× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 50779c60441cc19311fb2e5373ac05cfd428121e11864eed2ffae7594939cebb
Detection ratio: 29 / 41
Analysis date: 2010-02-12 07:06:02 UTC ( 8 years, 8 months ago )
Antivirus Result Update
AntiVir TR/Dropper.Gen 20100211
Authentium W32/DldrX.CVRQ 20100212
Avast NSIS:FakeAV-F 20100211
AVG Downloader.Generic9.AFWY 20100211
CAT-QuickHeal Trojan.Shutdowner.ecc 20100212
ClamAV Trojan.Banker-244 20100212
eSafe Win32.TRDropper 20100211
eTrust-Vet Win32/FakeAlert.AZR 20100211
F-Prot W32/DldrX.CVRQ 20100212
Fortinet W32/NSIS.BH!tr.dldr 20100212
GData NSIS:FakeAV-F 20100212
Ikarus Trojan.Win32.FakeAV 20100212
K7AntiVirus Trojan-Downloader.Win32.NSIS.bh 20100211
Kaspersky Trojan-Downloader.Win32.NSIS.bh 20100212
McAfee Generic FakeAlert!dh 20100211
McAfee+Artemis Artemis!DAF8C5586672 20100211
McAfee-GW-Edition Trojan.Dropper.Gen 20100211
Microsoft Trojan:Win32/PrivacyCenter 20100211
NOD32 a variant of Win32/Adware.PrivacyCenter.AQ 20100211
Norman W32/FakeAV.W!genr 20100211
Panda Adware/ControlCenter 20100211
PCTools RogueAntiSpyware.Generic 20100211
Sophos AV Mal/FakeAV-AA 20100212
Sunbelt Trojan.Win32.Generic!BT 20100211
Symantec PrivacyCenter 20100212
TheHacker Trojan/Shutdowner.ecc 20100212
TrendMicro Mal_FakeAV-12 20100212
VBA32 Trojan.Win32.FraudPack.ajrd 20100211
VirusBuster Trojan.DL.NSIS.L 20100211
a-squared 20100212
AhnLab-V3 20100211
Antiy-AVL 20100211
BitDefender 20100212
Comodo 20100212
DrWeb 20100212
F-Secure 20100212
Jiangmin 20100208
nProtect 20100212
Prevx 20100212
Rising 20100211
ViRobot 20100212
The file being studied is a Portable Executable file! More specifically, it is a unknown file.
PE header basic information
Number of sections 5
PE sections
PE imports
RegQueryValueExA
RegSetValueExA
RegEnumKeyA
RegEnumValueA
RegOpenKeyExA
RegDeleteKeyA
RegDeleteValueA
RegCloseKey
RegCreateKeyExA
ImageList_AddMasked
ImageList_Destroy
ImageList_Create
1 more function(s) imported by ordinal)
SetBkColor
GetDeviceCaps
DeleteObject
CreateBrushIndirect
CreateFontIndirectA
SetBkMode
SetTextColor
SelectObject
CompareFileTime
SearchPathA
GetShortPathNameA
GetFullPathNameA
MoveFileA
SetCurrentDirectoryA
GetFileAttributesA
GetLastError
CreateDirectoryA
SetFileAttributesA
Sleep
GetTickCount
GetFileSize
GetModuleFileNameA
GetCurrentProcess
CopyFileA
ExitProcess
GetWindowsDirectoryA
SetFileTime
GetCommandLineA
SetErrorMode
LoadLibraryA
lstrcpynA
GetDiskFreeSpaceA
GlobalUnlock
GlobalLock
CreateThread
CreateProcessA
RemoveDirectoryA
CreateFileA
GetTempFileNameA
lstrlenA
lstrcatA
GetSystemDirectoryA
GetVersion
CloseHandle
lstrcmpiA
lstrcmpA
ExpandEnvironmentStringsA
GlobalFree
GlobalAlloc
WaitForSingleObject
GetExitCodeProcess
GetModuleHandleA
LoadLibraryExA
GetProcAddress
FreeLibrary
MultiByteToWideChar
WritePrivateProfileStringA
GetPrivateProfileStringA
WriteFile
ReadFile
MulDiv
SetFilePointer
FindClose
FindNextFileA
FindFirstFileA
DeleteFileA
GetTempPathA
CoTaskMemFree
OleInitialize
OleUninitialize
CoCreateInstance
SHGetPathFromIDListA
SHBrowseForFolderA
SHGetFileInfoA
ShellExecuteA
SHFileOperationA
SHGetSpecialFolderLocation
EndDialog
ScreenToClient
GetWindowRect
EnableMenuItem
GetSystemMenu
SetClassLongA
IsWindowEnabled
SetWindowPos
GetSysColor
GetWindowLongA
SetCursor
LoadCursorA
CheckDlgButton
GetMessagePos
LoadBitmapA
CallWindowProcA
IsWindowVisible
CloseClipboard
SetClipboardData
EmptyClipboard
RegisterClassA
TrackPopupMenu
AppendMenuA
CreatePopupMenu
GetSystemMetrics
SetDlgItemTextA
GetDlgItemTextA
MessageBoxIndirectA
CharPrevA
DispatchMessageA
PeekMessageA
DestroyWindow
CreateDialogParamA
SetTimer
SetWindowTextA
PostQuitMessage
SetForegroundWindow
wsprintfA
SendMessageTimeoutA
FindWindowExA
SystemParametersInfoA
CreateWindowExA
GetClassInfoA
DialogBoxParamA
CharNextA
OpenClipboard
ExitWindowsEx
IsWindow
GetDlgItem
SetWindowLongA
LoadImageA
GetDC
EnableWindow
InvalidateRect
SendMessageA
DefWindowProcA
BeginPaint
GetClientRect
FillRect
DrawTextA
EndPaint
ShowWindow
GetFileVersionInfoSizeA
GetFileVersionInfoA
VerQueryValueA
File identification
MD5 daf8c5586672635cd823c8d81e26261b
SHA1 ca5d2fea60228a013f08f430447c487e18b9e5a8
SHA256 50779c60441cc19311fb2e5373ac05cfd428121e11864eed2ffae7594939cebb
ssdeep
49152:HqmjiyrNTuMcIt5UpI5PvMBHRirKmwaOTB:Hqmj75qMcTpkPvckrKm8

File size 1.9 MB ( 1971033 bytes )
File type unknown
Magic literal

TrID Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
VirusTotal metadata
First submission 2010-01-08 16:37:10 UTC ( 8 years, 9 months ago )
Last submission 2010-02-12 07:06:02 UTC ( 8 years, 8 months ago )
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!