× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 3a388915e86d412ef626831f58f96621bdc23b0ba34ee56f7183686bf67b5059
Detection ratio: 33 / 39
Analysis date: 2010-04-12 08:48:51 UTC ( 7 years, 10 months ago )
Antivirus Result Update
a-squared Trojan.Win32.Alureon!IK 20100412
AhnLab-V3 Win-Trojan/Codecpack.118272 20100410
AntiVir TR/Dldr.FraudLo.ftl 20100412
Antiy-AVL Trojan/Win32.CodecPack.gen 20100409
Authentium W32/Bredolab.N.gen!Eldorado 20100412
Avast Win32:Crypt-GDV 20100411
Avast5 Win32:Crypt-GDV 20100411
AVG Generic17.ATEO 20100411
BitDefender Trojan.Generic.3597058 20100412
CAT-QuickHeal TrojanDownloader.CodecPack.kv 20100412
Comodo TrojWare.Win32.Trojan.Agent.Gen 20100412
DrWeb Trojan.DownLoader1.4695 20100412
F-Prot W32/Bredolab.N.gen!Eldorado 20100412
F-Secure Trojan.Generic.3597058 20100412
Fortinet W32/CodecPack.KVC!tr.dldr 20100410
GData Trojan.Generic.3597058 20100412
Ikarus Trojan.Win32.Alureon 20100412
Jiangmin TrojanDownloader.CodecPack.xc 20100412
Kaspersky Trojan-Downloader.Win32.CodecPack.kvc 20100412
McAfee-GW-Edition Trojan.Dldr.FraudLo.ftl 20100412
Microsoft TrojanDownloader:Win32/Renos.LF 20100412
NOD32 Win32/TrojanDownloader.FakeAlert.AWH 20100412
Norman W32/Smalltroj.YDRK 20100411
Panda Trj/Zlob.NX 20100411
Prevx Medium Risk Malware Dropper 20100412
Rising Trojan.Win32.Generic.51FDB5AA 20100412
Sophos AV Mal/Generic-L 20100412
Sunbelt Trojan.Win32.Generic!BT 20100412
Symantec Downloader 20100412
TheHacker Trojan/Downloader.CodecPack.kvc 20100412
TrendMicro TROJ_AGENT.SMAR 20100412
ViRobot Trojan.Win32.Downloader.118272.BC 20100412
VirusBuster Trojan.Bredolab.Gen!Pac.3 20100411
ClamAV 20100412
eSafe 20100411
eTrust-Vet 20100409
nProtect 20100406
PCTools 20100412
VBA32 20100409
The file being studied is a Portable Executable file! More specifically, it is a unknown file.
FileVersionInfo properties
Copyright
Sy5Xm1I

Original name 2g1zl1ktw.exe
File version 2.0.1.38
Description DK0ph
PE header basic information
Number of sections 5
PE sections
PE imports
CloseHandle
CreateEventA
CreateFileA
GetACP
GetCurrentProcess
GetCurrentProcessId
GetCurrentThreadId
GetModuleFileNameA
GetOEMCP
GetSystemTimeAsFileTime
InterlockedIncrement
QueryPerformanceCounter
Sleep
VirtualAlloc
lstrlenA
File identification
MD5 1244dd59d0859af30c2e3e38d197ff0a
SHA1 83005241781f6fbe1978314efdd9bec3769118c2
SHA256 3a388915e86d412ef626831f58f96621bdc23b0ba34ee56f7183686bf67b5059
ssdeep
1536:C6VaBh4RN6wXSvLuZRZSnnjSA7fkOFNMUgf71MHnOm2Ae3ywROUSZUpiLaVX:Cdh0YwXSvLuDcnn/PNSAOmgiwoU6a

File size 115.5 KB ( 118272 bytes )
File type unknown
Magic literal

TrID Win32 Executable Generic (58.2%)
Win16/32 Executable Delphi generic (14.1%)
Generic Win/DOS Executable (13.6%)
DOS Executable Generic (13.6%)
VXD Driver (0.2%)
VirusTotal metadata
First submission 2010-04-06 23:38:23 UTC ( 7 years, 10 months ago )
Last submission 2010-04-12 08:48:51 UTC ( 7 years, 10 months ago )
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!