Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

Virustotal - сервис, который анализирует подозрительные файлы и облегчает быстрое обнаружение вирусов, червей, троянов и всех видов вредоносных программ, определяемых антивирусами. Подробнее...

Файл dbghelp.dll получен 2008.06.04 05:29:01 (UTC)
Текущий статус: закончено
Результат: 1/32 (3.12%)
Антивирус Версия Обновление Результат
AhnLab-V3 2008.5.30.1 2008.06.04 -
AntiVir 7.8.0.26 2008.06.03 -
Authentium 5.1.0.4 2008.06.04 -
Avast 4.8.1195.0 2008.06.04 -
AVG 7.5.0.516 2008.06.04 -
BitDefender 7.2 2008.06.04 -
CAT-QuickHeal 9.50 2008.06.03 -
ClamAV 0.92.1 2008.06.04 -
DrWeb 4.44.0.09170 2008.06.03 -
eSafe 7.0.15.0 2008.06.03 -
eTrust-Vet 31.4.5845 2008.06.03 -
Ewido 4.0 2008.06.03 -
F-Prot 4.4.4.56 2008.06.04 -
F-Secure 6.70.13260.0 2008.06.04 -
Fortinet 3.14.0.0 2008.06.04 -
GData 2.0.7306.1023 2008.06.04 -
Ikarus T3.1.1.26.0 2008.06.04 -
Kaspersky 7.0.0.125 2008.06.04 -
McAfee 5309 2008.06.03 -
Microsoft None 2008.06.04 -
NOD32v2 3156 2008.06.03 -
Norman 5.80.02 2008.06.03 -
Panda 9.0.0.4 2008.06.04 -
Prevx1 V2 2008.06.04 -
Rising 20.47.20.00 2008.06.04 -
Sophos 4.29.0 2008.06.04 -
Sunbelt 3.0.1143.1 2008.06.03 -
Symantec 10 2008.06.04 -
TheHacker 6.2.92.333 2008.06.03 -
VBA32 3.12.6.7 2008.06.03 -
VirusBuster 4.3.26:9 2008.06.03 -
Webwasher-Gateway 6.6.2 2008.06.04 Win32.Malware.gen (suspicious)
Дополнительная информация
File size: 1030144 bytes
MD5...: 383a690ef8eff69bead6a1ca2278b7f6
SHA1..: fe34dda2eba5fd9fbe7d81a2af26832a23b8416c
SHA256: 346155f8d0db2c2754fa28a46ca98906875c9c21fba8ab2eb83a1311eebc2431
SHA512: 167bf7dfe1eff344ba2a2e03e70ba7e7408418f4c530e342140e65c77de067c0
745ec76793321706dfb2be98ebbbd08b09c57b9ec78609e1ef03a6ad3e9baadc
PEiD..: -
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x307c314
timedatestamp.....: 0x44b01174 (Sat Jul 08 20:11:32 2006)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xe9d88 0xe9e00 6.47 102e06315d30cf012a85d401e8a28306
.data 0xeb000 0x1bc6c 0x4800 1.51 ea695ee80f97f055345873dfdff1b904
.rsrc 0x107000 0x3d8 0x400 3.36 bba31b3ddbf12d63c66dbe6de3d6ae2d
.reloc 0x108000 0xc8b0 0xca00 5.39 d24fd574be6f6b6dfc2b86c7321bb5d6

