|
VirusTotal 是一款可疑文件分析服务, 通过各种知名反病毒引擎, 对您所上传的文件进行检测, 以判断文件是否被病毒, 蠕虫, 木马, 以及各类恶意软件感染. 查看详细信息... |
| 反病毒引擎 | 版本 | 最后更新 | 扫描结果 |
|---|---|---|---|
| a-squared | 4.5.0.18 | 2009.06.17 | Trojan-PWS.Win32.Delf!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.06.17 | - |
| AntiVir | 7.9.0.187 | 2009.06.17 | TR/Spy.Gen |
| Antiy-AVL | 2.0.3.1 | 2009.06.17 | Trojan/Win32.Agent.gen |
| Authentium | 5.1.2.4 | 2009.06.17 | - |
| Avast | 4.8.1335.0 | 2009.06.16 | - |
| AVG | 8.5.0.339 | 2009.06.17 | Downloader.Agent2.EMK |
| BitDefender | 7.2 | 2009.06.17 | - |
| CAT-QuickHeal | 10.00 | 2009.06.17 | TrojanDownloader.Agent.cfoz |
| ClamAV | 0.94.1 | 2009.06.17 | - |
| Comodo | 1356 | 2009.06.17 | - |
| DrWeb | 5.0.0.12182 | 2009.06.17 | - |
| eSafe | 7.0.17.0 | 2009.06.17 | Win32.TRSpy |
| eTrust-Vet | 31.6.6564 | 2009.06.17 | - |
| F-Prot | 4.4.4.56 | 2009.06.16 | - |
| F-Secure | 8.0.14470.0 | 2009.06.17 | Trojan-Downloader.Win32.Agent.cfoz |
| Fortinet | 3.117.0.0 | 2009.06.17 | W32/Agent.CFOZ!tr.dldr |
| GData | 19 | 2009.06.17 | - |
| Ikarus | T3.1.1.59.0 | 2009.06.17 | Trojan-PWS.Win32.Delf |
| Jiangmin | 11.0.706 | 2009.06.17 | - |
| K7AntiVirus | 7.10.766 | 2009.06.17 | Trojan-Downloader.Win32.Agent.cfoz |
| Kaspersky | 7.0.0.125 | 2009.06.17 | Trojan-Downloader.Win32.Agent.cfoz |
| McAfee | 5649 | 2009.06.17 | - |
| McAfee+Artemis | 5649 | 2009.06.17 | Artemis!95733153E5EA |
| McAfee-GW-Edition | 6.7.6 | 2009.06.17 | Trojan.Spy.Gen |
| Microsoft | 1.4701 | 2009.06.17 | - |
| NOD32 | 4163 | 2009.06.17 | Win32/TrojanDownloader.Banload.ORK |
| Norman | 6.01.09 | 2009.06.17 | - |
| nProtect | 2009.1.8.0 | 2009.06.17 | - |
| Panda | 10.0.0.14 | 2009.06.16 | Suspicious file |
| PCTools | 4.4.2.0 | 2009.06.17 | - |
| Prevx | 3.0 | 2009.06.17 | Medium Risk Malware |
| Rising | 21.34.24.00 | 2009.06.17 | - |
| Sophos | 4.42.0 | 2009.06.17 | Sus/BancDl-A |
| Sunbelt | 3.2.1858.2 | 2009.06.17 | - |
| Symantec | 1.4.4.12 | 2009.06.17 | Trojan Horse |
| TheHacker | 6.3.4.3.348 | 2009.06.17 | - |
| TrendMicro | 8.950.0.1094 | 2009.06.17 | - |
| VBA32 | 3.12.10.7 | 2009.06.17 | Trojan-Downloader.Win32.Agent.cfoz |
| ViRobot | 2009.6.17.1792 | 2009.06.17 | - |
| VirusBuster | 4.6.5.0 | 2009.06.17 | Trojan.DL.Agent.LPJK |
| 附加信息 |
|---|
| File size: 577536 bytes |
| MD5 : 95733153e5ea0d8767f855e9975aa8cb |
| SHA1 : 420986973ef484beea8865f0dcd8bc6907c27b94 |
| SHA256: 92330bfad04d3f4179f0b84ac5a641e569085c2e9f694d69994607b3de2146d9 |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x7304C timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992) machinetype.......: 0x14C (Intel I386) ( 8 sections ) name viradd virsiz rawdsiz ntrpy md5 CODE 0x1000 0x72634 0x72800 6.59 78918ad3148adaa347021c53308289e7 DATA 0x74000 0x25B4 0x2600 5.66 e4f1378956e66aa5ed956874c5dae880 BSS 0x77000 0x51359 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .idata 0xC9000 0x2344 0x2400 4.99 aaaffd8797d124cd22bdcd4f86097fd2 .tls 0xCC000 0x10 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .rdata 0xCD000 0x18 0x200 0.21 c8b014faa11b00ef2fd1404a135dcea8 .reloc 0xCE000 0x877C 0x8800 6.65 388b7bb03955556cc28b9c4f7625743d .rsrc 0xD7000 0xD000 0xD000 4.55 58a8331a3aa9b884f8310b50130d412c ( 9 imports ) > advapi32.dll: RegQueryValueExA, RegOpenKeyExA, RegCloseKey, RegQueryValueExA, RegQueryInfoKeyA, RegOpenKeyExA, RegFlushKey, RegEnumKeyExA, RegCloseKey > comctl32.dll: