים חשודים ומקדם זיהוי מהיר של וירוסים, תולעים, טרויינים וכל סוגי תוכנות זדונה שמזוהות על ידי מנועים של אנטיורוסים שונים. מידע נוסף... |
| אנטיוירוס | גרסה | עדכון אחרון | תוצאה |
|---|---|---|---|
| a-squared | 4.5.0.24 | 2009.09.15 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.09.15 | - |
| AntiVir | 7.9.1.14 | 2009.09.15 | - |
| Antiy-AVL | 2.0.3.7 | 2009.09.15 | - |
| Authentium | 5.1.2.4 | 2009.09.15 | - |
| Avast | 4.8.1351.0 | 2009.09.14 | - |
| AVG | 8.5.0.412 | 2009.09.15 | - |
| BitDefender | 7.2 | 2009.09.15 | - |
| CAT-QuickHeal | 10.00 | 2009.09.15 | - |
| ClamAV | 0.94.1 | 2009.09.15 | - |
| Comodo | 2326 | 2009.09.15 | UnclassifiedMalware |
| DrWeb | 5.0.0.12182 | 2009.09.15 | Adware.DoubleD.5 |
| eSafe | 7.0.17.0 | 2009.09.15 | - |
| eTrust-Vet | 31.6.6738 | 2009.09.15 | - |
| F-Prot | 4.5.1.85 | 2009.09.15 | - |
| F-Secure | 8.0.14470.0 | 2009.09.15 | - |
| Fortinet | 3.120.0.0 | 2009.09.15 | Adware/DoubleD |
| GData | 19 | 2009.09.15 | - |
| Ikarus | T3.1.1.72.0 | 2009.09.15 | - |
| Jiangmin | 11.0.800 | 2009.09.15 | - |
| K7AntiVirus | 7.10.845 | 2009.09.15 | - |
| Kaspersky | 7.0.0.125 | 2009.09.15 | - |
| McAfee | 5741 | 2009.09.14 | - |
| McAfee+Artemis | 5741 | 2009.09.14 | Artemis!BA147201FDCA |
| McAfee-GW-Edition | 6.8.5 | 2009.09.15 | Heuristic.LooksLike.Riskware.Tool.J |
| Microsoft | 1.5005 | 2009.09.15 | - |
| NOD32 | 4427 | 2009.09.15 | a variant of Win32/Adware.DoubleD.AB |
| Norman | 6.01.09 | 2009.09.15 | - |
| nProtect | 2009.1.8.0 | 2009.09.15 | - |
| Panda | 10.0.2.2 | 2009.09.14 | Suspicious file |
| PCTools | 4.4.2.0 | 2009.09.14 | - |
| Prevx | 3.0 | 2009.09.15 | Medium Risk Malware |
| Rising | 21.47.14.00 | 2009.09.15 | - |
| Sophos | 4.45.0 | 2009.09.15 | - |
| Sunbelt | 3.2.1858.2 | 2009.09.15 | - |
| Symantec | 1.4.4.12 | 2009.09.15 | - |
| TheHacker | 6.3.4.4.404 | 2009.09.15 | - |
| TrendMicro | 8.950.0.1094 | 2009.09.15 | - |
| VBA32 | 3.12.10.10 | 2009.09.14 | - |
| ViRobot | 2009.9.15.1937 | 2009.09.15 | - |
| VirusBuster | 4.6.5.0 | 2009.09.14 | - |
| מידע נוסף |
|---|
| File size: 659456 bytes |
| MD5 : ba147201fdcacf1f9717a2f26f40eaae |
| SHA1 : 9d8d4070aa78cfd649f53a6d934c334c6ddef042 |
| SHA256: b49653de11a7689fd2519a490b3c99bd9699475e269306289ac0a02fc9d9528d |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x37EC5 timedatestamp.....: 0x4AA077F5 (Fri Sep 4 04:14:13 2009) machinetype.......: 0x14C (Intel I386) ( 4 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x51C90 0x52000 6.68 0a6c06517b05a8a2f01f85698db9c856 .rdata 0x53000 0x18A4E 0x19000 5.78 24c3d15ba3c914b91c944518cb089dee .data 0x6C000 0x7984 0x3000 3.13 24ac16c7efad3a4c18bc07918e202f6e .rsrc 0x74000 0x31E2C 0x32000 7.40 7b547a91badaddc4fd4625f9daaed9ac ( 14 imports ) > advapi32.dll: CryptAcquireContextW, InitializeSecurityDescriptor, SetSecurityDescriptorDacl, RegEnumKeyExW, RegQueryInfoKeyW, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW, OpenProcessToken, LookupPrivilegeValueW, AdjustTokenPrivileges, RegOpenKeyExW, RegCreateKeyExW, RegOpenKeyW, RegCloseKey, FreeSid, EqualSid, AllocateAndInitializeSid, GetTokenInformation, OpenThreadToken, GetUserNameW, CryptGetHashParam, CryptDestroyHash, CryptHashData, CryptCreateHash, CryptDestroyKey, CryptGetKeyParam, CryptDeriveKey, CryptEncrypt, CryptReleaseContext, CryptDecrypt, RegQueryValueExW, RegCreateKeyW, RegCreateKeyA, RegQueryValueExA, RegSetValueExA, RegOpenKeyA > comctl32.dll: InitCommonControlsEx > gdi32.dll: SetTextColor, CreateBitmap, DPtoLP, DeleteObject, GetObjectW, DeleteDC, GetDIBits, SetBkMode, CreateCompatibleDC, SetBkColor, CreateCompatibleBitmap, BitBlt, SetMapMode, SelectObject, StretchBlt, GetMapMode > kernel32.dll: CopyFileW, GetCurrentProcess, CreateToolhelp32Snapshot, Process32FirstW, GetModuleHandleW, LoadLibraryW, GetProcAddress, FreeLibrary, Process32NextW, CloseHandle, ExitThread, CreateThread, RaiseException, EnterCriticalSection, LeaveCriticalSection, InitializeCriticalSection, DeleteCriticalSection, FlushInstructionCache, GetCurrentThreadId, GetLastError, lstrcmpiW, SetLastError, SizeofResource, LoadResource, FindResourceW, CreateDirectoryW, DeleteFileW, OpenProcess, CreateProcessW, CreateEventW, WaitForSingleObject, GetExitCodeProcess, TerminateProcess, FindFirstFileW, FindClose, OutputDebugStringW, DebugBreak, lstrlenA, InterlockedIncrement, InterlockedDecrement, LoadLibraryExW, GetModuleFileNameW, Sleep, CreateMutexW, GetConsoleWindow, CreatePipe, CreateProcessA, SetHandleInformation, GetEnvironmentVariableA, CreateFileMappingA, GetOverlappedResult, GetProcessTimes, GetWindowsDirectoryA, GlobalMemoryStatus, GetThreadTimes, GetSystemTimeAdjustment, SetConsoleMode, FindFirstFileA, CreateEventA, lstrlenW, MultiByteToWideChar, FindNextFileA, ReleaseMutex, LocalAlloc, FindResourceA, GlobalAlloc, GlobalFree, GetSystemTime, GetVersionExW, LocalFree, GetLocalTime, UnmapViewOfFile, MapViewOfFile, GetCurrentThread, GetFileSize, CreateFileW, ReadFile, GetTickCount, SetEvent, LoadLibraryA, GetModuleHandleA, GetTempPathW, LockResource, GetTempFileNameW, GetVersionExA, InterlockedCompareExchange, HeapFree, GetProcessHeap, HeapAlloc, IsProcessorFeaturePresent, VirtualFree, VirtualAlloc, InterlockedExchange, GetACP, GetLocaleInfoA, GetThreadLocale, WideCharToMultiByte, RtlUnwind, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsDebuggerPresent, HeapReAlloc, GetStartupInfoW, GetSystemTimeAsFileTime, LCMapStringA, LCMapStringW, GetCPInfo, GetStringTypeA, GetStringTypeW, ExitProcess, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, GetOEMCP, IsValidCodePage, HeapDestroy, HeapCreate, WriteFile, GetStdHandle, GetModuleFileNameA, HeapSize, