|
VirusTotal 是一款可疑檔案分析服務, 通過各種知名反病毒引擎, 對您所上傳的檔案進行偵測, 以判斷檔案是否被病毒, 蠕蟲, 木馬, 以及各類惡意軟體感染. 查看詳細訊息... |
| 反病毒引擎 | 版本 | 最後更新 | 掃瞄結果 |
|---|---|---|---|
| a-squared | 4.5.0.24 | 2009.08.20 | Packed.Win32.Klone!IK |
| AhnLab-V3 | 5.0.0.2 | 2009.08.20 | Win32/Autoit.worm.725796 |
| AntiVir | 7.9.1.3 | 2009.08.20 | SPR/AutoIt.Gen |
| Antiy-AVL | 2.0.3.7 | 2009.08.20 | - |
| Authentium | 5.1.2.4 | 2009.08.19 | - |
| Avast | 4.8.1335.0 | 2009.08.20 | - |
| AVG | 8.5.0.406 | 2009.08.20 | Worm/Autoit.AADD |
| BitDefender | 7.2 | 2009.08.20 | - |
| CAT-QuickHeal | 10.00 | 2009.08.20 | Win32.Packed.Klone.bj.4 |
| ClamAV | 0.94.1 | 2009.08.20 | Trojan.Autoit-72 |
| Comodo | 2037 | 2009.08.20 | TrojWare.Win32.Trojan.Agent.Gen |
| DrWeb | 5.0.0.12182 | 2009.08.20 | Win32.HLLW.Autohit.3438 |
| eSafe | 7.0.17.0 | 2009.08.20 | Win32.SPRAutoIt |
| eTrust-Vet | 31.6.6691 | 2009.08.20 | - |
| F-Prot | 4.4.4.56 | 2009.08.20 | - |
| F-Secure | 8.0.14470.0 | 2009.08.20 | Packed.Win32.Klone.bj |
| Fortinet | 3.120.0.0 | 2009.08.20 | W32/Autorun.BJ!worm |
| GData | 19 | 2009.08.20 | - |
| Ikarus | T3.1.1.68.0 | 2009.08.20 | Packed.Win32.Klone |
| Jiangmin | 11.0.800 | 2009.08.20 | - |
| K7AntiVirus | 7.10.823 | 2009.08.20 | Packed.Win32.Klone.bj |
| Kaspersky | 7.0.0.125 | 2009.08.20 | Packed.Win32.Klone.bj |
| McAfee | 5715 | 2009.08.20 | W32/Autorun.worm.bz.gen |
| McAfee+Artemis | 5715 | 2009.08.20 | Artemis!3DE683248919 |
| McAfee-GW-Edition | 6.8.5 | 2009.08.20 | Riskware.AutoIt.Gen |
| Microsoft | 1.4903 | 2009.08.20 | Worm:AutoIt/Renocide.gen!C |
| NOD32 | 4353 | 2009.08.20 | Win32/Packed.Autoit.Gen |
| Norman | 6.01.09 | 2009.08.20 | Smalltroj.PFDP |
| nProtect | 2009.1.8.0 | 2009.08.20 | Trojan/W32.Klone.725796 |
| Panda | 10.0.0.14 | 2009.08.20 | Trj/CI.A |
| PCTools | 4.4.2.0 | 2009.08.20 | - |
| Prevx | 3.0 | 2009.08.20 | High Risk Worm |
| Rising | 21.43.34.00 | 2009.08.20 | - |
| Sophos | 4.44.0 | 2009.08.20 | Mal/Generic-A |
| Sunbelt | 3.2.1858.2 | 2009.08.20 | Trojan.Win32.Generic!BT |
| Symantec | 1.4.4.12 | 2009.08.20 | Bloodhound.Malautoit.2 |
| TheHacker | 6.3.4.3.384 | 2009.08.20 | - |
| TrendMicro | 8.950.0.1094 | 2009.08.20 | - |
| VBA32 | 3.12.10.9 | 2009.08.20 | Trojan.Autoit.FINT |
| ViRobot | 2009.8.20.1893 | 2009.08.20 | - |
| VirusBuster | 4.6.5.0 | 2009.08.19 | - |
| 附加訊息 |
|---|
| File size: 725796 bytes |
| MD5 : 3de68324891964bdd2227141474797bb |
| SHA1 : 5dae0941f1818e6127729fc15897f12539ed6d5e |