( 4 imports )
> msvcrt.dll: _write, _lseeki64, _fileno, _read, __pioinfo, __badioinfo, wctomb, _snprintf, isleadbyte, mbtowc, isdigit, _onexit, _lock, __dllonexit, _unlock, _ismbblead, _adjust_fdiv, _amsg_exit, _initterm, _XcptFilter, iswprint, _vsnwprintf, memmove, _iob, __mb_cur_max, _errno, __CxxFrameHandler, iswspace, calloc, __3@YAXPAX@Z, _itoa, towlower, tolower, _wcslwr, atol, fclose, __unDName, _CxxThrowException, bsearch, fread, fseek, _wfsopen, _fsopen, wcstol, strchr, wcsrchr, _fullpath, _wfullpath, _wcsdup, _wgetenv, _get_osfhandle, _chsize, _close, _open_osfhandle, ftell, _memicmp, _mbscmp, __1type_info@@UAE@XZ, _terminate@@YAXXZ, time, _wctime, strncmp, _ltoa, _wcsnicmp, _purecall, ctime, malloc, isspace, _stricmp, _strlwr, free, strstr, memcpy, _wcsicmp, qsort, wcschr, wcsstr, wcsncmp, _isatty, iswxdigit, memset, __2@YAPAXI@Z, _wsopen, _sopen
> KERNEL32.dll: InterlockedDecrement, LocalFree, GetVersion, LCMapStringA, SetFileAttributesA, CopyFileA, DeleteFileA, DeviceIoControl, GetFileType, InitializeCriticalSectionAndSpinCount, ExpandEnvironmentStringsA, MapViewOfFileEx, FlushViewOfFile, InterlockedIncrement, RtlUnwind, InterlockedCompareExchange, InterlockedExchange, GetThreadSelectorEntry, CreateThread, TerminateThread, VirtualQueryEx, GetPriorityClass, GetThreadPriority, GetThreadTimes, GetThreadContext, ResumeThread, SuspendThread, GetSystemInfo, LoadLibraryA, Sleep, SetUnhandledExceptionFilter, UnhandledExceptionFilter, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentThreadId, GetTickCount, QueryPerformanceCounter, ReadProcessMemory, GetProcessHeap, GetFileAttributesA, SetErrorMode, WriteFile, OutputDebugStringA, VirtualFree, GetCurrentProcessId, OpenProcess, CreateFileMappingA, MapViewOfFile, FindClose, LocalAlloc, SetLastError, LeaveCriticalSection, EnterCriticalSection, CloseHandle, ReadFile, GetFileSize, CreateFileA, GetLastError, TlsSetValue, TlsGetValue, TlsAlloc, TlsFree, DeleteCriticalSection, HeapDestroy, FreeLibrary, HeapCreate, InitializeCriticalSection, GetVersionExA, HeapReAlloc, HeapAlloc, HeapFree, IsDBCSLeadByte, SetFilePointer, GetCurrentProcess, UnmapViewOfFile, CreateDirectoryA, VirtualProtect, VirtualAlloc, DuplicateHandle, GetModuleHandleA
> ADVAPI32.dll: CryptAcquireContextA, CryptGenRandom, CryptReleaseContext, RegQueryValueExA, RegOpenKeyExA, RegCloseKey
> RPCRT4.dll: UuidCreate