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, GetCommandLineW, SetHandleCount, GetFileType, GetStartupInfoA, QueryPerformanceCounter, GetCurrentProcessId, GetConsoleCP, GetConsoleMode, FlushFileBuffers, SetFilePointer, GetTimeFormatA, GetDateFormatA, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, SetStdHandle, CreateFileA, CompareStringA, CompareStringW, SetEnvironmentVariableA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, GetLocaleInfoW, GetTimeZoneInformation, SetEndOfFile, DeleteFileA > netapi32.dll: NetUserGetInfo, NetApiBufferFree > ole32.dll: CreateStreamOnHGlobal, OleRun, CoInitializeEx, CoUninitialize, CoTaskMemFree, CoInitialize, CoTaskMemAlloc, CoTaskMemRealloc, CoCreateInstance > oleaut32.dll: -, -, -, -, -, - > psapi.dll: EnumProcesses, EnumProcessModules, GetModuleFileNameExW > shell32.dll: SHGetFolderPathW, Shell_NotifyIconW, ShellExecuteExW > shlwapi.dll: PathSearchAndQualifyW > urlmon.dll: URLDownloadToFileW > user32.dll: CharNextW, wvsprintfW, LoadStringW, GetWindowLongW, SetWindowTextW, GetWindowTextW, SetWindowPos, InvalidateRect, ShowWindow, EnableWindow, SendMessageW, UnregisterClassA, CopyImage, GetForegroundWindow, GetCapture, GetQueueStatus, GetClipboardOwner, SendMessageA, FindWindowA, GetDlgItem, MessageBoxW, GetActiveWindow, DialogBoxParamW, GetCursorPos, ClientToScreen, CreateWindowExW, IsMenu, GetSubMenu, SetMenuDefaultItem, TrackPopupMenu, RegisterClassExW, LoadCursorW, GetClassInfoExW, CallWindowProcW, KillTimer, SetTimer, IsWindow, DefWindowProcW, DestroyMenu, DestroyWindow, SetWindowLongW, EndPaint, BeginPaint, GetDC, EndDialog, DrawTextW, GetSystemMetrics, LoadImageW, DestroyIcon, GetParent, GetWindow, GetWindowRect, SystemParametersInfoW, GetClientRect, MapWindowPoints > version.dll: VerQueryValueW, GetFileVersionInfoSizeW, GetFileVersionInfoW > wininet.dll: InternetOpenW, InternetCloseHandle, DeleteUrlCacheEntryW, InternetReadFile, InternetQueryDataAvailable, HttpSendRequestW, HttpOpenRequestW, InternetConnectW, HttpQueryInfoW ( 0 exports ) |
| TrID : File type identification Win32 Executable MS Visual C++ (generic) (75.0%) Win32 Executable Generic (16.9%) Generic Win/DOS Executable (3.9%) DOS Executable Generic (3.9%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
| ssdeep: 12288:NqPdJxVbspi5XRwl0OOwcXZOQV12/IL8U81b9mXtG1:NqPrxVbspiRRZwUZOQV219yi |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=44AD881300F3D27B10D80AFC94DE5000FE648854 |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
שימו לב:
VirusTotal הינו שיורת חינם המוצע על ידי Hispasec Sistemas. אין הבטחות לגבי זמינות והמשך השירות הזה. למרות שרמת הזיהוי שמתאפשרת על ידי שימוש בכמה מנועי אנטיוירוסים הרבה יותר עליונה מאשר רק מוצר אחד, התוצאות הללו אינן מבטיחות את אי-נזק של הקובץ. כרגע, לא קיים פתרון אשר מציע 100% אפקטיביות לזיהוי וירוסים ותוכנות זדונה.