Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

VirusTotal 是一款可疑文件分析服务, 通过各种知名反病毒引擎, 对您所上传的文件进行检测, 以判断文件是否被病毒, 蠕虫, 木马, 以及各类恶意软件感染. 查看详细信息...

文件 kk.exe 接收于 2008.07.07 03:24:16 (UTC)
当前状态: 完成
结果: 18/33 (54.55%)
反病毒引擎 版本 最后更新 扫描结果
AhnLab-V3 2008.7.4.1 2008.07.05 Win-Trojan/Xema.variant
AntiVir 7.8.0.64 2008.07.05 Worm/Mytob.BI.178
Authentium 5.1.0.4 2008.07.06 -
Avast 4.8.1195.0 2008.07.06 Win32:Banload-COP
AVG 7.5.0.516 2008.07.06 I-Worm/Mytob.ABR
BitDefender 7.2 2008.07.07 Win32.Worm.Mytob.BI
CAT-QuickHeal 9.50 2008.07.04 (Suspicious) - DNAScan
ClamAV 0.93.1 2008.07.06 Trojan.Banload.OWJ
DrWeb 4.44.0.09170 2008.07.06 -
eSafe 7.0.17.0 2008.07.03 -
eTrust-Vet 31.6.5927 2008.07.04 -
Ewido 4.0 2008.07.06 -
F-Prot 4.4.4.56 2008.07.06 -
F-Secure 7.60.13501.0 2008.07.03 -
Fortinet 3.14.0.0 2008.07.06 W32/MyTob.NL@mm
GData 2.0.7306.1023 2008.07.07 Win32:Banload-COP
Ikarus T3.1.1.26.0 2008.07.07 Backdoor.Win32.Nuclear.ai
Kaspersky 7.0.0.125 2008.07.06 -
McAfee 5332 2008.07.04 W32/Mytob.gen@MM
Microsoft 1.3704 2008.07.06 -
NOD32v2 3244 2008.07.05 -
Norman 5.80.02 2008.07.04 -
Panda 9.0.0.4 2008.07.06 Generic Worm
Prevx1 V2 2008.07.07 Malicious Software
Rising 20.51.60.00 2008.07.06 -
Sophos 4.31.0 2008.07.07 -
Sunbelt 3.1.1509.1 2008.07.04 Worm.Win32.Mytob.BI
Symantec 10 2008.07.07 W32.Mytob@mm
TheHacker 6.2.96.374 2008.07.07 -
TrendMicro 8.700.0.1004 2008.07.05 WORM_MYTOB.ACO
VBA32 3.12.6.8 2008.07.06 Net-Worm.Win32.Mytob.bi
VirusBuster 4.5.11.0 2008.07.06 -
Webwasher-Gateway 6.6.2 2008.07.05 Worm.Mytob.BI.178
附加信息
File size: 782426 bytes
MD5...: 917d3b0998d1beea063c51d36c25b2f3
SHA1..: 997624321a63ac093fc04f6a134aa0dba5e04f27
SHA256: 55686b8006f31cabd9c89cce5fdd672e04612a1fa13babc8ee630dec62fb750a
SHA512: a9e6bd39e281138fe339e1d9ada0497dbb6e8d7a8994e44b260680ea76134d78
2af395fcae53561435803ca7374ab4787111d036a4b5e087e0da3adff450caf8
PEiD..: Thinstall 2.5 -> ??? (h)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x401a94
timedatestamp.....: 0x42003440 (Wed Feb 02 02:00:32 2005)
machinetype.......: 0x14c (I386)

( 1 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x7b000 0x8d24 6.73 59b9017b32e057f4978925952fc8d7f0

( 16 imports )
> USER32.dll: MessageBoxA
> KERNEL32.dll: GetModuleFileNameA, GetEnvironmentVariableA, ExitProcess, FormatMessageA, GetLastError, SetLastError, GetProcAddress, VirtualProtect, LoadLibraryA, GetModuleHandleA, MultiByteToWideChar, GetModuleFileNameW, GetVersionExA, VirtualFree, VirtualAlloc, GlobalAlloc, SetFilePointer, ReadFile, CreateFileA
> oleaut32.dll: SysFreeString
> advapi32.dll: RegQueryValueExA
> user32.dll: GetKeyboardType
> kernel32.dll: GetACP
> kernel32.dll: TlsSetValue
> user32.dll: CreateWindowExA
> gdi32.dll: UnrealizeObject
> version.dll: VerQueryValueA
> kernel32.dll: lstrcpyA
> advapi32.dll: RegQueryValueExA
> ole32.dll: CoTaskMemFree
> kernel32.dll: Sleep
> oleaut32.dll: SafeArrayPtrOfIndex
> comctl32.dll: _TrackMouseEvent

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=ACD4ACA75AE46C62F0A50BB863E2150076AAB09D

注意 注意: VirusTotal 是 Hispasec Sistemas 提供的免费服务. 我们不保证任何该服务的可用性和持续性. 尽管使用多种反病毒引擎所提供的检测率优于使用单一产品, 但这些结果并不保证文件无害. 目前来说, 没有任何一种解决方案可以提供 100% 的病毒和恶意软件检测率. 如果您购买了一款声称具有此能力的产品, 那么您可能已经成为受害者.

扫描其它文件