Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

Virustotal è un servizio che analizza files sospetti e permette la rapida identificazione di virus, worms, trojans, e di tutti i tipi di malware rilevati dai motori antivirus. Più informazioni...

File codec.exe ricevuto il 2009.11.23 08:13:57 (UTC)
Stato corrente: finito
Risultato: 2/41 (4.88%)
Antivirus Versione Ultimo aggiornamento Risultato
a-squared 4.5.0.41 2009.11.23 -
AhnLab-V3 5.0.0.2 2009.11.20 -
AntiVir 7.9.1.72 2009.11.22 -
Antiy-AVL 2.0.3.7 2009.11.23 -
Authentium 5.2.0.5 2009.11.22 -
Avast 4.8.1351.0 2009.11.22 -
AVG 8.5.0.425 2009.11.22 -
BitDefender 7.2 2009.11.23 -
CAT-QuickHeal 10.00 2009.11.23 -
ClamAV 0.94.1 2009.11.23 -
Comodo 3006 2009.11.23 -
DrWeb 5.0.0.12182 2009.11.23 -
eSafe 7.0.17.0 2009.11.19 -
eTrust-Vet 35.1.7136 2009.11.23 -
F-Prot 4.5.1.85 2009.11.22 -
F-Secure 9.0.15370.0 2009.11.20 -
Fortinet 3.120.0.0 2009.11.23 -
GData 19 2009.11.23 -
Ikarus T3.1.1.74.0 2009.11.23 -
Jiangmin 11.0.800 2009.11.23 -
K7AntiVirus 7.10.901 2009.11.20 -
Kaspersky 7.0.0.125 2009.11.23 -
McAfee 5810 2009.11.22 -
McAfee+Artemis 5810 2009.11.22 -
McAfee-GW-Edition 6.8.5 2009.11.22 -
Microsoft 1.5302 2009.11.23 -
NOD32 4628 2009.11.22 a variant of Win32/Olmarik.RF
Norman 6.03.02 2009.11.21 -
nProtect 2009.1.8.0 2009.11.22 -
Panda 10.0.2.2 2009.11.22 Suspicious file
PCTools 7.0.3.5 2009.11.23 -
Prevx 3.0 2009.11.23 -
Rising 22.23.00.04 2009.11.23 -
Sophos 4.47.0 2009.11.23 -
Sunbelt 3.2.1858.2 2009.11.22 -
Symantec 1.4.4.12 2009.11.23 -
TheHacker 6.5.0.2.075 2009.11.20 -
TrendMicro 9.0.0.1003 2009.11.23 -
VBA32 3.12.12.0 2009.11.22 -
ViRobot 2009.11.23.2048 2009.11.23 -
VirusBuster 5.0.21.0 2009.11.22 -
Informazioni addizionali
File size: 71168 bytes
MD5   : c7ba4bd42fb6d18846bbcac366138aa7
SHA1  : c512e133c18b21556132fceae001bf1ffe553241
SHA256: 8d9a1e1f97e218cb7daf8969b23d3caafcaa9faeca48c40fecf1887be8a1774c
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1370
timedatestamp.....: 0x4B03C9A6 (Wed Nov 18 11:17:10 2009)
machinetype.......: 0x14C (Intel I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x4468 0x4600 7.65 dd27cc9b9a56bde5a00af6fd0b9481fc
.rdata 0x6000 0xC3C 0xE00 4.01 c2f5d33d15cfd570e44c349917b53749
.data 0x7000 0x39D6 0x3A00 7.85 159e2e421c26e5e8f152a346052ca56a
.rsrc 0xB000 0x804E 0x8200 7.70 61ba3a682ad60f5ad883902cbe58e734
.reloc 0x14000 0x32 0x200 0.74 56d23e9863afc6d378d643634b6b7c91

( 5 imports )

> gdi32.dll: GetObjectW, SetRectRgn, CreateRectRgnIndirect, GetStockObject, DeleteObject, GetDeviceCaps, ExtCreatePen, MoveToEx, SetDIBitsToDevice, SetDIBits, GetTextExtentPoint32W, SetStretchBltMode, SetPixel, CreateRectRgn, SetViewportExtEx
> kernel32.dll: DeleteFileW, WaitForSingleObjectEx, ExitProcess, GetProfileStringA, GetVersionExW, GetFileSizeEx, CreateEventW, WritePrivateProfileStructW, FreeEnvironmentStringsW, GetEnvironmentVariableA, ExitProcess, GetTimeFormatA, VirtualAlloc, GetModuleHandleA, GetModuleFileNameA, UpdateResourceW, LockResource, CopyFileA, GetTickCount, VirtualFree, InterlockedIncrement, GetProfileIntW, GetTempFileNameW, LoadLibraryA, DeleteFileA
> msvcrt.dll: _mbsncpy, memcpy, wcstoul, __p___winitenv, __query_new_handler@@YAP6AHI@ZXZ, wcsncmp, fopen, is_wctype, iscntrl
> user32.dll: GetClassWord, GetClassLongW, CreateWindowExW, GetMonitorInfoW, EndDialog, EmptyClipboard, LoadImageW, EqualRect, AppendMenuW, TrackPopupMenu, SendMessageW, LoadRemoteFonts, MapWindowPoints, GetWindowTextW, GetWindowPlacement, EnableMenuItem, GetWindowLongW, IsClipboardFormatAvailable, LoadCursorW, MessageBoxW
> winmm.dll: waveOutMessage, midiStreamRestart, timeGetSystemTime, mmioRead, waveOutGetDevCapsW, timeGetDevCaps, mmioInstallIOProcA, midiInMessage, mmioStringToFOURCCA, sndPlaySoundA, midiOutCacheDrumPatches, midiStreamClose, mmTaskBlock, waveOutGetID, joyGetThreshold, joySetCapture

( 1 exports )

> VylvwyVingukqErwhprFtr, VuGzoholOuzrlxNvglwWo, RlafqnHsese
TrID  : File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
ssdeep: 1536:fXZqCNqzXLy2Rm8Ki457Gae26WUtaVslAuK6ZgAk2Rx9hQ:fXZqud957PiWwAuK6eAk2
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=D7A04F8E00E98E8016920126515FB900AC1E88A4
PEiD  : -
RDS   : NSRL Reference Data Set
-

ATENTION ATTENZIONE: VirusTotal è un servizio gratuito offerto da Hispasec Sistemas. Non esiste garanzia circa la disponibilità e la continuità di questo servizio. Nonostante il livello di identificazione conseguito da multipli motori antivirus sia molto superiore a quello offerto dal singolo prodotto, questi risultati NON garantiscono la sicurezza di un file. Attualmente, non esiste soluzione che offra certezza al 100% sull'identificazione di virus e malware.

Scan another file