( 204 exports )
DbgHelpCreateUserDump, DbgHelpCreateUserDumpW, EnumDirTree, EnumDirTreeW, EnumerateLoadedModules, EnumerateLoadedModules64, EnumerateLoadedModulesEx, EnumerateLoadedModulesExW, EnumerateLoadedModulesW64, ExtensionApiVersion, FindDebugInfoFile, FindDebugInfoFileEx, FindDebugInfoFileExW, FindExecutableImage, FindExecutableImageEx, FindExecutableImageExW, FindFileInPath, FindFileInSearchPath, GetTimestampForLoadedLibrary, ImageDirectoryEntryToData, ImageDirectoryEntryToDataEx, ImageNtHeader, ImageRvaToSection, ImageRvaToVa, ImagehlpApiVersion, ImagehlpApiVersionEx, MakeSureDirectoryPathExists, MapDebugInformation, MiniDumpReadDumpStream, MiniDumpWriteDump, SearchTreeForFile, SearchTreeForFileW, StackWalk, StackWalk64, SymAddSourceStream, SymAddSourceStreamA, SymAddSourceStreamW, SymAddSymbol, SymAddSymbolW, SymCleanup, SymDeleteSymbol, SymDeleteSymbolW, SymEnumLines, SymEnumLinesW, SymEnumProcesses, SymEnumSourceFileTokens, SymEnumSourceFiles, SymEnumSourceFilesW, SymEnumSourceLines, SymEnumSourceLinesW, SymEnumSym, SymEnumSymbols, SymEnumSymbolsForAddr, SymEnumSymbolsForAddrW, SymEnumSymbolsW, SymEnumTypes, SymEnumTypesByName, SymEnumTypesByNameW, SymEnumTypesW, SymEnumerateModules, SymEnumerateModules64, SymEnumerateModulesW64, SymEnumerateSymbols, SymEnumerateSymbols64, SymEnumerateSymbolsW, SymEnumerateSymbolsW64, SymFindDebugInfoFile, SymFindDebugInfoFileW, SymFindExecutableImage, SymFindExecutableImageW, SymFindFileInPath, SymFindFileInPathW, SymFromAddr, SymFromAddrW, SymFromIndex, SymFromIndexW, SymFromName, SymFromNameW, SymFromToken, SymFromTokenW, SymFunctionTableAccess, SymFunctionTableAccess64, SymGetFileLineOffsets64, SymGetHomeDirectory, SymGetHomeDirectoryW, SymGetLineFromAddr, SymGetLineFromAddr64, SymGetLineFromAddrW64, SymGetLineFromName, SymGetLineFromName64, SymGetLineFromNameW64, SymGetLineNext, SymGetLineNext64, SymGetLineNextW64, SymGetLinePrev, SymGetLinePrev64, SymGetLinePrevW64, SymGetModuleBase, SymGetModuleBase64, SymGetModuleInfo, SymGetModuleInfo64, SymGetModuleInfoW, SymGetModuleInfoW64, SymGetOmapBlockBase, SymGetOmaps, SymGetOptions, SymGetScope, SymGetScopeW, SymGetSearchPath, SymGetSearchPathW, SymGetSourceFile, SymGetSourceFileFromToken, SymGetSourceFileFromTokenW, SymGetSourceFileToken, SymGetSourceFileTokenW, SymGetSourceFileW, SymGetSourceVarFromToken, SymGetSourceVarFromTokenW, SymGetSymFromAddr, SymGetSymFromAddr64, SymGetSymFromName, SymGetSymFromName64, SymGetSymNext, SymGetSymNext64, SymGetSymPrev, SymGetSymPrev64, SymGetSymbolFile, SymGetSymbolFileW, SymGetTypeFromName, SymGetTypeFromNameW, SymGetTypeInfo, SymGetTypeInfoEx, SymInitialize, SymInitializeW, SymLoadModule, SymLoadModule64, SymLoadModuleEx, SymLoadModuleExW, SymMatchFileName, SymMatchFileNameW, SymMatchString, SymMatchStringA, SymMatchStringW, SymNext, SymNextW, SymPrev, SymPrevW, SymRefreshModuleList, SymRegisterCallback, SymRegisterCallback64, SymRegisterCallbackW64, SymRegisterFunctionEntryCallback, SymRegisterFunctionEntryCallback64, SymSearch, SymSearchW, SymSetContext, SymSetHomeDirectory, SymSetHomeDirectoryW, SymSetOptions, SymSetParentWindow, SymSetScopeFromAddr, SymSetScopeFromIndex, SymSetSearchPath, SymSetSearchPathW, SymSrvDeltaName, SymSrvDeltaNameW, SymSrvGetFileIndexInfo, SymSrvGetFileIndexInfoW, SymSrvGetFileIndexString, SymSrvGetFileIndexStringW, SymSrvGetFileIndexes, SymSrvGetFileIndexesW, SymSrvGetSupplement, SymSrvGetSupplementW, SymSrvIsStore, SymSrvIsStoreW, SymSrvStoreFile, SymSrvStoreFileW, SymSrvStoreSupplement, SymSrvStoreSupplementW, SymUnDName, SymUnDName64, SymUnloadModule, SymUnloadModule64, UnDecorateSymbolName, UnDecorateSymbolNameW, UnmapDebugInformation, WinDbgExtensionDllInit, block, chksym, dbghelp, dh, fptr, homedir, itoldyouso, lmi, lminfo, omap, srcfiles, stack_force_ebp, stackdbg, sym, symsrv, vc7fpo

Внимание Внимание: VirusTotal является бесплатным сервисом, предложенным Hispasec Sistemas. Мы не гарантируем доступность и продолжение работы сервиса. Хотя показатель обнаружения обеспечивается использованием нескольких антивирусных программ, эти результаты НЕ гарантируют безвредность файла. В настоящее время отсутствует какое-либо решение, которое обеспечило бы 100% эффективность выявления вирусов и вредоносных программ.

Другой файл