|
Virustotal è un servizio che analizza files sospetti e permette la rapida identificazione di virus, worms, trojans, e di tutti i tipi di malware rilevati dai motori antivirus. Più informazioni... |
| Antivirus | Versione | Ultimo aggiornamento | Risultato |
|---|---|---|---|
| a-squared | 4.5.0.41 | 2009.10.30 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.10.30 | - |
| AntiVir | 7.9.1.53 | 2009.10.30 | TR/Crypt.CFI.Gen |
| Antiy-AVL | 2.0.3.7 | 2009.10.30 | - |
| Authentium | 5.1.2.4 | 2009.10.30 | W32/Worm.APUM |
| Avast | 4.8.1351.0 | 2009.10.30 | - |
| AVG | 8.5.0.423 | 2009.10.30 | - |
| BitDefender | 7.2 | 2009.10.30 | Gen:Trojan.Heur.jTW@rP0EBgpGh |
| CAT-QuickHeal | 10.00 | 2009.10.30 | - |
| ClamAV | 0.94.1 | 2009.10.30 | - |
| Comodo | 2780 | 2009.10.30 | - |
| DrWeb | 5.0.0.12182 | 2009.10.30 | - |
| eSafe | 7.0.17.0 | 2009.10.29 | - |
| eTrust-Vet | 35.1.7094 | 2009.10.30 | - |
| F-Prot | 4.5.1.85 | 2009.10.30 | W32/Worm.APUM |
| F-Secure | 9.0.15370.0 | 2009.10.30 | Gen:Trojan.Heur.jTW@rP0EBgpGh |
| Fortinet | 3.120.0.0 | 2009.10.30 | - |
| GData | 19 | 2009.10.30 | Gen:Trojan.Heur.jTW@rP0EBgpGh |
| Ikarus | T3.1.1.72.0 | 2009.10.30 | - |
| Jiangmin | 11.0.800 | 2009.10.30 | - |
| K7AntiVirus | 7.10.884 | 2009.10.30 | - |
| Kaspersky | 7.0.0.125 | 2009.10.30 | - |
| McAfee | 5787 | 2009.10.30 | - |
| McAfee+Artemis | 5787 | 2009.10.30 | - |
| McAfee-GW-Edition | 6.8.5 | 2009.10.30 | Trojan.Crypt.CFI.Gen |
| Microsoft | 1.5202 | 2009.10.30 | TrojanDownloader:Win32/Banload.gen!N |
| NOD32 | 4559 | 2009.10.30 | - |
| Norman | 6.03.02 | 2009.10.30 | W32/Obfuscated.F!genr |
| nProtect | 2009.1.8.0 | 2009.10.30 | - |
| Panda | 10.0.2.2 | 2009.10.30 | - |
| PCTools | 7.0.3.5 | 2009.10.30 | - |
| Prevx | 3.0 | 2009.10.31 | - |
| Rising | 21.53.43.00 | 2009.10.30 | - |
| Sophos | 4.47.0 | 2009.10.30 | Sus/UnkPacker |
| Sunbelt | 3.2.1858.2 | 2009.10.30 | - |
| Symantec | 1.4.4.12 | 2009.10.30 | - |
| TheHacker | 6.5.0.2.056 | 2009.10.28 | - |
| TrendMicro | 8.950.0.1094 | 2009.10.30 | Cryp_Opet-3 |
| VBA32 | 3.12.10.11 | 2009.10.30 | - |
| ViRobot | 2009.10.30.2013 | 2009.10.30 | - |
| VirusBuster | 4.6.5.0 | 2009.10.30 | - |
| Informazioni addizionali |
|---|
| File size: 1200640 bytes |
| MD5 : 278b22324f4427a9069c31d68a4da26e |
| SHA1 : fc2691d928abe8ec92e090820a65979fcc4cf24b |
| SHA256: 93b36ae5ada04ad1e0f5c19dc88c7d83e127775049bea13524f538334d79a39e |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x2C4329 timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992) machinetype.......: 0x14C (Intel I386) ( 11 sections ) name viradd virsiz rawdsiz ntrpy md5 CODE 0x1000 0xB88E0 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e DATA 0xBA000 0x2E64 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e BSS 0xBD000 0x114D 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .idata 0xBF000 0x2B92 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .tls 0xC2000 0x10 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .rdata 0xC3000 0x18 