ImageList_SetIconSize, ImageList_GetIconSize, ImageList_Write, ImageList_Read, ImageList_GetDragImage, ImageList_DragShowNolock, ImageList_SetDragCursorImage, ImageList_DragMove, ImageList_DragLeave, ImageList_DragEnter, ImageList_EndDrag, ImageList_BeginDrag, ImageList_Remove, ImageList_DrawEx, ImageList_Draw, ImageList_GetBkColor, ImageList_SetBkColor, ImageList_ReplaceIcon, ImageList_Add, ImageList_GetImageCount, ImageList_Destroy, ImageList_Create > gdi32.dll: UnrealizeObject, StretchBlt, SetWindowOrgEx, SetViewportOrgEx, SetTextColor, SetStretchBltMode, SetROP2, SetPixel, SetDIBColorTable, SetBrushOrgEx, SetBkMode, SetBkColor, SelectPalette, SelectObject, SaveDC, RestoreDC, RectVisible, RealizePalette, PatBlt, MoveToEx, MaskBlt, LineTo, IntersectClipRect, GetWindowOrgEx, GetTextMetricsA, GetTextExtentPoint32A, GetSystemPaletteEntries, GetStockObject, GetPixel, GetPaletteEntries, GetObjectA, GetDeviceCaps, GetDIBits, GetDIBColorTable, GetDCOrgEx, GetCurrentPositionEx, GetClipBox, GetBrushOrgEx, GetBitmapBits, ExcludeClipRect, DeleteObject, DeleteDC, CreateSolidBrush, CreatePenIndirect, CreatePalette, CreateHalftonePalette, CreateFontIndirectA, CreateDIBitmap, CreateDIBSection, CreateCompatibleDC, CreateCompatibleBitmap, CreateBrushIndirect, CreateBitmap, BitBlt > kernel32.dll: DeleteCriticalSection, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, VirtualFree, VirtualAlloc, LocalFree, LocalAlloc, GetTickCount, QueryPerformanceCounter, GetVersion, GetCurrentThreadId, InterlockedDecrement, InterlockedIncrement, VirtualQuery, WideCharToMultiByte, MultiByteToWideChar, lstrlenA, lstrcpynA, LoadLibraryExA, GetThreadLocale, GetStartupInfoA, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLastError, GetCommandLineA, FreeLibrary, FindFirstFileA, FindClose, ExitProcess, ExitThread, CreateThread, WriteFile, UnhandledExceptionFilter, SetFilePointer, SetEndOfFile, RtlUnwind, ReadFile, RaiseException, GetStdHandle, GetFileSize, GetFileType, CreateFileA, CloseHandle, TlsSetValue, TlsGetValue, LocalAlloc, GetModuleHandleA, lstrcpyA, WriteProcessMemory, WriteFile, WaitForSingleObject, VirtualQuery, VirtualProtect, VirtualAlloc, Sleep, SizeofResource, SetThreadLocale, SetFilePointer, SetFileAttributesA, SetEvent, SetErrorMode, SetEndOfFile, ResumeThread, ResetEvent, ReadProcessMemory, ReadFile, MulDiv, LockResource, LoadResource, LoadLibraryA, LeaveCriticalSection, InitializeCriticalSection, GlobalUnlock, GlobalReAlloc, GlobalHandle, GlobalLock, GlobalFree, GlobalFindAtomA, GlobalDeleteAtom, GlobalAlloc, GlobalAddAtomA, GetVersionExA, GetVersion, GetTimeZoneInformation, GetTickCount, GetThreadLocale, GetTempPathA, GetSystemTime, GetSystemInfo, GetStringTypeExA, GetStdHandle, GetProcAddress, GetModuleHandleA, GetModuleFileNameA, GetLocaleInfoA, GetLocalTime, GetLastError, GetFullPathNameA, GetFileSize, GetExitCodeThread, GetEnvironmentVariableA, GetDiskFreeSpaceA, GetDateFormatA, GetCurrentThreadId, GetCurrentProcessId, GetCurrentProcess, GetComputerNameA, GetCPInfo, GetACP, FreeResource, InterlockedIncrement, InterlockedExchange, InterlockedDecrement, FreeLibrary, FormatMessageA, FindResourceA, FindNextFileA, FindFirstFileA, FindClose, FileTimeToLocalFileTime, FileTimeToDosDateTime, EnumCalendarInfoA, EnterCriticalSection, DeviceIoControl, DeleteFileA, DeleteCriticalSection, CreateThread, CreateFileA, CreateEventA, CompareStringA, CompareFileTime, CloseHandle, Sleep > ole32.dll: