Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

Virustotal è un servizio che analizza files sospetti e permette la rapida identificazione di virus, worms, trojans, e di tutti i tipi di malware rilevati dai motori antivirus. Più informazioni...

File client_update.exe ricevuto il 2009.06.12 06:53:42 (UTC)
Stato corrente: finito
Risultato: 24/38 (63.16%)
Antivirus Versione Ultimo aggiornamento Risultato
a-squared 4.5.0.18 2009.06.12 Win32.Outbreak!IK
AhnLab-V3 5.0.0.2 2009.06.12 -
AntiVir 7.9.0.187 2009.06.12 TR/Obfuscator.FH.44
Antiy-AVL 2.0.3.1 2009.06.12 Trojan/Win32.FraudLoad.gen
Authentium 5.1.2.4 2009.06.12 W32/Trojan3.AYA
Avast 4.8.1335.0 2009.06.11 Win32:Walivun
AVG 8.5.0.339 2009.06.11 BHO.IXV
BitDefender 7.2 2009.06.12 -
CAT-QuickHeal 10.00 2009.06.12 TrojanDownloader.FraudLoad.ep
ClamAV 0.94.1 2009.06.12 -
Comodo 1319 2009.06.12 -
DrWeb 5.0.0.12182 2009.06.12 Trojan.DownLoad.36339
eSafe 7.0.17.0 2009.06.11 -
eTrust-Vet 31.6.6554 2009.06.11 Win32/SillyDl.NUQ
F-Prot 4.4.4.56 2009.06.12 W32/Trojan3.AYA
Fortinet 3.117.0.0 2009.06.12 -
GData 19 2009.06.12 Win32:Walivun
Ikarus T3.1.1.59.0 2009.06.12 Win32.Outbreak
K7AntiVirus 7.10.760 2009.06.10 Trojan-Downloader.Win32.FraudLoad.epb
Kaspersky 7.0.0.125 2009.06.12 Trojan-Downloader.Win32.FraudLoad.epb
McAfee 5643 2009.06.11 Generic Downloader.z
McAfee+Artemis 5643 2009.06.11 Generic Downloader.z
McAfee-GW-Edition 6.7.6 2009.06.12 Trojan.Obfuscator.FH.44
Microsoft 1.4701 2009.06.12 VirTool:Win32/Obfuscator.FH
NOD32 4149 2009.06.11 Win32/TrojanDownloader.Small.OPX
Norman 6.01.09 2009.06.11 W32/Zbot.gen19
nProtect 2009.1.8.0 2009.06.12 -
Panda 10.0.0.14 2009.06.11 -
PCTools 4.4.2.0 2009.06.12 -
Prevx 3.0 2009.06.12 High Risk Worm
Rising 21.33.40.00 2009.06.12 -
Sophos 4.42.0 2009.06.12 Mal/WaledPak-A
Sunbelt 3.2.1858.2 2009.06.12 -
Symantec 1.4.4.12 2009.06.12 Downloader
TheHacker 6.3.4.3.344 2009.06.11 -
TrendMicro 8.950.0.1092 2009.06.12 -
VBA32 3.12.10.7 2009.06.11 Trojan-Downloader.Win32.FraudLoad.epb
ViRobot 2009.6.12.1782 2009.06.12 -
Informazioni addizionali
File size: 38144 bytes
MD5   : c81ba436d85bba944adb74b86c90fae8
SHA1  : 383575cc1571c3ab2fc0f246969284a9e05a6738
SHA256: 4bba4356e1e77d93d335551bbe9442718c79f85d3c43e891c227fbc811d1de15
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x2ACD
timedatestamp.....: 0x483AD1F0 (Mon May 26 17:06:24 2008)
machinetype.......: 0x14C (Intel I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x6000 0x5E00 6.97 b1ff421a1cf87d9e26f400d0ee5132ab
.rdata 0x7000 0x1000 0x800 4.83 631c5e4cce16db1575d49a4c8c3e80a1
.rsrc 0x8000 0x3000 0x2800 4.66 0d00f21d879d652a222652a8b3f8a1c5
.data 0xB000 0x1000 0x200 0.00 bf619eac0cdf3f68d496ea9344137e8b

( 2 imports )

> kernel32.dll: HeapFree, InitializeCriticalSection, GetModuleHandleA, HeapFree, GetProcessHeap, CloseHandle, GetLastError, GetCurrentProcess, lstrcmpiW, GetCurrentThreadId, ReadFile, SetLastError, lstrlenA, CloseHandle, GetModuleFileNameA, lstrlenA, InterlockedCompareExchange, GetModuleFileNameA, LocalAlloc, FreeLibrary, UnhandledExceptionFilter, InterlockedDecrement, LoadLibraryA, SetLastError, GetModuleFileNameW, LoadLibraryA, FreeLibrary, QueryPerformanceCounter, CreateThread, InterlockedExchange, InterlockedCompareExchange, Sleep, MultiByteToWideChar, HeapFree, InterlockedExchange, DeleteCriticalSection, InterlockedDecrement, CreateFileW, lstrlenA
> user32.dll: GetDC, GetDlgItem, SetDlgItemTextW, SetCursor, EndDialog, wsprintfA, DispatchMessageW, DispatchMessageW, CreateWindowExW, SetWindowLongW, SetCursor, GetParent, GetSysColor, MessageBoxW, SetForegroundWindow, EndPaint, SetWindowPos, GetDC, TranslateMessage, LoadIconW, MessageBoxW, ShowWindow, SetCursor, MessageBoxW, KillTimer, GetParent, EndDialog, SendMessageW, IsWindow, PostMessageW, DialogBoxParamW, EnableWindow, GetFocus, DialogBoxParamW, SetWindowTextW, GetWindowLongW, SendMessageW, LoadCursorW, BeginPaint, InvalidateRect

( 0 exports )
TrID  : File type identification
Win32 Executable Generic (38.4%)
Win32 Dynamic Link Library (generic) (34.2%)
Clipper DOS Executable (9.1%)
Generic Win/DOS Executable (9.0%)
DOS Executable Generic (9.0%)
ThreatExpert: http://www.threatexpert.com/report.aspx?md5=c81ba436d85bba944adb74b86c90fae8
ssdeep: 768:IeKw3HgqP6OF9GykzEI1iZ14UwZPuXTHJYdQId18VF:JKw3HAOFkykz9wGhuVVF
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=D129C24300E58B9B951700169DDA1900820B43C9
PEiD  : -
CWSandbox: http://research.sunbelt-software.com/partnerresource/MD5.aspx?md5=c81ba436d85bba944adb74b86c90fae8
RDS   : NSRL Reference Data Set
-

ATENTION ATTENZIONE: VirusTotal è un servizio gratuito offerto da Hispasec Sistemas. Non esiste garanzia circa la disponibilità e la continuità di questo servizio. Nonostante il livello di identificazione conseguito da multipli motori antivirus sia molto superiore a quello offerto dal singolo prodotto, questi risultati NON garantiscono la sicurezza di un file. Attualmente, non esiste soluzione che offra certezza al 100% sull'identificazione di virus e malware.

Scan another file