Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

VirusTotal 是一款可疑文件分析服务, 通过各种知名反病毒引擎, 对您所上传的文件进行检测, 以判断文件是否被病毒, 蠕虫, 木马, 以及各类恶意软件感染. 查看详细信息...

文件 postcard.exe 接收于 2008.12.18 18:12:21 (UTC)
当前状态: 完成
结果: 23/38 (60.53%)
反病毒引擎 版本 最后更新 扫描结果
AhnLab-V3 2008.12.19.0 2008.12.18 -
AntiVir 7.9.0.45 2008.12.18 BDS/Zapchast.PI
Authentium 5.1.0.4 2008.12.18 REG/Zapchast.H
Avast 4.8.1281.0 2008.12.18 VBS:Malware-gen
AVG 8.0.0.199 2008.12.18 BackDoor.Generic_c.CFI
BitDefender 7.2 2008.12.18 Dropped:Backdoor.Zapchast.PI
CAT-QuickHeal 10.00 2008.12.18 -
ClamAV 0.94.1 2008.12.18 Trojan.IRC.Zapchast-16
Comodo 771 2008.12.17 -
DrWeb 4.44.0.09170 2008.12.18 -
eSafe 7.0.17.0 2008.12.18 -
eTrust-Vet 31.6.6267 2008.12.18 -
Ewido 4.0 2008.12.18 -
F-Prot 4.4.4.56 2008.12.18 REG/Zapchast.H
F-Secure 8.0.14332.0 2008.12.18 Client-IRC.Win32.mIRC.603
Fortinet 3.117.0.0 2008.12.18 -
GData 19 2008.12.18 Dropped:Backdoor.Zapchast.PI
Ikarus T3.1.1.45.0 2008.12.18 -
K7AntiVirus 7.10.557 2008.12.18 Non-Virus:Client-IRC.Win32.mIRC.603
Kaspersky 7.0.0.125 2008.12.18 not-a-virus:Client-IRC.Win32.mIRC.603
McAfee 5468 2008.12.18 potentially unwanted program IRC/Client
McAfee+Artemis 5468 2008.12.18 potentially unwanted program IRC/Client
Microsoft 1.4205 2008.12.18 Backdoor:Win32/IRCFlood
NOD32 3703 2008.12.18 REG/RunKeys.NAA
Norman 5.80.02 2008.12.18 -
Panda 9.0.0.4 2008.12.18 BAT/Autorun.TA
PCTools 4.4.2.0 2008.12.18 Trojan.mIRC-Based.AM
Prevx1 V2 2008.12.18 -
Rising 21.08.32.00 2008.12.18 -
SecureWeb-Gateway 6.7.6 2008.12.18 -
Sophos 4.37.0 2008.12.18 Mal/Zapchas-A
Sunbelt 3.2.1801.2 2008.12.11 mIRC based
Symantec 10 2008.12.18 Backdoor.IRC.Aladinz
TheHacker 6.3.1.4.191 2008.12.17 -
TrendMicro 8.700.0.1004 2008.12.18 REG_ZAPCHAST.ED
VBA32 3.12.8.10 2008.12.18 BackDoor.IRC.based
ViRobot 2008.12.18.1525 2008.12.18 -
VirusBuster 4.5.11.0 2008.12.18 Trojan.mIRC-Based.AM
附加信息
File size: 1281843 bytes
MD5...: 737e10be307601f22a491fd76798cd21
SHA1..: 9523bccfc96fd77228cb6b28dc06466ca2dbb76e
SHA256: ed94789d28aebf7ebf3ca87b4896260ce5e432a68696833df00f2a6652b700af
SHA512: 9eb79c54346f11fdf81fa8354b8202e4e8b7395efc725931418fbc3318cedcc4
080f18a4cc4a5716c22f70e0c15311b126523e78a636fcdd2e984422eae09d54
ssdeep: 24576:1nJ2kPyZvjXamZ4Nj9KRpRoUWmmKKR+Pz3VZcwZ60PX0wS7fLIugqOCpLv
:1J2hZbXnSNj4fWm/KUPDVZnZfPtELPg6
PEiD..: -
TrID..: File type identification
WinRAR Self Extracting archive (96.2%)
Win32 Executable Generic (1.5%)
Win32 Dynamic Link Library (generic) (1.4%)
Generic Win/DOS Executable (0.3%)
DOS Executable Generic (0.3%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x401000
timedatestamp.....: 0x43463a52 (Fri Oct 07 09:05:22 2005)
machinetype.......: 0x14c (I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x13000 0x12600 6.46 bcefd13d879b5aa1628d5731462b1935
.data 0x14000 0x7000 0xa00 4.73 0eb9af4768d13f3fe805922a21fcbf55
.idata 0x1b000 0x1000 0x1000 5.02 7f9440e32acb299f3bda96288136b63a
.rsrc 0x1c000 0x46ce8 0x46e00 6.23 fd5ee05e6e48c036136c72401a64ebfa