| SHA256: af13e8a6b2aacea266e1c6899ada6fdd318e0259b63be4e9d4287200797f6f7e |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x54D3D timedatestamp.....: 0x4850E379 (Thu Jun 12 10:51:05 2008) machinetype.......: 0x14C (Intel I386) ( 4 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x65F57 0x66000 6.69 3acda4623a0e3d29e47286c5ce656b86 .rdata 0x67000 0xE534 0xE600 5.02 f5ea2b2f886fbb9eaf7f19883bd5f07b .data 0x76000 0x16AD8 0x2A00 3.89 85ce1e4957f76b29bd9a747a6ce443cc .rsrc 0x8D000 0x1E2D7 0x1E400 6.39 520747aab96d3ee78042fecc590f44b4 ( 13 imports ) > advapi32.dll: RegEnumValueW, RegDeleteValueW, RegDeleteKeyW, RegSetValueExW, RegCreateKeyExW, GetUserNameW, RegConnectRegistryW, RegEnumKeyExW, AdjustTokenPrivileges, LookupPrivilegeValueW, OpenProcessToken, CloseServiceHandle, UnlockServiceDatabase, LockServiceDatabase, OpenSCManagerW, RegCloseKey, RegQueryValueExW, RegOpenKeyExW > comctl32.dll: ImageList_DragMove, ImageList_EndDrag, ImageList_DragLeave, ImageList_DragEnter, ImageList_BeginDrag, ImageList_SetDragCursorImage, ImageList_Destroy, ImageList_ReplaceIcon, ImageList_Create, InitCommonControlsEx, ImageList_Remove > comdlg32.dll: GetSaveFileNameW, GetOpenFileNameW > gdi32.dll: LineTo, AngleArc, MoveToEx, Ellipse, PolyDraw, BeginPath, SetTextColor, GetObjectW, SetBkMode, RoundRect, SetBkColor, CloseFigure, SetPixel, EndPath, StrokePath, StrokeAndFillPath, ExtCreatePen, PolyBezierTo, SetViewportOrgEx, Rectangle, CreatePen, CreateSolidBrush, CreateCompatibleBitmap, GetPixel, DeleteDC, GetDIBits, BitBlt, SelectObject, CreateDIBSection, CreateCompatibleDC, CreateFontW, GetDeviceCaps, GetTextFaceW, GetStockObject, CreateDCW, GetTextExtentPoint32W, DeleteObject > kernel32.dll: UnmapViewOfFile, OpenProcess, CreateFileMappingW, MapViewOfFile, WriteProcessMemory, ReadProcessMemory, CreateFileW, ReadFile, SetFilePointer, SetFileTime, FindResourceW, LoadResource, GetFileAttributesW, LockResource, FindFirstFileW, SizeofResource, FindClose, EnumResourceNamesW, DeleteFileW, FindNextFileW, lstrcmpiW, MoveFileW, OutputDebugStringW, CopyFileW, CreateDirectoryW, RemoveDirectoryW, TerminateProcess, SetSystemPowerState, GetLocalTime, MultiByteToWideChar, WideCharToMultiByte, CompareStringW, InterlockedIncrement, InterlockedDecrement, WriteFile, CreatePipe, GetStdHandle, InterlockedExchange, EnterCriticalSection, TerminateThread, LeaveCriticalSection, DeleteCriticalSection, GetTempPathW, GetTempFileNameW, VirtualFree, FormatMessageW, GetExitCodeProcess, GetDriveTypeW, QueryPerformanceFrequency, GetVolumeInformationW, SetVolumeLabelW, DeviceIoControl, SetErrorMode, GetPrivateProfileStringW, WritePrivateProfileStringW, GetPrivateProfileSectionW, SetFileAttributesW, WritePrivateProfileSectionW, GetShortPathNameW, GetPrivateProfileSectionNamesW, FileTimeToLocalFileTime, FileTimeToSystemTime, SystemTimeToFileTime, LocalFileTimeToFileTime, GetEnvironmentVariableW, GetFileSize, SetEnvironmentVariableW, GlobalFree, GlobalLock, GlobalUnlock, GlobalAlloc, SetProcessWorkingSetSize, GlobalMemoryStatus, Beep, GetComputerNameW, GetWindowsDirectoryW, GetSystemDirectoryW, GetCurrentProcessId, GetCurrentThread, CreateProcessW, SetPriorityClass, VirtualAlloc, LoadLibraryExW, GetModuleHandleA, GetCPInfo, GetACP, GetOEMCP, IsValidCodePage, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, UnhandledExceptionFilter, SetUnhandledExceptionFilter, RaiseException, GetModuleFileNameA, HeapSize, HeapReAlloc, HeapDestroy, HeapCreate, RtlUnwind, QueryPerformanceCounter, GetModuleHandleW, GetSystemInfo, GetVersionExW, GetCurrentThreadId, Sleep, WaitForSingleObject, CreateThread, DuplicateHandle, GetLastError, HeapAlloc, GetProcessHeap, HeapFree, CloseHandle, GetCurrentProcess, LoadLibraryA, GetModuleFileNameW, GetFullPathNameW, SetCurrentDirectoryW, GetConsoleCP, GetConsoleMode, SetHandleCount, GetCurrentDirectoryW, FreeLibrary, InitializeCriticalSection, GetProcAddress, LoadLibraryW, GetStartupInfoW, GetVersionExA, ExitProcess, ExitThread, GetSystemTimeAsFileTime, GetFileType, GetStartupInfoA, SetStdHandle, ResumeThread, FlushFileBuffers, LCMapStringA, LCMapStringW, GetTimeZoneInformation, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, GetCommandLineA, GetCommandLineW, GetTickCount, GetStringTypeA, GetStringTypeW, GetLocaleInfoA, WriteConsoleA, GetConsoleOutputCP, WriteConsoleW, CreateFileA, SetEndOfFile, CompareStringA, GetDiskFreeSpaceW, SetEnvironmentVariableA > mpr.dll: WNetUseConnectionW, WNetGetConnectionW, WNetAddConnection2W, WNetCancelConnection2W > ole32.dll: OleSetMenuDescriptor, MkParseDisplayName, OleSetContainedObject, CoInitialize, CoUninitialize, CoCreateInstance, CreateStreamOnHGlobal, CoTaskMemAlloc, CoTaskMemFree, IIDFromString, StringFromIID, CLSIDFromString, OleInitialize, CreateBindCtx, CLSIDFromProgID, CoInitializeSecurity, CoCreateInstanceEx, CoSetProxyBlanket, StringFromCLSID, OleUninitialize > oleaut32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, - > shell32.dll: DragQueryPoint, ShellExecuteExW, DragQueryFileW, SHBrowseForFolderW, SHFileOperationW, SHGetPathFromIDListW, SHGetDesktopFolder, SHGetMalloc, ExtractIconExW, Shell_NotifyIconW, ShellExecuteW, DragFinish > user32.dll: SetWindowLongW, FlashWindow, GetActiveWindow, InflateRect, CharNextW, DrawFocusRect, wsprintfW, DrawTextW, RedrawWindow, FrameRect, DrawFrameControl, FillRect, DrawMenuBar, PtInRect, DestroyMenu, SetMenu, DestroyAcceleratorTable, CreateAcceleratorTableW, GetWindowTextLengthW, SetCursor, GetWindowDC, TranslateAcceleratorW, GetSystemMetrics, IsDialogMessageW, CreateMenu, IsDlgButtonChecked, GetSysColor, DefDlgProcW, ReleaseCapture, SetCapture, SetActiveWindow, FindWindowExW, EnumThreadWindows