Virustotal is a service that analyzes suspicious files and facilitates the quick detection of viruses, worms, trojans, and all kinds of malware detected by antivirus engines. More information... |
Antivirus | Version | Last Update | Result |
---|---|---|---|
a-squared | 4.0.0.101 | 2009.04.06 | - |
AhnLab-V3 | 5.0.0.2 | 2009.04.06 | - |
AntiVir | 7.9.0.138 | 2009.04.06 | - |
Antiy-AVL | 2.0.3.1 | 2009.04.06 | Trojan/Win32.TDSS |
Authentium | 5.1.2.4 | 2009.04.06 | - |
Avast | 4.8.1335.0 | 2009.04.06 | - |
AVG | 8.5.0.285 | 2009.04.06 | - |
BitDefender | 7.2 | 2009.04.06 | - |
CAT-QuickHeal | 10.00 | 2009.04.06 | - |
ClamAV | 0.94.1 | 2009.04.06 | - |
Comodo | 1101 | 2009.04.06 | - |
DrWeb | 4.44.0.09170 | 2009.04.06 | - |
eSafe | 7.0.17.0 | 2009.04.06 | - |
eTrust-Vet | 31.6.6435 | 2009.04.03 | - |
F-Prot | 4.4.4.56 | 2009.04.05 | - |
F-Secure | 8.0.14470.0 | 2009.04.06 | - |
Fortinet | 3.117.0.0 | 2009.04.06 | - |
GData | 19 | 2009.04.06 | - |
Ikarus | T3.1.1.49.0 | 2009.04.06 | - |
K7AntiVirus | 7.10.694 | 2009.04.06 | - |
Kaspersky | 7.0.0.125 | 2009.04.06 | - |
McAfee | 5576 | 2009.04.06 | - |
McAfee+Artemis | 5576 | 2009.04.06 | - |
McAfee-GW-Edition | 6.7.6 | 2009.04.06 | - |
Microsoft | 1.4502 | 2009.04.06 | - |
NOD32 | 3990 | 2009.04.06 | - |
Norman | 6.00.06 | 2009.04.06 | - |
nProtect | 2009.1.8.0 | 2009.04.06 | - |
Panda | 10.0.0.14 | 2009.04.06 | - |
PCTools | 4.4.2.0 | 2009.04.06 | - |
Prevx1 | V2 | 2009.04.06 | Medium Risk Malware Dropper |
Rising | 21.23.41.00 | 2009.04.03 | - |
Sophos | 4.40.0 | 2009.04.06 | - |
Sunbelt | 3.2.1858.2 | 2009.04.06 | - |
Symantec | 1.4.4.12 | 2009.04.06 | - |
TheHacker | 6.3.4.0.303 | 2009.04.06 | - |
TrendMicro | 8.700.0.1004 | 2009.04.06 | - |
VBA32 | 3.12.10.2 | 2009.04.06 | - |
ViRobot | 2009.4.6.1680 | 2009.04.06 | - |
VirusBuster | 4.6.5.0 | 2009.04.06 | - |
Additional information |
---|
File size: 16742799 bytes |
MD5...: c0567761fdfaaf3099e071d32d4f336e |
SHA1..: 5e8532ce38a52d8747e6343682f35f9f6187d1bf |
SHA256: 24ac6793f23e97ef1f60996c6d40d9138dd9252ccd6ddf527f1ec093f828b5b4 |
SHA512: 9e66116e27b41566a3840a9fb64f64aa60745032b6dab5075a2df79e301f12a6 336b8eb389c5af23442ea7727858a4239eb89b961dd126fdcaf2931e14db78a3 |
ssdeep: 393216:dusyjeXUkONLM9L+OHN1/Nyfqe/ySBSxXlmNbOXLncmox:7GeXUrJM9KA 1NC75AxXQ6AX |
PEiD..: - |
TrID..: File type identification Win32 Executable MS Visual C++ (generic) (75.0%) Win32 Executable Generic (16.9%) Generic Win/DOS Executable (3.9%) DOS Executable Generic (3.9%) VXD Driver (0.0%) |
PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x39b0 timedatestamp.....: 0x49c328e9 (Fri Mar 20 05:26:01 2009) machinetype.......: 0x14c (I386) ( 7 sections ) name viradd virsiz rawdsiz ntrpy md5 .text 0x1000 0x7594 0x7600 6.16 4825c918dbc46c896ff86dabb77cde33 .data 0x9000 0x8c 0x200 1.19 3404ccf7f7dc98dcc629decff6fd935b .rdata 0xa000 0xc7c 0xe00 5.10 dcdcde820a897efcdd295716996f362b .bss 0xb000 0x1ae08 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e .idata 0x26000 0x13e0 0x1400 5.06 d44405cec9c314282a226deb96e0280c .ndata 0x28000 0x12000 0x400 0.00 0f343b0931126a20f133d67c2b018a3b .rsrc 0x3a000 0x193a0 0x19400 3.60 