( 8 imports )
> ADVAPI32.DLL: AdjustTokenPrivileges, LookupPrivilegeValueA, OpenProcessToken, RegCloseKey, RegCreateKeyExA, RegOpenKeyExA, RegQueryValueExA, RegSetValueExA, SetFileSecurityA, SetFileSecurityW
> KERNEL32.DLL: CloseHandle, CompareStringA, CreateDirectoryA, CreateDirectoryW, CreateFileA, CreateFileW, DeleteFileA, DeleteFileW, DosDateTimeToFileTime, ExitProcess, ExpandEnvironmentStringsA, FileTimeToLocalFileTime, FileTimeToSystemTime, FindClose, FindFirstFileA, FindFirstFileW, FindNextFileA, FindNextFileW, FindResourceA, FreeLibrary, GetCPInfo, GetCommandLineA, GetCurrentDirectoryA, GetCurrentProcess, GetDateFormatA, GetFileAttributesA, GetFileAttributesW, GetFileType, GetFullPathNameA, GetLastError, GetLocaleInfoA, GetModuleFileNameA, GetModuleHandleA, GetNumberFormatA, GetProcAddress, GetProcessHeap, GetStdHandle, GetTempPathA, GetTickCount, GetTimeFormatA, GetVersionExA, GlobalAlloc, HeapAlloc, HeapFree, HeapReAlloc, IsDBCSLeadByte, LoadLibraryA, LocalFileTimeToFileTime, MoveFileA, MoveFileExA, MultiByteToWideChar, ReadFile, SetCurrentDirectoryA, SetEndOfFile, SetEnvironmentVariableA, SetFileAttributesA, SetFileAttributesW, SetFilePointer, SetFileTime, SetLastError, Sleep, SystemTimeToFileTime, WaitForSingleObject, WideCharToMultiByte, WriteFile, lstrcmpiA, lstrlenA
> COMCTL32.DLL: -
> COMDLG32.DLL: CommDlgExtendedError, GetOpenFileNameA
> GDI32.DLL: DeleteObject
> SHELL32.DLL: SHBrowseForFolderA, SHChangeNotify, SHFileOperationA, SHGetFileInfoA, SHGetMalloc, SHGetSpecialFolderLocation, ShellExecuteExA, SHGetPathFromIDListA
> USER32.DLL: CharToOemBuffA, CharUpperA, CopyRect, CreateWindowExA, DefWindowProcA, DestroyIcon, DestroyWindow, DialogBoxParamA, DispatchMessageA, EnableWindow, EndDialog, FindWindowExA, GetClassNameA, GetClientRect, GetDlgItem, GetDlgItemTextA, GetMessageA, GetParent, GetSysColor, GetSystemMetrics, GetWindow, GetWindowLongA, GetWindowRect, GetWindowTextA, IsWindow, IsWindowVisible, LoadBitmapA, LoadCursorA, LoadIconA, LoadStringA, MapWindowPoints, MessageBoxA, OemToCharA, OemToCharBuffA, PeekMessageA, PostMessageA, RegisterClassExA, SendDlgItemMessageA, SendMessageA, SetDlgItemTextA, SetFocus, SetMenu, SetWindowLongA, SetWindowPos, SetWindowTextA, ShowWindow, TranslateMessage, UpdateWindow, WaitForInputIdle, wsprintfA, wvsprintfA
> OLE32.DLL: CLSIDFromString, CoCreateInstance, CreateStreamOnHGlobal, OleInitialize, OleUninitialize

( 0 exports )
packers (F-Prot): RAR, Unicode
packers (Authentium): RAR, Unicode, RAR, RAR
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=737e10be307601f22a491fd76798cd21

注意 注意: VirusTotal 是 Hispasec Sistemas 提供的免费服务. 我们不保证任何该服务的可用性和持续性. 尽管使用多种反病毒引擎所提供的检测率优于使用单一产品, 但这些结果并不保证文件无害. 目前来说, 没有任何一种解决方案可以提供 100% 的病毒和恶意软件检测率. 如果您购买了一款声称具有此能力的产品, 那么您可能已经成为受害者.

扫描其它文件