Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

VirusTotal 是一款可疑檔案分析服務, 通過各種知名反病毒引擎, 對您所上傳的檔案進行偵測, 以判斷檔案是否被病毒, 蠕蟲, 木馬, 以及各類惡意軟體感染. 查看詳細訊息...

檔案 wintask.exe 接收於 2009.01.27 17:41:49 (UTC)
當前狀態: 完成
結果: 23/38 (60.53%)
反病毒引擎 版本 最後更新 掃瞄結果
a-squared 4.0.0.73 2009.01.27 Worm.Win32.Pushbot!IK
AhnLab-V3 5.0.0.2 2009.01.26 -
AntiVir 7.9.0.60 2009.01.27 Worm/Mytob.ggm
Authentium 5.1.0.4 2009.01.26 -
Avast 4.8.1281.0 2009.01.27 Win32:Trojan-gen {Other}
AVG 8.0.0.229 2009.01.27 Hosts
BitDefender 7.2 2009.01.27 Backdoor.Bot.75882
CAT-QuickHeal 10.00 2009.01.27 I-Worm.Mytob.ggm
ClamAV 0.94.1 2009.01.27 -
Comodo 948 2009.01.27 NetWorm.Win32.Mytob.ggm
DrWeb 4.44.0.09170 2009.01.27 BackDoor.Poison.61
eSafe 7.0.17.0 2009.01.27 -
eTrust-Vet 31.6.6329 2009.01.27 -
F-Prot 4.4.4.56 2009.01.26 -
Fortinet 3.117.0.0 2009.01.27 -
GData 19 2009.01.27 Backdoor.Bot.75882
Ikarus T3.1.1.45.0 2009.01.27 Worm.Win32.Pushbot
K7AntiVirus 7.10.607 2009.01.27 Net-Worm.Win32.Mytob.ggm
Kaspersky 7.0.0.125 2009.01.27 Net-Worm.Win32.Mytob.ggm
McAfee 5507 2009.01.26 W32/Mytob.gen@MM
McAfee+Artemis 5507 2009.01.26 W32/Mytob.gen@MM
Microsoft 1.4205 2009.01.27 Worm:Win32/Pushbot.gen!C
NOD32 3804 2009.01.27 probably a variant of Win32/Mytob
Norman 5.93.01 2009.01.27 W32/Mytob.GRS
nProtect 2009.1.8.0 2009.01.27 -
Panda 9.5.1.2 2009.01.27 W32/Mytob.QL.worm
PCTools 4.4.2.0 2009.01.27 -
Prevx1 V2 2009.01.27 Malicious Software
Rising 21.13.42.00 2009.01.23 -
SecureWeb-Gateway 6.7.6 2009.01.27 Worm.Mytob.ggm
Sophos 4.37.0 2009.01.27 -
Sunbelt 3.2.1835.2 2009.01.16 -
Symantec 10 2009.01.27 W32.Mytob@mm
TheHacker 6.3.1.5.229 2009.01.26 -
TrendMicro 8.700.0.1004 2009.01.27 WORM_MYTOB.OL
VBA32 3.12.8.11 2009.01.27 Trojan.Win32.Delf.hhl
ViRobot 2009.1.23.1577 2009.01.26 -
VirusBuster 4.5.11.0 2009.01.27 -
附加訊息
File size: 122368 bytes
MD5...: 0e767e16a703ef0c497756ceaf5ea83e
SHA1..: 388a81916b3f00a30fdc147f271accbf84e1b47b
SHA256: 90a38f8d60e9f27030cb3cf1ab0cd19bbef6208226843dc1ef25dde40c9ae459
SHA512: fbd7c7f828c100c63fdec658748ce3364c7f01af89afdeb757914e244952b461
cd88bb0f255525d045c05228e2e699feb4a1ca5c7aa0a31db14c0c7874733093
ssdeep: 3072:iIJvaCjS6KDWhhNcAhBEut5OT3abofiB4ITlH346OD8cKppuWx:iIJv06Lv
Ft5Ojabo2h346sKDuWx
PEiD..: -
TrID..: File type identification
Win32 Executable Generic (58.3%)
Win16/32 Executable Delphi generic (14.1%)
Generic Win/DOS Executable (13.7%)
DOS Executable Generic (13.6%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x7620
timedatestamp.....: 0x49245a94 (Wed Nov 19 18:27:32 2008)
machinetype.......: 0x14c (I386)

( 9 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x6000 0x5c00 6.51 798f9be71ce9c5c0d5c8bcc3b807ff38
.itext 0x7000 0x1000 0x800 4.70 ec1cb07438dd438fac8424501bd44ffd
.data 0x8000 0x1000 0x800 1.37 d759fa8ceff8500ba7d097420bb38450
.bss 0x9000 0x3000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.idata 0xc000 0x1000 0x800 4.04 657ea2aa89274841c233b58953624e02
.tls 0xd000 0x1000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rdata 0xe000 0x1000 0x200 0.20 31b800f8e72adb3accb588adb59b6cf3
.reloc 0xf000 0x1000 0x600 6.55 23a5a03f0e9b39bfb5ed94fc11da10d9
.rsrc 0x10000 0x15e00 0x15e00 8.00 31bd145ab151f2287c1ff54900c1a278

( 7 imports )
> advapi32.dll: RegQueryValueExW, RegOpenKeyExW, RegCloseKey
> user32.dll: GetKeyboardType, MessageBoxA
> kernel32.dll: GetACP, Sleep, VirtualFree, VirtualAlloc, GetSystemInfo, GetVersion, GetCurrentThreadId, VirtualQuery, WideCharToMultiByte, MultiByteToWideChar, GetStartupInfoA, GetModuleFileNameW, GetCommandLineW, FreeLibrary, ExitProcess, WriteFile, UnhandledExceptionFilter, RtlUnwind, RaiseException, GetStdHandle, CloseHandle
> kernel32.dll: TlsSetValue, TlsGetValue, LocalAlloc, GetModuleHandleW
> kernel32.dll: WriteFile, WaitForSingleObject, VirtualProtect, SizeofResource, SetThreadAffinityMask, SetLastError, LockResource, LoadResource, GetVersionExW, GetTempPathA, GetSystemInfo, GetProcAddress, GetModuleHandleW, GetCurrentThread, GetCurrentProcessId, FreeLibrary, FindResourceW, FindFirstFileW, CreateProcessW, CreateFileW, CloseHandle
> advapi32.dll: RegQueryValueExW, RegOpenKeyExW, RegCloseKey
> shell32.dll: SHGetPathFromIDListA, SHGetSpecialFolderLocation

( 0 exports )
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=B32195D30093E315DE6601FC83EECC00C461357E
CWSandbox info: http://research.sunbelt-software.com/partnerresource/MD5.aspx?md5=0e767e16a703ef0c497756ceaf5ea83e

Importante 注意: VirusTotal 是 Hispasec Sistemas 提供的免費服務. 我們不保證任何該服務的可用性和持續性. 儘管使用多種反病毒引擎所提供的偵測率優於使用單一產品, 但這些結果並不保證檔案無害. 目前來說, 沒有任何一種解決方案可以提供 100% 的病毒和惡意軟體偵測率. 如果您購買了一款聲稱具有此能力的產品, 那麼您可能已經成為受害者.

掃瞄其它檔案