Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

Virustotal è un servizio che analizza files sospetti e permette la rapida identificazione di virus, worms, trojans, e di tutti i tipi di malware rilevati dai motori antivirus. Più informazioni...

File o.jpg ricevuto il 2009.10.30 23:04:27 (UTC)
Stato corrente: finito
Risultato: 11/41 (26.83%)
Antivirus Versione Ultimo aggiornamento Risultato
a-squared 4.5.0.41 2009.10.30 -
AhnLab-V3 5.0.0.2 2009.10.30 -
AntiVir 7.9.1.53 2009.10.30 TR/Crypt.CFI.Gen
Antiy-AVL 2.0.3.7 2009.10.30 -
Authentium 5.1.2.4 2009.10.30 W32/Worm.APUM
Avast 4.8.1351.0 2009.10.30 -
AVG 8.5.0.423 2009.10.30 -
BitDefender 7.2 2009.10.30 Gen:Trojan.Heur.jTW@rP0EBgpGh
CAT-QuickHeal 10.00 2009.10.30 -
ClamAV 0.94.1 2009.10.30 -
Comodo 2780 2009.10.30 -
DrWeb 5.0.0.12182 2009.10.30 -
eSafe 7.0.17.0 2009.10.29 -
eTrust-Vet 35.1.7094 2009.10.30 -
F-Prot 4.5.1.85 2009.10.30 W32/Worm.APUM
F-Secure 9.0.15370.0 2009.10.30 Gen:Trojan.Heur.jTW@rP0EBgpGh
Fortinet 3.120.0.0 2009.10.30 -
GData 19 2009.10.30 Gen:Trojan.Heur.jTW@rP0EBgpGh
Ikarus T3.1.1.72.0 2009.10.30 -
Jiangmin 11.0.800 2009.10.30 -
K7AntiVirus 7.10.884 2009.10.30 -
Kaspersky 7.0.0.125 2009.10.30 -
McAfee 5787 2009.10.30 -
McAfee+Artemis 5787 2009.10.30 -
McAfee-GW-Edition 6.8.5 2009.10.30 Trojan.Crypt.CFI.Gen
Microsoft 1.5202 2009.10.30 TrojanDownloader:Win32/Banload.gen!N
NOD32 4559 2009.10.30 -
Norman 6.03.02 2009.10.30 W32/Obfuscated.F!genr
nProtect 2009.1.8.0 2009.10.30 -
Panda 10.0.2.2 2009.10.30 -
PCTools 7.0.3.5 2009.10.30 -
Prevx 3.0 2009.10.31 -
Rising 21.53.43.00 2009.10.30 -
Sophos 4.47.0 2009.10.30 Sus/UnkPacker
Sunbelt 3.2.1858.2 2009.10.30 -
Symantec 1.4.4.12 2009.10.30 -
TheHacker 6.5.0.2.056 2009.10.28 -
TrendMicro 8.950.0.1094 2009.10.30 Cryp_Opet-3
VBA32 3.12.10.11 2009.10.30 -
ViRobot 2009.10.30.2013 2009.10.30 -
VirusBuster 4.6.5.0 2009.10.30 -
Informazioni addizionali
File size: 1200640 bytes
MD5   : 278b22324f4427a9069c31d68a4da26e
SHA1  : fc2691d928abe8ec92e090820a65979fcc4cf24b
SHA256: 93b36ae5ada04ad1e0f5c19dc88c7d83e127775049bea13524f538334d79a39e
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x2C4329
timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992)
machinetype.......: 0x14C (Intel I386)

( 11 sections )
name viradd virsiz rawdsiz ntrpy md5
CODE 0x1000 0xB88E0 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
DATA 0xBA000 0x2E64 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
BSS 0xBD000 0x114D 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.idata 0xBF000 0x2B92 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.tls 0xC2000 0x10 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rdata 0xC3000 0x18 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.UPX0 0xC4000 0xCB64 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rsrc 0xD1000 0x24E00 0x7400 5.74 473c67837efe739719141c1a2f1941c1
.UPX1 0xF6000 0xB8268 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.UPX2 0x1AF000 0x11D6D9 0x11D800 7.96 a364a37536e7a11f32045e4206406cf0
.reloc 0x2CD000 0x140 0x200 3.37 8c5941122306f7d66ba186658dbedc0d

( 12 imports )

