Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

VirusTotal 是一款可疑檔案分析服務, 通過各種知名反病毒引擎, 對您所上傳的檔案進行偵測, 以判斷檔案是否被病毒, 蠕蟲, 木馬, 以及各類惡意軟體感染. 查看詳細訊息...

檔案 kodnkwnv.sys 接收於 2008.11.12 19:55:20 (UTC)
當前狀態: 完成
結果: 3/36 (8.33%)
反病毒引擎 版本 最後更新 掃瞄結果
AhnLab-V3 2008.11.13.0 2008.11.12 -
AntiVir 7.9.0.31 2008.11.12 -
Authentium 5.1.0.4 2008.11.12 -
Avast 4.8.1248.0 2008.11.12 -
AVG 8.0.0.199 2008.11.12 -
BitDefender 7.2 2008.11.12 -
CAT-QuickHeal 9.50 2008.11.12 -
ClamAV 0.94.1 2008.11.12 -
DrWeb 4.44.0.09170 2008.11.12 -
eSafe 7.0.17.0 2008.11.12 -
eTrust-Vet 31.6.6204 2008.11.11 -
Ewido 4.0 2008.11.12 -
F-Prot 4.4.4.56 2008.11.11 -
F-Secure 8.0.14332.0 2008.11.12 -
Fortinet 3.117.0.0 2008.11.12 -
GData 19 2008.11.12 -
Ikarus T3.1.1.45.0 2008.11.12 Virus.Win32.Rootkit
K7AntiVirus 7.10.523 2008.11.12 Trojan.Win32.Malware.1
Kaspersky 7.0.0.125 2008.11.12 -
McAfee 5431 2008.11.12 -
Microsoft 1.4104 2008.11.12 -
NOD32 3607 2008.11.12 -
Norman 5.80.02 2008.11.12 -
Panda 9.0.0.4 2008.11.12 Rootkit/Booto.C
PCTools 4.4.2.0 2008.11.12 -
Prevx1 V2 2008.11.12 -
Rising 21.03.22.00 2008.11.12 -
SecureWeb-Gateway 6.7.6 2008.11.12 -
Sophos 4.35.0 2008.11.12 -
Sunbelt 3.1.1785.2 2008.11.11 -
Symantec 10 2008.11.12 -
TheHacker 6.3.1.1.149 2008.11.12 -
TrendMicro 8.700.0.1004 2008.11.12 -
VBA32 3.12.8.9 2008.11.11 -
ViRobot 2008.11.12.1463 2008.11.12 -
VirusBuster 4.5.11.0 2008.11.12 -
附加訊息
File size: 60416 bytes
MD5...: 4ad5d5229f85f42e873fda98190b2f19
SHA1..: 7e1bc7c4f0324c0ad58b829b2524e0cb617ef158
SHA256: 369f1be79b3466908a93086e05cebe65725d61a4d0885a3ecb1a257ec70d3a9f
SHA512: df1244e5c3ce88a72adcb204ba0bb010138adafbc687f51939a20c3da1fb65a8
d44b909bd02421840b7ad6a63695a52f4d3ae932cc06fa78bc92a54cf69d13cd
PEiD..: -
TrID..: File type identification
Clipper DOS Executable (33.3%)
Generic Win/DOS Executable (33.0%)
DOS Executable Generic (33.0%)
VXD Driver (0.5%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x1d116
timedatestamp.....: 0x43ffe49f (Sat Feb 25 05:01:19 2006)
machinetype.......: 0x14c (I386)

( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x480 0xd28a 0xd300 5.55 f71af71856953abfcbf3519fb912c7b1
.rdata 0xd780 0xfe 0x100 4.47 3684165ded29d30ec78a464b892a2464
.data 0xd880 0xb7 0x100 0.04 66a415a49d751cb335895306ecfb3389
INIT 0xd980 0x332 0x380 4.87 766c4eca5df25cfad466c1f1a08deb1c
.reloc 0xdd00 0xe9c 0xf00 6.65 d206a6de9a62062d2ed031bd52b8d7ce

( 1 imports )
> ntoskrnl.exe: ZwWriteFile, wcslen, ZwOpenFile, ExFreePoolWithTag, ZwClose, ExAllocatePoolWithTag, ZwQueryValueKey, RtlInitUnicodeString, ZwOpenKey, RtlUpcaseUnicodeChar, ZwCreateFile, wcscat, wcscpy, ZwDeleteKey, swprintf, ZwEnumerateKey, DbgPrint, RtlPrefixUnicodeString, RtlDeleteRegistryValue, ZwSetValueKey, RtlWriteRegistryValue, _wcsicmp, ZwEnumerateValueKey, ZwReadFile, ZwQueryInformationFile, KeTickCount, ZwSetInformationFile, RtlCheckRegistryKey, PsTerminateSystemThread, KeSetPriorityThread, KeGetCurrentThread, KeDelayExecutionThread, PsCreateSystemThread, PsGetVersion

( 0 exports )

Importante 注意: VirusTotal 是 Hispasec Sistemas 提供的免費服務. 我們不保證任何該服務的可用性和持續性. 儘管使用多種反病毒引擎所提供的偵測率優於使用單一產品, 但這些結果並不保證檔案無害. 目前來說, 沒有任何一種解決方案可以提供 100% 的病毒和惡意軟體偵測率. 如果您購買了一款聲稱具有此能力的產品, 那麼您可能已經成為受害者.

掃瞄其它檔案