Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Italiano | | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

VirusTotal é um serviço que analisa arquivos suspeitos e proporciona uma rápida detecção de vírus, worms, cavalos de tróia, e todos os tipos de arquivos maliciosos detectados por vários mecanismos de antivírus. Mais informações...

Arquivo install.48322.exe recebido em 2009.07.09 14:40:40 (UTC)
Andamento: terminado
Resultado: 17/41 (41.46%)
Antivírus Versão Última Atualização Resultado
a-squared 4.5.0.18 2009.07.09 Trojan-Downloader.Win32.CodecPack!IK
AhnLab-V3 5.0.0.2 2009.07.09 -
AntiVir 7.9.0.204 2009.07.09 TR/Dldr.CodecPack.ik
Antiy-AVL 2.0.3.1 2009.07.09 -
Authentium 5.1.2.4 2009.07.08 -
Avast 4.8.1335.0 2009.07.08 -
AVG 8.5.0.386 2009.07.09 Downloader.Agent2.FMT
BitDefender 7.2 2009.07.09 Trojan.Agent.ANCQ
CAT-QuickHeal 10.00 2009.07.09 TrojanDownloader.CodecPack.il
ClamAV 0.94.1 2009.07.09 -
Comodo 1593 2009.07.09 -
DrWeb 5.0.0.12182 2009.07.09 Trojan.DownLoad.40162
eSafe 7.0.17.0 2009.07.09 -
eTrust-Vet 31.6.6606 2009.07.09 -
F-Prot 4.4.4.56 2009.07.08 -
F-Secure 8.0.14470.0 2009.07.09 Trojan-Downloader.Win32.CodecPack.ilv
Fortinet 3.117.0.0 2009.07.03 -
GData 19 2009.07.09 Trojan.Agent.ANCQ
Ikarus T3.1.1.64.0 2009.07.09 Trojan-Downloader.Win32.CodecPack
Jiangmin 11.0.706 2009.07.09 -
K7AntiVirus 7.10.788 2009.07.09 -
Kaspersky 7.0.0.125 2009.07.09 Trojan-Downloader.Win32.CodecPack.ilv
McAfee 5670 2009.07.08 -
McAfee+Artemis 5670 2009.07.08 Artemis!6B8828C90810
McAfee-GW-Edition 6.8.5 2009.07.09 Trojan.Dldr.CodecPack.ik
Microsoft 1.4803 2009.07.09 TrojanDownloader:Win32/Renos.gen!BE
NOD32 4228 2009.07.09 Win32/TrojanDownloader.FakeAlert.AEK
Norman 6.01.09 2009.07.09 -
nProtect 2009.1.8.0 2009.07.09 -
Panda 10.0.0.14 2009.07.08 -
PCTools 4.4.2.0 2009.07.09 -
Prevx 3.0 2009.07.09 High Risk Cloaked Malware
Rising 21.37.34.00 2009.07.09 -
Sophos 4.43.0 2009.07.09 -
Sunbelt 3.2.1858.2 2009.07.09 -
Symantec 1.4.4.12 2009.07.09 Downloader
TheHacker 6.3.4.3.363 2009.07.08 -
TrendMicro 8.950.0.1094 2009.07.09 -
VBA32 3.12.10.7 2009.07.09 -
ViRobot 2009.7.9.1827 2009.07.09 Trojan.Win32.Downloader.59904.AT
VirusBuster 4.6.5.0 2009.07.08 -
Informações adicionais
File size: 59904 bytes
MD5   : 6b8828c90810b4c46eb93bab5976be89
SHA1  : 7612c9f5d24fabd301eaef692635e6894210c674
SHA256: ad18b4ac181377017336daf9784fa8297eda1693190fdf6c91484351bc2cdbbb
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x11FF
timedatestamp.....: 0x4793E80E (Mon Jan 21 01:32:14 2008)
machinetype.......: 0x14C (Intel I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x387B 0x3A00 5.06 94e5267060992157c84433b127422a00
.data 0x5000 0x76E1 0x7800 6.62 e9e40174eebb0fadac17344ab66839f3
.r72ta 0xD000 0x2E4B 0x2400 0.00 13a95890b5f0947d6f058ca9c30a3e01
.rsrc 0x10000 0x1000 0x400 3.65 1ea16e51c078f8b2f8ffc0c068001334

