× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 579bab86566dd907d099259b0dff659ae57c2f9747ec0fea33881b4fff927825
File name: aa
Detection ratio: 23 / 41
Analysis date: 2010-01-27 06:15:55 UTC ( 9 years, 3 months ago )
Antivirus Result Update
a-squared Trojan.Win32.VB!IK 20100127
AhnLab-V3 Win-Trojan/Xema.variant 20100127
AntiVir TR/VB.aamj 20100126
Avast Win32:Malware-gen 20100126
AVG VB.SHR 20100126
Comodo TrojWare.Win32.Trojan.Agent.~JTJ 20100127
DrWeb Trojan.Click.41952 20100127
eSafe Win32.TrojanClicker 20100126
GData Win32:Malware-gen 20100127
Ikarus Trojan.Win32.VB 20100127
Jiangmin Trojan/VB.tlm 20100126
Kaspersky Trojan.Win32.VB.aamj 20100127
McAfee+Artemis Artemis!3AEDFC197172 20100126
McAfee-GW-Edition Trojan.VB.aamj 20100127
NOD32 Win32/TrojanClicker.VB.NMQ 20100126
Panda Trj/CI.A 20100126
PCTools Trojan.Generic 20100127
Prevx High Risk Rootkit 20100127
Rising Backdoor.Win32.IRCbot.xjl 20100127
Sophos AV Troj/VB-EMH 20100127
Symantec Trojan Horse 20100127
TheHacker Trojan/Clicker.VB.nmq 20100127
VirusBuster Trojan.VB.IFCH 20100126
Antiy-AVL 20100126
Authentium 20100127
BitDefender 20100127
CAT-QuickHeal 20100127
ClamAV 20100127
eTrust-Vet 20100126
F-Prot 20100127
F-Secure 20100127
Fortinet 20100127
K7AntiVirus 20100126
McAfee 20100126
Microsoft 20100127
Norman 20100126
nProtect 20100126
Sunbelt 20100127
TrendMicro 20100127
VBA32 20100126
ViRobot 20100126
The file being studied is a Portable Executable file! More specifically, it is a unknown file.
PE header basic information
Number of sections 3
PE sections
PE imports
MethCallEngine
EVENT_SINK_AddRef
DllFunctionCall
EVENT_SINK_Release
EVENT_SINK_QueryInterface
__vbaExceptHandler
ProcCallEngine
14 more function(s) imported by ordinal)
File identification
MD5 3aedfc197172b9467ab699ce6cf7d348
SHA1 5b5bcb6f952d03187a12892edf90ae75c6a05c00
SHA256 579bab86566dd907d099259b0dff659ae57c2f9747ec0fea33881b4fff927825
ssdeep
384:v6AOLWsJhU0t1BbrnA/I/5hs806TAfVZDQHzJrjbamEm1XmR4dlcitqP:vDQ1BbrnA/I/5hT06TAfVZkHVr3t8

File size 36.0 KB ( 36864 bytes )
File type unknown
Magic literal

TrID Win32 Executable Generic (68.0%)
Generic Win/DOS Executable (15.9%)
DOS Executable Generic (15.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
VirusTotal metadata
First submission 2010-01-24 04:09:11 UTC ( 9 years, 4 months ago )
Last submission 2010-01-27 06:15:55 UTC ( 9 years, 3 months ago )
File names I3FBZZsu.xlsb
aa
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!