Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

Virustotal è un servizio che analizza files sospetti e permette la rapida identificazione di virus, worms, trojans, e di tutti i tipi di malware rilevati dai motori antivirus. Più informazioni...

File nvaux32.dll ricevuto il 2008.11.15 04:16:02 (UTC)
Stato corrente: finito
Risultato: 8/36 (22.22%)
Antivirus Versione Ultimo aggiornamento Risultato
AhnLab-V3 2008.11.14.3 2008.11.14 Win-Trojan/Xema.variant
AntiVir 7.9.0.31 2008.11.14 TR/Crypt.XDR.Gen
Authentium 5.1.0.4 2008.11.14 W32/Dropper.gen8!Maximus
Avast 4.8.1281.0 2008.11.14 -
AVG 8.0.0.199 2008.11.14 -
BitDefender 7.2 2008.11.15 -
CAT-QuickHeal 10.00 2008.11.13 -
ClamAV 0.94.1 2008.11.14 -
DrWeb 4.44.0.09170 2008.11.15 -
eSafe 7.0.17.0 2008.11.13 -
eTrust-Vet 31.6.6209 2008.11.14 -
Ewido 4.0 2008.11.14 -
F-Prot 4.4.4.56 2008.11.14 W32/Dropper.gen8!Maximus
F-Secure 8.0.14332.0 2008.11.15 -
Fortinet 3.117.0.0 2008.11.15 -
GData 19 2008.11.15 -
Ikarus T3.1.1.45.0 2008.11.14 -
K7AntiVirus 7.10.525 2008.11.14 -
Kaspersky 7.0.0.125 2008.11.15 -
McAfee 5434 2008.11.14 -
Microsoft 1.4104 2008.11.15 Worm:Win32/Mariofev.A
NOD32 3615 2008.11.15 -
Norman 5.80.02 2008.11.14 -
Panda 9.0.0.4 2008.11.14 -
PCTools 4.4.2.0 2008.11.14 -
Prevx1 V2 2008.11.15 Malicious Software
Rising 21.03.42.00 2008.11.14 -
SecureWeb-Gateway 6.7.6 2008.11.14 Trojan.Crypt.XDR.Gen
Sophos 4.35.0 2008.11.15 W32/MarioF-B
Sunbelt 3.1.1801.2 2008.11.14 -
Symantec 10 2008.11.15 -
TheHacker 6.3.1.1.152 2008.11.13 -
TrendMicro 8.700.0.1004 2008.11.14 -
VBA32 3.12.8.9 2008.11.14 -
ViRobot 2008.11.15.1469 2008.11.15 -
VirusBuster 4.5.11.0 2008.11.14 -
Informazioni addizionali
File size: 147456 bytes
MD5...: 94d724d0740a3f6a26b624051950b053
SHA1..: 2c945ff43d8a5ff64133705a1428dfaf39f90c23
SHA256: e1fa2ecc3e9682a96afe32b990fdedbcc48b1cd10689029493a83043aa9df89b
SHA512: 1183944b219aad584d56f6ac9d892ce4ec144c453711c82e715ae7ee840e8bba
f4118059fdfc7361b9b5e78c5b1e92046fb90c4ace5d7ef5ffc9a69f0d903374
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification
Win32 Executable MS Visual C++ (generic) (62.9%)
Win32 Executable Generic (14.2%)
Win32 Dynamic Link Library (generic) (12.6%)
Win16/32 Executable Delphi generic (3.4%)
Generic Win/DOS Executable (3.3%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1000779f
timedatestamp.....: 0x491ddf78 (Fri Nov 14 20:28:40 2008)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x6df9 0x7000 5.84 258c3cae11032710cd8c1f1dc41c6f25
.rdata 0x8000 0x17d2 0x2000 3.85 6d89c4b018f4b81559ae48a80884d9c9
.data 0xa000 0x990 0x1000 3.49 152ff6574a7b99fb81ad925bea30a77f
.rsrc 0xb000 0x17890 0x18000 6.78 ccdd3f751e3f84f15f4b4050f7073682
.reloc 0x23000 0x998 0x1000 3.75 8d6254f6a982f281f3505b793e2c5f72

( 7 imports )
> MFC42.DLL: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -
> MSVCRT.dll: _adjust_fdiv, _initterm, __1type_info@@UAE@XZ, _onexit, __dllonexit, memset, memmove, _CxxThrowException, mbstowcs, _ftol, rand, srand, strcmp, time, localtime, calloc, asctime, strcat, memcpy, strlen, realloc, malloc, free, sprintf, __CxxFrameHandler
> KERNEL32.dll: GetVersionExA, GetLocaleInfoA, GlobalMemoryStatus, GetSystemInfo, GetLastError, GetCurrentThreadId, SetUnhandledExceptionFilter, GetTickCount, LoadLibraryA, GetSystemDirectoryA, Sleep, GetModuleHandleA, GetCurrentProcess, ReadProcessMemory, FindResourceA, SizeofResource, LoadResource, GetModuleFileNameA, VirtualQuery, GetProcAddress, VirtualProtect, VirtualFree, VirtualAlloc, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, lstrlenA, FreeLibrary, LoadLibraryExA, ReadFile, GetFileSize, SetLastError, InitializeCriticalSection, OutputDebugStringA, IsBadCodePtr, IsBadReadPtr, CloseHandle, Module32Next, lstrcpynA, Module32First, CreateToolhelp32Snapshot, CreateThread, CreateFileA, FreeResource, lstrcmpA
> USER32.dll: TranslateMessage, DispatchMessageA, SetTimer, wsprintfA, GetMessageA, KillTimer
> ADVAPI32.dll: RegSetValueExA, RegCreateKeyExA, RegCloseKey, RegOpenKeyExA, RegDeleteKeyA, RegDeleteValueA, RegEnumKeyA, RegEnumValueA, RegEnumKeyExA, RegQueryValueExA
> ole32.dll: CLSIDFromString
> SHLWAPI.dll: PathFileExistsA

( 14 exports )
GetModuleId, ke_GetFirstObj, ke_GetModuleVersion, ke_GetNextObj, ke_IsModuleExists, ke_ModuleAvailable, ke_NotifyEvent, ke_Rand, ke_RegisterAndLoadNewModule, ke_RestartProcess, ke_TerminateKernel, ke_UnloadModuleRequest, ke_free, ke_malloc
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=2128550F005E56AE403C02F70AC6590022E759EA

ATENTION ATTENZIONE: VirusTotal è un servizio gratuito offerto da Hispasec Sistemas. Non esiste garanzia circa la disponibilità e la continuità di questo servizio. Nonostante il livello di identificazione conseguito da multipli motori antivirus sia molto superiore a quello offerto dal singolo prodotto, questi risultati NON garantiscono la sicurezza di un file. Attualmente, non esiste soluzione che offra certezza al 100% sull'identificazione di virus e malware.

Scan another file