> advapi32.dll: RegCloseKey
> comctl32.dll: ImageList_Create
> gdi32.dll: GetEnhMetaFilePaletteEntries
> kernel32.dll: lstrcpynA, GetModuleHandleA, LoadLibraryA, VirtualAlloc, VirtualFree, GetModuleFileNameA, ExitProcess
> ole32.dll: OleUninitialize
> oleaut32.dll: SafeArrayPtrOfIndex
> shell32.dll: SHGetMalloc
> shlwapi.dll: SHAutoComplete
> urlmon.dll: URLDownloadToFileA
> user32.dll: RedrawWindow, MessageBoxA
> version.dll: GetFileVersionInfoSizeA
> wininet.dll: InternetCloseHandle

( 1 exports )

> k_Pq__Xk_r___U1pD_9F6a@__Qo_eN_0T2I__T_0_3X_AK_q_____J1K____t_ZA_K_q_yp_zks@_u_____ cs__Gxr__Fn_C5V8__h__dIS__46Ha__epasEnv_ _uTrHYba6___NA_69__RbI5___Wqq_QUT_kohu_1r6___.__v_x_9oP_w_Wctw_aAERYwX__z9GPWY__8a3q_@ yC.3A__ia0__Q_NlG__J52gh_g77v_M_0MA____0x__n$0P_o$_e_Q_L G_ dpZAn_A_@cYP_VE5__@7._E8_T__. IXpNMva1_dl8_o__Bm_A_CL__yLpR.6@PKL_6eppxon__dwVK_S7_BwM_a_ZdrV0jst__O___Z7I_S_Y@QOUPM4U_5E___uB8pr4_Y_Vc_Cc___k_UJ_t_A_Fv_kTu_AGsrCYR_JjT_o Os_P38wp_Q_G__WCekda0qw8___uSE3LciLUPq__bAess_As__QqE$ 0770r_L___$__W7K$ .qoi__Fqs_tZK_AB_TWF_Z__l_C_R YMv_nPp8__o_Er_6Y__4Ja_6__fV_7jm__f__@5_F2N_o__l_u BwH_Rg_A5T$_zQ$tjg_n _xRDe_sL___IL 8_0H_l8x_s4z.z_00oLzV.thwe_EM_rfLJ__V_k_Kp_zBJLkle__o_oTvjN___Plv1$_6c2_y_E ___jrz1g_CV_B e___m1_C_PEGl__8Kf__3b8__d$DY___Hj0_ _$_YW_k4_$U_WA_Q4hgU_mT_T7 2_1_tu_ipK_BwJ___W_T.ibN_x______T9Wp_r____QQ7IZSHHS___QKm_QX c9y2P__wIywz__1__YtqjO6c_up__6__q6_bE_ystI_5R__Z_qR_sF__r_P_qB__30_o$fb3JPg___ _J_V1gici_B___DD2_0GmwN L.0R__eYq.gK9ywWJJOc_Lk__xoFjFSGOkQsoD2___N__dAIinrU8K0Gz_fBKd__F_3_CHQ_z_I_8_e_9____z9WOj_df_Hcljupyv_MHajc____A__k_bS_Qm__.ATG_ESzCwX_1_3pxeCh_p__0H6_9nPR@_r9M_ub5$v_uSn____7q$______Pa3tL_3_qMj_ICIWa_@q
TrID  : File type identification
Win32 Executable Generic (58.3%)
Win16/32 Executable Delphi generic (14.1%)
Generic Win/DOS Executable (13.7%)
DOS Executable Generic (13.6%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ThreatExpert: http://www.threatexpert.com/report.aspx?md5=278b22324f4427a9069c31d68a4da26e
ssdeep: 24576:EvrhtLh04Nsuq1sDtyBxaeOMBFuWO4CMDUNVs1w0koWAH+p6nvQPX2Vdfb:EThNh9wsDOxoMBwWZUMw0kXg+p6vQPXs
PEiD  : -
RDS   : NSRL Reference Data Set
-

ATENTION ATTENZIONE: VirusTotal è un servizio gratuito offerto da Hispasec Sistemas. Non esiste garanzia circa la disponibilità e la continuità di questo servizio. Nonostante il livello di identificazione conseguito da multipli motori antivirus sia molto superiore a quello offerto dal singolo prodotto, questi risultati NON garantiscono la sicurezza di un file. Attualmente, non esiste soluzione che offra certezza al 100% sull'identificazione di virus e malware.

Scan another file