|
VirusTotal é um serviço que analisa arquivos suspeitos e proporciona uma rápida detecção de vírus, worms, cavalos de tróia, e todos os tipos de arquivos maliciosos detectados por vários mecanismos de antivírus. Mais informações... |
| Antivírus | Versão | Última Atualização | Resultado |
|---|---|---|---|
| a-squared | 4.5.0.18 | 2009.06.17 | Trojan-Downloader!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.06.16 | Win-Trojan/Downloader.163840.U |
| AntiVir | 7.9.0.187 | 2009.06.16 | TR/Downloader.Gen |
| Antiy-AVL | 2.0.3.1 | 2009.06.16 | - |
| Authentium | 5.1.2.4 | 2009.06.16 | - |
| Avast | 4.8.1335.0 | 2009.06.16 | - |
| AVG | 8.5.0.339 | 2009.06.17 | - |
| BitDefender | 7.2 | 2009.06.17 | - |
| CAT-QuickHeal | 10.00 | 2009.06.16 | - |
| ClamAV | 0.94.1 | 2009.06.16 | - |
| Comodo | 1346 | 2009.06.16 | - |
| DrWeb | 5.0.0.12182 | 2009.06.16 | - |
| eSafe | 7.0.17.0 | 2009.06.16 | - |
| eTrust-Vet | 31.6.6564 | 2009.06.17 | - |
| F-Prot | 4.4.4.56 | 2009.06.16 | - |
| F-Secure | 8.0.14470.0 | 2009.06.17 | - |
| Fortinet | 3.117.0.0 | 2009.06.17 | - |
| GData | 19 | 2009.06.17 | - |
| Ikarus | T3.1.1.59.0 | 2009.06.17 | Trojan-Downloader |
| Jiangmin | 11.0.706 | 2009.06.16 | - |
| K7AntiVirus | 7.10.765 | 2009.06.16 | - |
| Kaspersky | 7.0.0.125 | 2009.06.17 | - |
| McAfee | 5648 | 2009.06.16 | - |
| McAfee+Artemis | 5648 | 2009.06.16 | Artemis!987DD6DCE330 |
| McAfee-GW-Edition | 6.7.6 | 2009.06.16 | Trojan.Downloader.Gen |
| Microsoft | 1.4701 | 2009.06.17 | Trojan:Win32/Mespam.B |
| NOD32 | 4160 | 2009.06.16 | - |
| Norman | 6.01.09 | 2009.06.16 | - |
| nProtect | 2009.1.8.0 | 2009.06.17 | - |
| Panda | 10.0.0.14 | 2009.06.16 | - |
| PCTools | 4.4.2.0 | 2009.06.12 | - |
| Prevx | 3.0 | 2009.06.17 | Medium Risk Malware |
| Rising | 21.34.13.00 | 2009.06.16 | - |
| Sophos | 4.42.0 | 2009.06.17 | Mal/Cimuz-D |
| Sunbelt | 3.2.1858.2 | 2009.06.17 | - |
| Symantec | 1.4.4.12 | 2009.06.17 | - |
| TheHacker | 6.3.4.3.347 | 2009.06.17 | - |
| TrendMicro | 8.950.0.1094 | 2009.06.16 | - |
| VBA32 | 3.12.10.7 | 2009.06.17 | - |
| ViRobot | 2009.6.16.1789 | 2009.06.17 | - |
| VirusBuster | 4.6.5.0 | 2009.06.16 | - |
| Informações adicionais |
|---|
| File size: 163840 bytes |
| MD5 : 987dd6dce3309818811cc5481aeb0edc |
| SHA1 : 8a7d1baaed3142d347d9126bf5173f7a85d0bb60 |
| SHA256: 85d86e234c2b4ae30cf7e1a74f2e5ced29ad95dafd48cc7f7b4b4db9ff71870f |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x1C13F timedatestamp.....: 0x4A363EBB (Mon Jun 15 14:29:47 2009) machinetype.......: 0x14C (Intel I386) ( 6 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x1C680 0x1D000 5.90 b1c9a770d75dd3d16d7a55f64c37aed7 .text1 0x1E000 0xD90 0x1000 4.40 b6c0efbf5bbbe564a2da295399f84cdd .rdata 0x1F000 0x1DD5 0x2000 4.39 a07f4f417f4144e7d59a278ae9af330f .data 0x21000 0x1D08 