, LoadImageW, CreateIconFromResourceEx, mouse_event, SetMenuDefaultItem, InsertMenuItemW, IsMenu, TrackPopupMenuEx, GetCursorPos, DeleteMenu, CheckMenuRadioItem, GetMenuItemID, GetMenuItemCount, IsZoomed, GetMenuItemInfoW, SetForegroundWindow, IsIconic, FindWindowW, SystemParametersInfoW, GetAsyncKeyState, SetKeyboardState, GetKeyboardState, GetKeyState, DispatchMessageW, GetDC, GetKeyboardLayoutNameA, LoadStringW, DialogBoxParamW, MessageBeep, EndDialog, SendDlgItemMessageW, GetDlgItem, SetWindowTextW, DestroyWindow, GetMenu, GetClientRect, CopyRect, EndPaint, BeginPaint, EnumWindows, GetDesktopWindow, IsWindow, IsWindowEnabled, IsWindowVisible, EnableWindow, InvalidateRect, GetWindowLongW, GetWindowThreadProcessId, AttachThreadInput, SendMessageTimeoutW, GetFocus, GetWindowTextW, ScreenToClient, EnumChildWindows, CharUpperBuffW, GetClassNameW, GetParent, GetDlgCtrlID, SendMessageW, MapVirtualKeyW, GetCaretPos, GetSubMenu, GetMenuStringW, IsCharUpperW, IsCharLowerW, IsCharAlphaNumericW, IsCharAlphaW, GetKeyboardLayoutNameW, ClientToScreen, RegisterHotKey, ReleaseDC, SetMenuItemInfoW, GetCursor, PostMessageW, GetWindowRect, MessageBoxW, GetForegroundWindow, DefWindowProcW, MoveWindow, SetFocus, PostQuitMessage, KillTimer, CreatePopupMenu, MessageBoxA, RegisterWindowMessageW, DestroyIcon, SetTimer, ShowWindow, CreateWindowExW, RegisterClassExW, LoadIconW, LoadCursorW, GetSysColorBrush, TranslateMessage, PeekMessageW, WindowFromPoint, SetClipboardData, EmptyClipboard, CountClipboardFormats, SetWindowPos, CopyImage, CloseClipboard, GetClipboardData, IsClipboardFormatAvailable, OpenClipboard, AdjustWindowRectEx, SetRect, CharLowerBuffW, GetMessageW, VkKeyScanA, LockWindowUpdate, UnregisterHotKey, keybd_event, ExitWindowsEx, CharUpperW > version.dll: GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW > winmm.dll: waveOutSetVolume, mciSendStringW, timeGetTime > wsock32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, - ( 0 exports ) |
| TrID : File type identification Windows Screen Saver (51.1%) Win32 Executable Generic (33.2%) Generic Win/DOS Executable (7.8%) DOS Executable Generic (7.8%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
| ThreatExpert: http://www.threatexpert.com/report.aspx?md5=3de68324891964bdd2227141474797bb |
| ssdeep: 12288:26SKqT31T6WpJY6V765jKqostkm3ObiDZWXscno4zSz:DxqT31T6WE6I5jKqosOm+biwXsjiy |
| Prevx Info: http://info.prevx.com/aboutprogramtext.asp?PX5=BCA6C4542421B3E013620B61DAB4F70057BBF982 |
| PEiD : - |
| RDS : NSRL Reference Data Set - |
注意:
VirusTotal 是 Hispasec Sistemas 提供的免費服務. 我們不保證任何該服務的可用性和持續性. 儘管使用多種反病毒引擎所提供的偵測率優於使用單一產品, 但這些結果並不保證檔案無害. 目前來說, 沒有任何一種解決方案可以提供 100% 的病毒和惡意軟體偵測率. 如果您購買了一款聲稱具有此能力的產品, 那麼您可能已經成為受害者.