× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 13d8b5b8b4c37703a78ec0a6b411724184a08a08bad0fc67fd69c3c6f41f7b9e
File name: aa
Detection ratio: 34 / 40
Analysis date: 2010-04-13 10:09:32 UTC ( 8 years, 11 months ago )
Antivirus Result Update
a-squared PWS.Win32!IK 20100413
AhnLab-V3 Win32/Ircbot.worm.variant 20100412
AntiVir TR/PSW.Zbot.114688W.1 20100412
Antiy-AVL Trojan/Win32.Zbot.gen 20100413
Avast Win32:Malware-gen 20100412
Avast5 Win32:Malware-gen 20100412
AVG PSW.Generic7.BGBH 20100412
BitDefender Worm.Generic.227125 20100413
CAT-QuickHeal TrojanSpy.Zbot.aean 20100413
ClamAV Trojan.Zbot-7269 20100413
Comodo TrojWare.Win32.TrojanSpy.Zbot.Gen 20100413
DrWeb Trojan.Packed.19706 20100413
eSafe Win32.Zbot 20100412
eTrust-Vet Win32/Koobface.B!generic 20100412
F-Secure Worm.Generic.227125 20100413
Fortinet W32/Zbot.AEAN!tr 20100412
GData Worm.Generic.227125 20100413
Ikarus PWS.Win32 20100413
Kaspersky Trojan-Spy.Win32.Zbot.aean 20100413
McAfee W32/Koobface.worm.gen.af 20100413
McAfee-GW-Edition Trojan.PSW.Zbot.114688W.1 20100413
Microsoft PWS:Win32/Zbot.gen!W 20100413
NOD32 a variant of Win32/Kryptik.CQE 20100412
Norman W32/Koobface.GIK 20100412
nProtect Worm.Generic.227125 20100406
PCTools Trojan.Zbot 20100413
Prevx High Risk Worm 20100413
Rising Trojan.Win32.Generic.51F8A743 20100413
Sophos AV Mal/Generic-A 20100413
Sunbelt Trojan.Win32.Generic!BT 20100413
Symantec Trojan.Zbot 20100413
TheHacker Trojan/Spy.Zbot.aean 20100412
TrendMicro WORM_KUBFACE.SMF 20100413
VirusBuster Trojan.PWS.Zbot.TOS 20100412
Authentium 20100412
F-Prot 20100412
Jiangmin 20100413
Panda 20100412
VBA32 20100409
ViRobot 20100413
The file being studied is a Portable Executable file! More specifically, it is a unknown file.
FileVersionInfo properties
Copyright
ASUS All rights reserved.

Publisher ASUS
Product TODO: _Product name_
Original name CpuLevelUpHook32.exe
Internal name CpuLevelUpHook32.exe
File version 1.0.0.1
Description CPU Level Up Hook32
PE header basic information
Number of sections 4
PE sections
PE imports
IsValidSid
GetStartupInfoA
GetModuleHandleA
LoadLibraryA
GetProcAddress
ExitProcess
CloseHandle
SHGetMalloc
MessageBoxA
VerQueryValueA
FindCloseUrlCache
File identification
MD5 9dd785360d46d0abd9b9a69d63d6ecd4
SHA1 026d04b4178c73bcc52a577ea82be0edaacb3ed3
SHA256 13d8b5b8b4c37703a78ec0a6b411724184a08a08bad0fc67fd69c3c6f41f7b9e
ssdeep
1536:27qpT+qTAE3R6/7E1wCSqfLhdz0b5CQ+GkNRKnn26N9eLcoTZNL0NPdLtD3ym:oUT+qTj3CBCJYb5/OPUMsdZ

File size 112.0 KB ( 114688 bytes )
File type unknown
Magic literal

TrID Win32 Executable Generic (42.3%)
Win32 Dynamic Link Library (generic) (37.6%)
Generic Win/DOS Executable (9.9%)
DOS Executable Generic (9.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
VirusTotal metadata
First submission 2010-01-27 21:21:42 UTC ( 9 years, 1 month ago )
Last submission 2010-04-13 10:09:32 UTC ( 8 years, 11 months ago )
File names jA14u.vsd
aa
Behaviour characterization
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!