CoTaskMemFree > oleaut32.dll: SysFreeString, SysReAllocStringLen, SysAllocStringLen, SafeArrayPtrOfIndex, SafeArrayGetUBound, SafeArrayGetLBound, SafeArrayCreate, VariantChangeType, VariantCopy, VariantClear, VariantInit > shell32.dll: ShellExecuteA > user32.dll: GetKeyboardType, LoadStringA, MessageBoxA, CharNextA, CreateWindowExA, WindowFromPoint, WinHelpA, WaitMessage, UpdateWindow, UnregisterClassA, UnhookWindowsHookEx, TranslateMessage, TranslateMDISysAccel, TrackPopupMenu, SystemParametersInfoA, ShowWindow, ShowScrollBar, ShowOwnedPopups, ShowCursor, SetWindowsHookExA, SetWindowPos, SetWindowPlacement, SetWindowLongA, SetTimer, SetScrollRange, SetScrollPos, SetScrollInfo, SetRect, SetPropA, SetParent, SetMenuItemInfoA, SetMenu, SetForegroundWindow, SetFocus, SetCursor, SetClassLongA, SetCapture, SetActiveWindow, SendMessageA, ScrollWindow, ScreenToClient, RemovePropA, RemoveMenu, ReleaseDC, ReleaseCapture, RegisterWindowMessageA, RegisterClipboardFormatA, RegisterClassA, RedrawWindow, PtInRect, PostQuitMessage, PostMessageA, PeekMessageA, OffsetRect, OemToCharA, MsgWaitForMultipleObjects, MessageBoxA, MapWindowPoints, MapVirtualKeyA, LoadStringA, LoadKeyboardLayoutA, LoadIconA, LoadCursorA, LoadBitmapA, KillTimer, IsZoomed, IsWindowVisible, IsWindowEnabled, IsWindow, IsRectEmpty, IsIconic, IsDialogMessageA, IsChild, InvalidateRect, IntersectRect, InsertMenuItemA, InsertMenuA, InflateRect, GetWindowThreadProcessId, GetWindowTextA, GetWindowRect, GetWindowPlacement, GetWindowLongA, GetWindowDC, GetTopWindow, GetSystemMetrics, GetSystemMenu, GetSysColorBrush, GetSysColor, GetSubMenu, GetScrollRange, GetScrollPos, GetScrollInfo, GetPropA, GetParent, GetWindow, GetMenuStringA, GetMenuState, GetMenuItemInfoA, GetMenuItemID, GetMenuItemCount, GetMenu, GetLastActivePopup, GetKeyboardState, GetKeyboardLayoutList, GetKeyboardLayout, GetKeyState, GetKeyNameTextA, GetIconInfo, GetForegroundWindow, GetFocus, GetDlgItemTextA, GetDesktopWindow, GetDCEx, GetDC, GetCursorPos, GetCursor, GetClientRect, GetClassNameA, GetClassInfoA, GetCapture, GetActiveWindow, FrameRect, FindWindowA, FillRect, EqualRect, EnumWindows, EnumThreadWindows, EndPaint, EnableWindow, EnableScrollBar, EnableMenuItem, DrawTextA, DrawMenuBar, DrawIconEx, DrawIcon, DrawFrameControl, DrawEdge, DispatchMessageA, DialogBoxParamA, DestroyWindow, DestroyMenu, DestroyIcon, DestroyCursor, DeleteMenu, DefWindowProcA, DefMDIChildProcA, DefFrameProcA, CreatePopupMenu, CreateMenu, CreateIcon, ClientToScreen, CheckMenuItem, CallWindowProcA, CallNextHookEx, BeginPaint, CharNextA, CharLowerA, CharUpperBuffA, CharToOemA, AdjustWindowRectEx, ActivateKeyboardLayout > version.dll: VerQueryValueA, GetFileVersionInfoSizeA, GetFileVersionInfoA ( 0 exports ) |
| TrID : File type identification Win32 Executable Borland Delphi 7 (66.2%) Win32 Executable Borland Delphi 6 (25.9%) Win32 EXE PECompact compressed (generic) (4.1%) Win32 Executable Delphi generic (1.4%) Win32 Executable Generic (0.8%) |
| ThreatExpert: http://www.threatexpert.com/report.aspx?md5=95733153e5ea0d8767f855e9975aa8cb |
| ssdeep: - |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=3D9FC907003874F5D0E20815F6F08500CC3CF4C2 |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
注意:
VirusTotal 是 Hispasec Sistemas 提供的免费服务. 我们不保证任何该服务的可用性和持续性. 尽管使用多种反病毒引擎所提供的检测率优于使用单一产品, 但这些结果并不保证文件无害. 目前来说, 没有任何一种解决方案可以提供 100% 的病毒和恶意软件检测率. 如果您购买了一款声称具有此能力的产品, 那么您可能已经成为受害者.