0x1000 0.95 e73ac79014959eebbca3ec45377249a4 .data1 0x23000 0x3098 0x4000 3.38 496ede6d56ab2fa26cfee2cbd802d255 .reloc 0x27000 0x1A6C 0x2000 5.15 42ce102ea1a013c9f66140a11142f018 ( 10 imports ) > advapi32.dll: RegEnumValueA, RegDeleteValueA, RegEnumKeyA, RegCloseKey, RegSetValueExA, RegQueryValueExA, RegOpenKeyExA > gdi32.dll: GetStockObject > kernel32.dll: GetWindowsDirectoryA, LeaveCriticalSection, EnterCriticalSection, DeleteCriticalSection, InitializeCriticalSection, CreateThread, GetLastError, CreateMutexA, DeleteFileA, OutputDebugStringA, Sleep, lstrlenA, GetLocaleInfoA, GetTempPathA, GetSystemDirectoryA, ResetEvent, SetLastError, TlsGetValue, WaitForSingleObject, GetModuleHandleA, GetProcAddress, GetTickCount, LoadLibraryA, FreeLibraryAndExitThread, CloseHandle, FreeLibrary, ExpandEnvironmentStringsA, PostQueuedCompletionStatus, ReleaseSemaphore, GetVersionExA, CreateIoCompletionPort, CreateSemaphoreA, GetSystemInfo, GetQueuedCompletionStatus, WaitForSingleObjectEx, TlsFree, TlsAlloc, TlsSetValue, GetModuleFileNameA > mfc42.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, - > msvcrt.dll: _adjust_fdiv, _initterm, __1type_info@@UAE@XZ, _terminate@@YAXXZ, _except_handler3, _onexit, __dllonexit, realloc, atoi, srand, time, strcpy, strlen, wcstombs, memcmp, _stricmp, strcmp, rand, memset, malloc, _purecall, _itoa, memcpy, calloc, __CxxFrameHandler, free > ole32.dll: StringFromGUID2, CoCreateGuid > shell32.dll: ShellExecuteA > urlmon.dll: URLDownloadToFileA > user32.dll: DefWindowProcA, DestroyWindow, LoadIconA, LoadCursorA, RegisterClassA, GetWindowLongA, SetWindowLongA, PostThreadMessageA, TranslateMessage, GetMessageA, CreateWindowExA, DispatchMessageA > ws2_32.dll: -, -, -, -, -, -, WSCEnumProtocols, - ( 1 exports ) > WSPStartup |
| TrID : File type identification Windows Screen Saver (37.0%) Win32 Executable Generic (24.1%) Win32 Dynamic Link Library (generic) (21.4%) Win16/32 Executable Delphi generic (5.8%) Generic Win/DOS Executable (5.6%) |
| ThreatExpert: http://www.threatexpert.com/report.aspx?md5=987dd6dce3309818811cc5481aeb0edc |
| ssdeep: 3072:Ot6L6vD7WfT2BdCAQzYUSkdTss63MhfS7EU6a:66Wv+fTi50Qs63MhfSAo |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=ADD5F6FA00936ED980B002620EFA4D00E5E80A4B |
| PEiD : Armadillo v1.xx - v2.xx |
| RDS : NSRL Reference Data Set - |
ATENÇÃO:
VirusTotal é um serviço gratuito oferecido por Hispasec Sistemas. Não há garantias quanto à disponibilidade e continuidade desse serviço. Apesar da taxa de detecção proporcionada pelo uso de múltiplos mecanismos de antivírus ser muito superior àquela oferecida por um único produto, os resultados NÃO garantem a possibilidade de um arquivo ser inofensivo. Atualmente, não há qualquer solução que ofereça 100% de eficiência na detecção de vírus e arquivos maliciosos..