( 3 imports )

> advapi32.dll: RegGetKeySecurity, RegEnumKeyW, RegReplaceKeyW, RegDeleteKeyW, RegOpenKeyW, RegQueryValueExA, RegEnumKeyExA, RegEnumValueA, RegQueryValueW, RegOpenKeyExA, RegOpenKeyExW, RegDeleteValueW, RegEnumKeyExW, RegQueryValueExW, RegLoadKeyW, RegCreateKeyW, RegDeleteValueA, RegLoadKeyA, RegQueryInfoKeyW, RegEnumValueW, RegFlushKey, RegCreateKeyExA, RegDeleteKeyA, RegQueryValueA, RegEnumKeyA, RegQueryInfoKeyA, RegOpenKeyA, RegCreateKeyExW, RegReplaceKeyA, RegDeleteKeyA, RegDeleteValueA, RegEnumKeyExA, RegFlushKey, RegLoadKeyW, RegReplaceKeyW, RegQueryValueExW, RegOpenKeyA, RegCreateKeyW, RegOpenKeyExA, RegQueryValueA, RegLoadKeyA, RegCreateKeyExW, RegReplaceKeyA, RegGetKeySecurity, RegOpenKeyExW, RegEnumKeyA, RegDeleteValueW, RegQueryValueW, RegEnumKeyExW, RegOpenKeyW, RegDeleteKeyW, RegCreateKeyExA, RegEnumValueW, RegQueryValueExA, RegEnumValueA, RegQueryInfoKeyW, RegQueryInfoKeyA, RegEnumKeyW
> kernel32.dll: GetCommandLineA, WideCharToMultiByte, GetCommandLineA, GetLastError, GetCommandLineA, lstrcpynA, GetCommandLineA, GetModuleHandleA, GetCommandLineA, GetCPInfo, GetCommandLineA, GetDateFormatA, GetCommandLineA, Sleep, GetCommandLineA, lstrcmpiA, GetCommandLineA, GetLastError, GetCommandLineA, GlobalAlloc
> user32.dll: CopyIcon, IsWindow, GetFocus, DrawIconEx, DrawIcon, AppendMenuW, GetDC, DrawTextA, LoadMenuA, GetMenu, DialogBoxParamW, CalcMenuBar, DrawTextW, LoadCursorA, CopyRect, AppendMenuA, GetDlgItem, CloseWindow, GetCursor, CopyImage, DialogBoxParamA, InsertMenuA, EndDialog, BlockInput, GetWindowTextA, CreateIcon, IsMenu, AlignRects, GetWindowTextLengthA, IsWindow, DialogBoxParamW, GetCursor, EndDialog, DialogBoxParamA, CloseWindow, LoadMenuA, GetDlgItem, CopyIcon, DrawIconEx, LoadCursorA, GetMenu, GetWindowTextA, GetFocus, DrawTextW, CreateIcon, CopyImage, GetWindowTextLengthA, DrawIcon, GetDC, CopyRect, AppendMenuA, CalcMenuBar, BlockInput, AlignRects, DrawTextA, AppendMenuW, InsertMenuA, IsMenu

( 0 exports )
TrID  : File type identification
Win32 Executable Generic (58.5%)
Clipper DOS Executable (13.8%)
Generic Win/DOS Executable (13.7%)
DOS Executable Generic (13.7%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ThreatExpert: http://www.threatexpert.com/report.aspx?md5=6b8828c90810b4c46eb93bab5976be89
ssdeep: 768:mkJ+4pg6lAKXSFXwRKP2tVwn8oKKIUVhkjupLvsM6LIqxB7gChNs:mYw6mK2Tawn89XUiSLmIqxCCM
Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=551DAFE400627573EADD00E7A4119C00B244411A
PEiD  : -
RDS   : NSRL Reference Data Set
-

ATENTION ATENÇÃO: VirusTotal é um serviço gratuito oferecido por Hispasec Sistemas. Não há garantias quanto à disponibilidade e continuidade desse serviço. Apesar da taxa de detecção proporcionada pelo uso de múltiplos mecanismos de antivírus ser muito superior àquela oferecida por um único produto, os resultados NÃO garantem a possibilidade de um arquivo ser inofensivo. Atualmente, não há qualquer solução que ofereça 100% de eficiência na detecção de vírus e arquivos maliciosos..

Outro arquivo