267712a7dec9777da11153e1b5472d3c ( 8 imports ) > ADVAPI32.DLL: RegCloseKey, RegCreateKeyExA, RegDeleteKeyA, RegDeleteValueA, RegEnumKeyA, RegEnumValueA, RegOpenKeyExA, RegQueryValueExA, RegSetValueExA > COMCTL32.DLL: ImageList_AddMasked, ImageList_Create, ImageList_Destroy, InitCommonControls > GDI32.dll: CreateBrushIndirect, CreateFontIndirectA, DeleteObject, GetDeviceCaps, SelectObject, SetBkColor, SetBkMode, SetTextColor > KERNEL32.dll: CloseHandle, CompareFileTime, CopyFileA, CreateDirectoryA, CreateFileA, CreateProcessA, CreateThread, DeleteFileA, ExitProcess, ExpandEnvironmentStringsA, FindClose, FindFirstFileA, FindNextFileA, FreeLibrary, GetCommandLineA, GetCurrentProcess, GetDiskFreeSpaceA, GetExitCodeProcess, GetFileAttributesA, GetFileSize, GetFullPathNameA, GetLastError, GetModuleFileNameA, GetModuleHandleA, GetPrivateProfileStringA, GetProcAddress, GetShortPathNameA, GetSystemDirectoryA, GetTempFileNameA, GetTempPathA, GetTickCount, GetVersion, GetWindowsDirectoryA, GlobalAlloc, GlobalFree, GlobalLock, GlobalUnlock, LoadLibraryA, LoadLibraryExA, MoveFileA, MulDiv, MultiByteToWideChar, ReadFile, RemoveDirectoryA, SearchPathA, SetCurrentDirectoryA, SetErrorMode, SetFileAttributesA, SetFilePointer, SetFileTime, Sleep, WaitForSingleObject, WriteFile, WritePrivateProfileStringA, lstrcatA, lstrcmpA, lstrcmpiA, lstrcpynA, lstrlenA > OLE32.dll: CoCreateInstance, CoTaskMemFree, OleInitialize, OleUninitialize > SHELL32.DLL: SHBrowseForFolderA, SHFileOperationA, SHGetFileInfoA, SHGetPathFromIDListA, SHGetSpecialFolderLocation, ShellExecuteA > USER32.dll: AppendMenuA, BeginPaint, CallWindowProcA, CharNextA, CharPrevA, CheckDlgButton, CloseClipboard, CreateDialogParamA, CreatePopupMenu, CreateWindowExA, DefWindowProcA, DestroyWindow, DialogBoxParamA, DispatchMessageA, DrawTextA, EmptyClipboard, EnableMenuItem, EnableWindow, EndDialog, EndPaint, ExitWindowsEx, FillRect, FindWindowExA, GetClassInfoA, GetClientRect, GetDC, GetDlgItem, GetDlgItemTextA, GetMessagePos, GetSysColor, GetSystemMenu, GetSystemMetrics, GetWindowLongA, GetWindowRect, InvalidateRect, IsWindow, IsWindowEnabled, IsWindowVisible, LoadBitmapA, LoadCursorA, LoadImageA, MessageBoxIndirectA, OpenClipboard, PeekMessageA, PostQuitMessage, RegisterClassA, ScreenToClient, SendMessageA, SendMessageTimeoutA, SetClassLongA, SetClipboardData, SetCursor, SetDlgItemTextA, SetForegroundWindow, SetTimer, SetWindowLongA, SetWindowPos, SetWindowTextA, ShowWindow, SystemParametersInfoA, TrackPopupMenu, wsprintfA > VERSION.dll: GetFileVersionInfoA, GetFileVersionInfoSizeA, VerQueryValueA ( 0 exports ) |
RDS...: NSRL Reference Data Set - |
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=3A0257478F476CF779E4FF3B46A192007E31CE93 |
ATTENTION: VirusTotal is a free service offered by Hispasec Sistemas. There are no guarantees about the availability and continuity of this service. Although the detection rate afforded by the use of multiple antivirus engines is far superior to that offered by just one product, these results DO NOT guarantee the harmlessness of a file. Currently, there is not any solution that offers a 100% effectiveness rate for detecting viruses and malware.