|
Virustotal is een gratis dienst die verdachte bestanden scant en zorgt voor dat de laatste virussen, wormen, en alle andere soorten malware snel gedetecteerd kunnen worden. Meer informatie... |
| Antivirus | Versie | Laatst geüpdatet | Resultaat |
|---|---|---|---|
| a-squared | 4.5.0.18 | 2009.06.17 | Trojan-Downloader!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.06.16 | Win-Trojan/Downloader.163840.U |
| AntiVir | 7.9.0.187 | 2009.06.16 | TR/Downloader.Gen |
| Antiy-AVL | 2.0.3.1 | 2009.06.16 | - |
| Authentium | 5.1.2.4 | 2009.06.16 | - |
| Avast | 4.8.1335.0 | 2009.06.16 | - |
| AVG | 8.5.0.339 | 2009.06.17 | - |
| BitDefender | 7.2 | 2009.06.17 | - |
| CAT-QuickHeal | 10.00 | 2009.06.16 | - |
| ClamAV | 0.94.1 | 2009.06.16 | - |
| Comodo | 1346 | 2009.06.16 | - |
| DrWeb | 5.0.0.12182 | 2009.06.16 | - |
| eSafe | 7.0.17.0 | 2009.06.16 | - |
| eTrust-Vet | 31.6.6564 | 2009.06.17 | - |
| F-Prot | 4.4.4.56 | 2009.06.16 | - |
| F-Secure | 8.0.14470.0 | 2009.06.17 | - |
| Fortinet | 3.117.0.0 | 2009.06.17 | - |
| GData | 19 | 2009.06.17 | - |
| Ikarus | T3.1.1.59.0 | 2009.06.17 | Trojan-Downloader |
| Jiangmin | 11.0.706 | 2009.06.16 | - |
| K7AntiVirus | 7.10.765 | 2009.06.16 | - |
| Kaspersky | 7.0.0.125 | 2009.06.17 | - |
| McAfee | 5648 | 2009.06.16 | - |
| McAfee+Artemis | 5648 | 2009.06.16 | Artemis!987DD6DCE330 |
| McAfee-GW-Edition | 6.7.6 | 2009.06.16 | Trojan.Downloader.Gen |
| Microsoft | 1.4701 | 2009.06.17 | Trojan:Win32/Mespam.B |
| NOD32 | 4160 | 2009.06.16 | - |
| Norman | 6.01.09 | 2009.06.16 | - |
| nProtect | 2009.1.8.0 | 2009.06.17 | - |
| Panda | 10.0.0.14 | 2009.06.16 | - |
| PCTools | 4.4.2.0 | 2009.06.12 | - |
| Prevx | 3.0 | 2009.06.17 | Medium Risk Malware |
| Rising | 21.34.13.00 | 2009.06.16 | - |
| Sophos | 4.42.0 | 2009.06.17 | Mal/Cimuz-D |
| Sunbelt | 3.2.1858.2 | 2009.06.17 | - |
| Symantec | 1.4.4.12 | 2009.06.17 | - |
| TheHacker | 6.3.4.3.347 | 2009.06.17 | - |
| TrendMicro | 8.950.0.1094 | 2009.06.16 | - |
| VBA32 | 3.12.10.7 | 2009.06.17 | - |
| ViRobot | 2009.6.16.1789 | 2009.06.17 | - |
| VirusBuster | 4.6.5.0 | 2009.06.16 | - |
| Extra informatie |
|---|
| File size: 163840 bytes |
| MD5 : 987dd6dce3309818811cc5481aeb0edc |
| SHA1 : 8a7d1baaed3142d347d9126bf5173f7a85d0bb60 |
| SHA256: 85d86e234c2b4ae30cf7e1a74f2e5ced29ad95dafd48cc7f7b4b4db9ff71870f |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x1C13F timedatestamp.....: 0x4A363EBB (Mon Jun 15 14:29:47 2009) machinetype.......: 0x14C (Intel I386) ( 6 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x1C680 0x1D000 5.90 b1c9a770d75dd3d16d7a55f64c37aed7 .text1 0x1E000 0xD90 0x1000 4.40 b6c0efbf5bbbe564a2da295399f84cdd .rdata 0x1F000 0x1DD5 0x2000 4.39 