Srpski | Македонски | العربية | Suomi | ihMdI | | עברית | | Slovenščina | Dansk | Русский | Română | Türkçe | Nederlands | Ελληνικά | Français | Svenska | Português | Italiano | | Magyar | Deutsch | Česky | Polski | Español | English
Virus Total

VirusTotal 是一款可疑檔案分析服務, 通過各種知名反病毒引擎, 對您所上傳的檔案進行偵測, 以判斷檔案是否被病毒, 蠕蟲, 木馬, 以及各類惡意軟體感染. 查看詳細訊息...

檔案 VistaStartMenu.exe 接收於 2009.03.11 06:06:05 (UTC)
當前狀態: 完成
結果: 13/39 (33.33%)
反病毒引擎 版本 最後更新 掃瞄結果
a-squared 4.0.0.101 2009.03.11 Virus.Win32.Trojan!IK
AhnLab-V3 5.0.0.2 2009.03.11 -
AntiVir 7.9.0.107 2009.03.10 TR/Agent.1245209.A
Authentium 5.1.0.4 2009.03.10 -
Avast 4.8.1335.0 2009.03.10 Win32:Trojan-gen {Other}
AVG 8.0.0.237 2009.03.10 SHeur.BUYK
BitDefender 7.2 2009.03.11 -
CAT-QuickHeal 10.00 2009.03.11 -
ClamAV 0.94.1 2009.03.11 -
Comodo 1046 2009.03.10 -
DrWeb 4.44.0.09170 2009.03.11 -
eSafe 7.0.17.0 2009.03.09 -
eTrust-Vet 31.6.6388 2009.03.09 -
F-Prot 4.4.4.56 2009.03.10 -
F-Secure 8.0.14470.0 2009.03.11 Agent.IZEO
Fortinet 3.117.0.0 2009.03.10 -
GData 19 2009.03.11 Win32:Trojan-gen {Other}
Ikarus T3.1.1.45.0 2009.03.11 Virus.Win32.Trojan
K7AntiVirus 7.10.665 2009.03.10 -
Kaspersky 7.0.0.125 2009.03.11 -
McAfee 5549 2009.03.10 -
McAfee+Artemis 5549 2009.03.10 Generic!Artemis
Microsoft 1.4405 2009.03.11 -
NOD32 3925 2009.03.11 -
Norman 6.00.06 2009.03.10 Agent.IZEO
nProtect 2009.1.8.0 2009.03.11 -
Panda 10.0.0.10 2009.03.10 Suspicious file
PCTools 4.4.2.0 2009.03.10 -
Prevx1 V2 2009.03.11 High Risk Worm
Rising 21.20.20.00 2009.03.11 -
SecureWeb-Gateway 6.7.6 2009.03.10 Trojan.Agent.1245209.A
Sophos 4.39.0 2009.03.11 -
Sunbelt 3.2.1858.2 2009.03.10 -
Symantec 1.4.4.12 2009.03.11 Trojan Horse
TheHacker 6.3.3.0.278 2009.03.11 -
TrendMicro 8.700.0.1004 2009.03.11 -
VBA32 3.12.10.1 2009.03.11 -
ViRobot 2009.3.11.1644 2009.03.11 -
VirusBuster 4.5.11.0 2009.03.10 -
附加訊息
File size: 1245209 bytes
MD5...: 889a039d80ca35e67a2a6c1fc7f94cab
SHA1..: 6ae4ee826e36e026e04bb9b6394f581e793c897c
SHA256: f5a5cb4710082787b5ef543b9ebce89865a9ea776bcbc5daaae18c6adb8bcdac
SHA512: 993817751d8b395296392241439f08022e01fb3ae4d1aa9b8142827fba1488c8
09e9445bec41bc3cbdd2968d8190334c1756c3eff5ba1463636369e4707e3e8b
ssdeep: 24576:93WV5UY4ULral3V8opNBQftc/f6BDDurcEQOdDf87Ug94ggNzOlL5vppQH
nv:9GV5N3Lra00/8tcnIHurcEQuDk7UZ05+
PEiD..: MoleBox V2.3X -> MoleStudio.com
TrID..: File type identification
Win32 Executable Generic (67.8%)
Generic Win/DOS Executable (15.9%)
DOS Executable Generic (15.9%)
VXD Driver (0.2%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x239353
timedatestamp.....: 0x2a425e19 (Fri Jun 19 22:22:17 1992)
machinetype.......: 0x14c (I386)

( 12 sections )
name viradd virsiz rawdsiz ntrpy md5
0DE 0x1000 0x17f000 0xad600 8.00 4920553d9628ce8170b5652a557830b5
1TA 0x180000 0x5000 0x4a00 4.78 f51e220db147f8ae1f6a1cb3cf324155
2S 0x185000 0x26000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
3data 0x1ab000 0x4000 0x1600 7.92 0db3d64f32fc51db4ada7e3dbec66959
4ls 0x1af000 0x1000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
5data 0x1b0000 0x1000 0x200 0.18 6f3dc8ebbdb16132bf4226b696bdfcb1
6eloc 0x1b1000 0x19000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
7src 0x1ca000 0x6c000 0x6b200 6.86 6999c65255d8a0064711b4de236b4812
8tolen 0x236000 0x1000 0x400 6.68 d254148406be5b3cae9bf79bfc1b734f
9ext 0x237000 0x11870 0xc000 7.88 c94a50368edab7e3197591571c92fb9e
10ata 0x249000 0x1102 0x1200 4.61 88e3b57001e8da0237c5f0002214b89a
11ta 0x24b000 0x7a24 0x1c00 7.98 9a46832c165eea7fc0a054a32bcf3d44

( 5 imports )
> KERNEL32.dll: LocalAlloc, GetModuleHandleA, LeaveCriticalSection, EnterCriticalSection, GetCurrentDirectoryA, GetShortPathNameA, FindResourceExA, EnumResourceLanguagesA, ResumeThread, WriteProcessMemory, RaiseException, SetFileAttributesA, CreateDirectoryA, QueryPerformanceCounter, QueryPerformanceFrequency, GetCurrentThreadId, GetPrivateProfileSectionA, GetStringTypeA, LCMapStringW, LCMapStringA, MultiByteToWideChar, LocalFree, GetProcAddress, GetModuleFileNameW, InitializeCriticalSection, WideCharToMultiByte, RtlUnwind, GetStringTypeW
> USER32.dll: DefWindowProcA, SetFocus, AdjustWindowRectEx
> ADVAPI32.dll: RegCreateKeyA, RegSetValueA, RegCloseKey
> ole32.dll: ReadClassStm, CoRegisterClassObject
> OLEAUT32.dll: -

( 0 exports )
ThreatExpert info: http://www.threatexpert.com/report.aspx?md5=889a039d80ca35e67a2a6c1fc7f94cab
packers (Kaspersky): Molebox
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=E0851D6A19B50D7800001399C26F1D0015301D22
CWSandbox info: http://research.sunbelt-software.com/partnerresource/MD5.aspx?md5=889a039d80ca35e67a2a6c1fc7f94cab

Importante 注意: VirusTotal 是 Hispasec Sistemas 提供的免費服務. 我們不保證任何該服務的可用性和持續性. 儘管使用多種反病毒引擎所提供的偵測率優於使用單一產品, 但這些結果並不保證檔案無害. 目前來說, 沒有任何一種解決方案可以提供 100% 的病毒和惡意軟體偵測率. 如果您購買了一款聲稱具有此能力的產品, 那麼您可能已經成為受害者.

掃瞄其它檔案