Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

Virustotal è un servizio che analizza files sospetti e permette la rapida identificazione di virus, worms, trojans, e di tutti i tipi di malware rilevati dai motori antivirus. Più informazioni...

File trojan_file.sc ricevuto il 2009.06.03 04:14:04 (UTC)
Stato corrente: finito
Risultato: 6/40 (15.00%)
Antivirus Versione Ultimo aggiornamento Risultato
a-squared 4.0.0.101 2009.06.03 Gen.Trojan!IK
AhnLab-V3 5.0.0.2 2009.06.02 -
AntiVir 7.9.0.180 2009.06.02 -
Antiy-AVL 2.0.3.1 2009.06.03 -
Authentium 5.1.2.4 2009.06.03 -
Avast 4.8.1335.0 2009.06.02 -
AVG 8.5.0.339 2009.06.02 -
BitDefender 7.2 2009.06.03 Gen:Trojan.Heur.981FE0D594
CAT-QuickHeal 10.00 2009.06.02 -
ClamAV 0.94.1 2009.06.03 -
Comodo 1240 2009.06.03 -
DrWeb 5.0.0.12182 2009.06.03 -
eSafe 7.0.17.0 2009.06.02 -
eTrust-Vet 31.6.6536 2009.06.02 -
F-Prot 4.4.4.56 2009.06.03 -
F-Secure 8.0.14470.0 2009.06.03 -
Fortinet 3.117.0.0 2009.06.03 -
GData 19 2009.06.03 Gen:Trojan.Heur.981FE0D594
Ikarus T3.1.1.57.0 2009.06.03 -
K7AntiVirus 7.10.752 2009.06.02 Trojan.Win32.Malware.1
Kaspersky 7.0.0.125 2009.06.03 -
McAfee 5634 2009.06.02 -
McAfee+Artemis 5634 2009.06.02 Artemis!56E78ABCA7AC
McAfee-GW-Edition 6.7.6 2009.05.29 -
Microsoft 1.4701 2009.06.02 -
NOD32 4125 2009.06.03 -
Norman 6.01.05 2009.06.02 -
nProtect 2009.1.8.0 2009.06.03 -
Panda 10.0.0.14 2009.06.02 -
PCTools 4.4.2.0 2009.06.02 -
Prevx 3.0 2009.06.03 -
Rising 21.32.20.00 2009.06.03 -
Sophos 4.42.0 2009.06.03 -
Sunbelt 3.2.1858.2 2009.06.02 Gen-Trojan.Heur
Symantec 1.4.4.12 2009.06.03 -
TheHacker 6.3.4.3.338 2009.06.03 -
TrendMicro 8.950.0.1092 2009.06.03 -
VBA32 3.12.10.6 2009.06.02 -
ViRobot 2009.6.3.1766 2009.06.03 -
VirusBuster 4.6.5.0 2009.06.02 -
Informazioni addizionali
File size: 2249992 bytes
MD5   : 56e78abca7acad5165b7390eaa32ca67
SHA1  : c5cc42fbfce2f3ef6cc3d1aaf4de40c2b8a84f88
SHA256: 7df0b616801de17732fc6f6e5a07d7bb2a738c7b3816f2121e2ad40e7707c188
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x17DE0
timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992)
machinetype.......: 0x14C (Intel I386)

( 8 sections )
name viradd virsiz rawdsiz ntrpy md5
CODE 0x1000 0x16E44 0x17000 6.45 e27b030008304239b7164145b3f51744
DATA 0x18000 0x700 0x800 3.19 22c2125508951e55c9f7304c58804faf
BSS 0x19000 0x8AD 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.idata 0x1A000 0x14D0 0x1600 4.79 08b2ec6b7f09cb82de12e663d8041976
.tls 0x1C000 0x8 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rdata 0x1D000 0x18 0x200 0.20 17291f4d14f4488dcc09f44b431f3d22
.reloc 0x1E000 0x11C4 0x1200 6.70 c6aec7ca10da40ac288033bc4bdfc126
.rsrc 0x20000 0x12C8 0x1400 5.55 3622d0878be0b3880a4c3db4a37f269a

( 10 imports )