a07f4f417f4144e7d59a278ae9af330f .data 0x21000 0x1D08 0x1000 0.95 e73ac79014959eebbca3ec45377249a4 .data1 0x23000 0x3098 0x4000 3.38 496ede6d56ab2fa26cfee2cbd802d255 .reloc 0x27000 0x1A6C 0x2000 5.15 42ce102ea1a013c9f66140a11142f018 ( 10 imports ) > advapi32.dll: RegEnumValueA, RegDeleteValueA, RegEnumKeyA, RegCloseKey, RegSetValueExA, RegQueryValueExA, RegOpenKeyExA > gdi32.dll: GetStockObject > kernel32.dll: GetWindowsDirectoryA, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, CreateThread, GetLastError, CreateMutexA, DeleteFileA, OutputDebugStringA, Sleep, lstrlenA, GetLocaleInfoA, GetTempPathA, GetSystemDirectoryA, ResetEvent, SetLastError, TlsGetValue, WaitForSingleObject, GetModuleHandleA, GetProcAddress, GetTickCount, LoadLibraryA, FreeLibraryAndExitThread, CloseHandle, FreeLibrary, ExpandEnvironmentStringsA, PostQueuedCompletionStatus, ReleaseSemaphore, GetVersionExA, CreateIoCompletionPort, CreateSemaphoreA, GetSystemInfo, GetQueuedCompletionStatus, WaitForSingleObjectEx, TlsFree, TlsAlloc, TlsSetValue, GetModuleFileNameA > mfc42.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, - > msvcrt.dll: _adjust_fdiv, _initterm, __1type_info@@UAE@XZ, _terminate@@YAXXZ, _except_handler3, _onexit, __dllonexit, realloc, atoi, srand, time, strcpy, strlen, wcstombs, memcmp, _stricmp, strcmp, rand, memset, malloc, _purecall, _itoa, memcpy, calloc, __CxxFrameHandler, free > ole32.dll: StringFromGUID2, CoCreateGuid > shell32.dll: ShellExecuteA > urlmon.dll: URLDownloadToFileA > user32.dll: DefWindowProcA, DestroyWindow, LoadIconA, LoadCursorA, RegisterClassA, GetWindowLongA, SetWindowLongA, PostThreadMessageA, TranslateMessage, GetMessageA, CreateWindowExA, DispatchMessageA > ws2_32.dll: -, -, -, -, -, -, WSCEnumProtocols, - ( 1 exports ) > WSPStartup |
| TrID : File type identification Windows Screen Saver (37.0%) Win32 Executable Generic (24.1%) Win32 Dynamic Link Library (generic) (21.4%) Win16/32 Executable Delphi generic (5.8%) Generic Win/DOS Executable (5.6%) |
| ThreatExpert: http://www.threatexpert.com/report.aspx?md5=987dd6dce3309818811cc5481aeb0edc |
| ssdeep: 3072:Ot6L6vD7WfT2BdCAQzYUSkdTss63MhfS7EU6a:66Wv+fTi50Qs63MhfSAo |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=ADD5F6FA00936ED980B002620EFA4D00E5E80A4B |
| PEiD : Armadillo v1.xx - v2.xx |
| RDS : NSRL Reference Data Set - |
AANDACHT:
VirusTotal is een gratis dienst aangeboden door Hispasec Sistemas. Er zijn geen garanties over de beschikbaarheid of het voortbestaan ervan. Door het gebruik van meedere scan engines kunnen we een nauwkeuriger resultaat bekomen, dit betekent echter niet dat een bestand ook echt ongevaarlijk is. Er is nog geen oplossing die 100% bescherming biedt tegen virussen en malware.