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .UPX0 0xC4000 0xCB64 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .rsrc 0xD1000 0x24E00 0x7400 5.74 473c67837efe739719141c1a2f1941c1 .UPX1 0xF6000 0xB8268 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .UPX2 0x1AF000 0x11D6D9 0x11D800 7.96 a364a37536e7a11f32045e4206406cf0 .reloc 0x2CD000 0x140 0x200 3.37 8c5941122306f7d66ba186658dbedc0d ( 12 imports ) > advapi32.dll: RegCloseKey > comctl32.dll: ImageList_Create > gdi32.dll: GetEnhMetaFilePaletteEntries > kernel32.dll: lstrcpynA, GetModuleHandleA, LoadLibraryA, VirtualAlloc, VirtualFree, GetModuleFileNameA, ExitProcess > ole32.dll: OleUninitialize > oleaut32.dll: SafeArrayPtrOfIndex > shell32.dll: SHGetMalloc > shlwapi.dll: SHAutoComplete > urlmon.dll: URLDownloadToFileA > user32.dll: RedrawWindow, MessageBoxA > version.dll: GetFileVersionInfoSizeA > wininet.dll: InternetCloseHandle ( 1 exports ) > k_Pq__Xk_r___U1pD_9F6a@__Qo_eN_0T2I__T_0_3X_AK_q_____J1K____t_ZA_K_q_yp_zks@_u_____ cs__Gxr__Fn_C5V8__h__dIS__46Ha__epasEnv_ _uTrHYba6___NA_69__RbI5___Wqq_QUT_kohu_1r6___.__v_x_9oP_w_Wctw_aAERYwX__z9GPWY__8a3q_@ yC.3A__ia0__Q_NlG__J52gh_g77v_M_0MA____0x__n$0P_o$_e_Q_L G_ dpZAn_A_@cYP_VE5__@7._E8_T__. IXpNMva1_dl8_o__Bm_A_CL__yLpR.6@PKL_6eppxon__dwVK_S7_BwM_a_ZdrV0jst__O___Z7I_S_Y@QOUPM4U_5E___uB8pr4_Y_Vc_Cc___k_UJ_t_A_Fv_kTu_AGsrCYR_JjT_o Os_P38wp_Q_G__WCekda0qw8___uSE3LciLUPq__bAess_As__QqE$ 0770r_L___$__W7K$ .qoi__Fqs_tZK_AB_TWF_Z__l_C_R YMv_nPp8__o_Er_6Y__4Ja_6__fV_7jm__f__@5_F2N_o__l_u BwH_Rg_A5T$_zQ$tjg_n _xRDe_sL___IL 8_0H_l8x_s4z.z_00oLzV.thwe_EM_rfLJ__V_k_Kp_zBJLkle__o_oTvjN___Plv1$_6c2_y_E ___jrz1g_CV_B e___m1_C_PEGl__8Kf__3b8__d$DY___Hj0_ _$_YW_k4_$U_WA_Q4hgU_mT_T7 2_1_tu_ipK_BwJ___W_T.ibN_x______T9Wp_r____QQ7IZSHHS___QKm_QX c9y2P__wIywz__1__YtqjO6c_up__6__q6_bE_ystI_5R__Z_qR_sF__r_P_qB__30_o$fb3JPg___ _J_V1gici_B___DD2_0GmwN L.0R__eYq.gK9ywWJJOc_Lk__xoFjFSGOkQsoD2___N__dAIinrU8K0Gz_fBKd__F_3_CHQ_z_I_8_e_9____z9WOj_df_Hcljupyv_MHajc____A__k_bS_Qm__.ATG_ESzCwX_1_3pxeCh_p__0H6_9nPR@_r9M_ub5$v_uSn____7q$______Pa3tL_3_qMj_ICIWa_@q |
| TrID : File type identification Win32 Executable Generic (58.3%) Win16/32 Executable Delphi generic (14.1%) Generic Win/DOS Executable (13.7%) DOS Executable Generic (13.6%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
| ThreatExpert: http://www.threatexpert.com/report.aspx?md5=278b22324f4427a9069c31d68a4da26e |
| ssdeep: 24576:EvrhtLh04Nsuq1sDtyBxaeOMBFuWO4CMDUNVs1w0koWAH+p6nvQPX2Vdfb:EThNh9wsDOxoMBwWZUMw0kXg+p6vQPXs |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
ATTENZIONE:
VirusTotal è un servizio gratuito offerto da Hispasec Sistemas. Non esiste garanzia circa la disponibilità e la continuità di questo servizio. Nonostante il livello di identificazione conseguito da multipli motori antivirus sia molto superiore a quello offerto dal singolo prodotto, questi risultati NON garantiscono la sicurezza di un file. Attualmente, non esiste soluzione che offra certezza al 100% sull'identificazione di virus e malware.