> advapi32.dll: RegSetValueExA, RegQueryValueExA, RegQueryInfoKeyA, RegOpenKeyExA, RegEnumKeyExA, RegCreateKeyExA, RegCloseKey, OpenThreadToken, OpenProcessToken, LookupPrivilegeValueA, GetUserNameA, GetTokenInformation, FreeSid, EqualSid, AllocateAndInitializeSid, AdjustTokenPrivileges
> cabinet.dll: FDIDestroy, FDICopy, FDICreate
> comctl32.dll: ImageList_Draw, ImageList_SetBkColor, ImageList_Create, InitCommonControls
> gdi32.dll: StretchDIBits, StretchBlt, SetWindowOrgEx, SetTextColor, SetStretchBltMode, SetRectRgn, SetROP2, SetPixel, SetDIBits, SetBrushOrgEx, SetBkMode, SetBkColor, SelectObject, SaveDC, RestoreDC, OffsetRgn, MoveToEx, IntersectClipRect, GetTextExtentPoint32A, GetStockObject, GetPixel, GetObjectA, GetDIBits, ExtSelectClipRgn, ExcludeClipRect, DeleteObject, DeleteDC, CreateSolidBrush, CreateRectRgn, CreateFontIndirectA, CreateDIBSection, CreateCompatibleDC, CreateCompatibleBitmap, CreateBrushIndirect, CombineRgn, BitBlt, AddFontResourceA
> kernel32.dll: GetCurrentThreadId, WideCharToMultiByte, ExitProcess, UnhandledExceptionFilter, RtlUnwind, RaiseException, TlsSetValue, TlsGetValue, LocalAlloc, GetModuleHandleA, FreeLibrary, HeapFree, HeapReAlloc, HeapAlloc, GetProcessHeap, WritePrivateProfileStringA, WriteFile, WinExec, WaitForSingleObject, TerminateProcess, Sleep, SetFileTime, SetFilePointer, SetFileAttributesA, SetErrorMode, SetEndOfFile, SetCurrentDirectoryA, RemoveDirectoryA, ReadFile, OpenProcess, MultiByteToWideChar, LocalFileTimeToFileTime, LoadLibraryA, GlobalFree, GlobalAlloc, GetWindowsDirectoryA, GetVersionExA, GetVersion, GetUserDefaultLangID, GetTimeFormatA, GetTempPathA, GetSystemDirectoryA, GetShortPathNameA, GetProcAddress, GetPrivateProfileStringA, GetModuleHandleA, GetModuleFileNameA, GetLastError, GetFullPathNameA, GetFileTime, GetFileSize, GetFileAttributesA, GetExitCodeProcess, GetDiskFreeSpaceA, GetDateFormatA, GetCurrentThread, GetCurrentProcess, GetComputerNameA, GetCommandLineA, FreeLibrary, FormatMessageA, FindNextFileA, FindFirstFileA, FindClose, FileTimeToSystemTime, FileTimeToLocalFileTime, ExpandEnvironmentStringsA, DosDateTimeToFileTime, DeleteFileA, CreateFileA, CreateDirectoryA, CompareStringA, CloseHandle
> ole32.dll: OleInitialize, OleInitialize, CoTaskMemFree, CoCreateInstance, CoUninitialize, CoInitialize
> oleaut32.dll: SysFreeString, SysReAllocStringLen, SysAllocStringLen
> shell32.dll: SHGetFileInfoA, ShellExecuteExA, ShellExecuteA, SHGetSpecialFolderLocation, SHGetPathFromIDListA, SHGetMalloc, SHChangeNotify, SHBrowseForFolderA
> user32.dll: wvsprintfA, WaitMessage, ValidateRect, TranslateMessage, ShowWindow, SetWindowPos, SetWindowLongA, SetTimer, SetPropA, SetParent, SetForegroundWindow, SetFocus, SetCursor, SendMessageA, ScreenToClient, RemovePropA, ReleaseDC, RegisterClassA, PostQuitMessage, PostMessageA, PeekMessageA, OffsetRect, MessageBoxA, LoadIconA, LoadCursorA, KillTimer, IsZoomed, IsWindowVisible, IsWindowEnabled, IsWindow, IsIconic, InvalidateRect, GetWindowTextLengthA, GetWindowTextA, GetWindowRgn, GetWindowRect, GetWindowLongA, GetWindowDC, GetUpdateRgn, GetSystemMetrics, GetSystemMenu, GetSysColor, GetPropA, GetParent, GetWindow, GetKeyState, GetFocus, GetDCEx, GetDC, GetCursorPos, GetClientRect, GetClassLongA, GetClassInfoA, GetCapture, FindWindowA, FillRect, ExitWindowsEx, EnumWindows, EndPaint, EnableWindow, EnableMenuItem, DrawTextA, DrawIcon, DispatchMessageA, DestroyWindow, DestroyIcon, DeleteMenu, DefWindowProcA, CopyImage, ClientToScreen, CheckRadioButton, CallWindowProcA, BeginPaint, CharLowerBuffA, CreateWindowExA
> winmm.dll: timeKillEvent, timeSetEvent

( 0 exports )
TrID  : File type identification
Win32 Executable Delphi generic (39.8%)
Win32 Executable Generic (23.1%)
Win32 Dynamic Link Library (generic) (20.5%)
Win16/32 Executable Delphi generic (5.6%)
Generic Win/DOS Executable (5.4%)
ThreatExpert: http://www.threatexpert.com/report.aspx?md5=56e78abca7acad5165b7390eaa32ca67
ssdeep: 49152:ldYSUuPH3ck4UYxeA+4yhf6KknL3fRM9ytl2cER4xJlj38M/jYFMy+zG8v1APOVF:ldYBAck4UYcAc9in7qQr23S7lZ/yMy+v
PEiD  : BobSoft Mini Delphi -> BoB / BobSoft
RDS   : NSRL Reference Data Set
-

ATENTION ATTENZIONE: VirusTotal è un servizio gratuito offerto da Hispasec Sistemas. Non esiste garanzia circa la disponibilità e la continuità di questo servizio. Nonostante il livello di identificazione conseguito da multipli motori antivirus sia molto superiore a quello offerto dal singolo prodotto, questi risultati NON garantiscono la sicurezza di un file. Attualmente, non esiste soluzione che offra certezza al 100% sull'identificazione di virus e malware.

Scan another file