反病毒引擎 | 版本 | 最後更新 | 掃瞄結果 |
a-squared | 4.0.0.101 | 2009.05.30 | - |
AhnLab-V3 | 5.0.0.2 | 2009.05.29 | - |
AntiVir | 7.9.0.180 | 2009.05.29 | - |
Antiy-AVL | 2.0.3.1 | 2009.05.27 | - |
Authentium | 5.1.2.4 | 2009.05.29 | - |
Avast | 4.8.1335.0 | 2009.05.29 | - |
AVG | 8.5.0.339 | 2009.05.29 | - |
BitDefender | 7.2 | 2009.05.30 | - |
CAT-QuickHeal | 10.00 | 2009.05.29 | - |
ClamAV | 0.94.1 | 2009.05.29 | - |
Comodo | 1203 | 2009.05.29 | - |
DrWeb | 5.0.0.12182 | 2009.05.29 | - |
eSafe | 7.0.17.0 | 2009.05.27 | Suspicious File |
eTrust-Vet | 31.6.6530 | 2009.05.30 | - |
F-Prot | 4.4.4.56 | 2009.05.29 | - |
F-Secure | 8.0.14470.0 | 2009.05.29 | - |
Fortinet | 3.117.0.0 | 2009.05.30 | - |
GData | 19 | 2009.05.30 | - |
Ikarus | T3.1.1.57.0 | 2009.05.30 | - |
K7AntiVirus | 7.10.749 | 2009.05.29 | - |
Kaspersky | 7.0.0.125 | 2009.05.30 | - |
McAfee | 5630 | 2009.05.29 | - |
McAfee+Artemis | 5630 | 2009.05.29 | - |
McAfee-GW-Edition | 6.7.6 | 2009.05.29 | - |
Microsoft | 1.4701 | 2009.05.29 | - |
NOD32 | 4116 | 2009.05.29 | - |
Norman | | 2009.05.29 | - |
nProtect | 2009.1.8.0 | 2009.05.30 | - |
Panda | 10.0.0.14 | 2009.05.29 | - |
PCTools | 4.4.2.0 | 2009.05.29 | - |
Prevx | 3.0 | 2009.05.30 | Medium Risk Malware |
Rising | 21.31.21.00 | 2009.05.27 | - |
Sophos | 4.42.0 | 2009.05.30 | - |
Sunbelt | 3.2.1858.2 | 2009.05.30 | - |
Symantec | 1.4.4.12 | 2009.05.30 | - |
TheHacker | 6.3.4.3.334 | 2009.05.29 | - |
TrendMicro | 8.950.0.1092 | 2009.05.29 | - |
VBA32 | 3.12.10.6 | 2009.05.27 | - |
ViRoBOT | 2009.5.29.1761 | 2009.05.29 | - |
VirusBuster | 4.6.5.0 | 2009.05.29 | - |
|
附加訊息 |
File size: 1955436 bytes |
MD5 : 2dcd8e4f61451912b90d02573467e800 |
SHA1 : c8c260882fcea97ec41e937f000d33a1fab73523 |
SHA256: 05e56429aa300ceab6e9f19ebfe2abb22a04e2c1edfadfaf957469a1008646a2 |
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x65FF0<BR>timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992)<BR>machinetype.......: 0x14C (Intel I386)<BR><BR>( 3 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>UPX0 0x1000 0x44000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e<BR>UPX1 0x45000 0x22000 0x21200 7.92 3bbd6888b5b02887a44033a7d9774836<BR>.rsrc 0x67000 0x2000 0x1E00 4.60 4419b24125be68a063e82536bd9d855a<BR><BR>( 9 imports )<BR><BR>> advapi32.dll: RegCloseKey<BR>> comctl32.dll: InitCommonControls<BR>> gdi32.dll: BitBlt<BR>> kernel32.dll: LoadLibraryA, GetProcAddress, ExitProcess<BR>> ole32.dll: CoInitialize<BR>> oleaut32.dll: LoadTypeLib<BR>> shell32.dll: ShellExecuteA<BR>> user32.dll: GetDC<BR>> version.dll: VerQueryValueA<BR><BR>( 0 exports )<BR> |
TrID : File type identification<BR>UPX compressed Win32 Executable (38.5%)<BR>Win32 EXE Yoda's Crypter (33.4%)<BR>Win32 Executable Generic (10.7%)<BR>Win32 Dynamic Link Library (generic) (9.5%)<BR>Win16/32 Executable Delphi generic (2.6%) |
ssdeep: 49152:l7tOa14qu4e75unI5koOwYN9wbNzN5K82Mx/UzeskalMz:l7+4EEnIYNg1NsMG6h5z |
Prevx Info: <A href="http://info.prevx.com/aboutprogramtext.asp?PX5=8D39F6E06C129F64D6DD1D4407BA2700ED970032" target=_blank>http://info.prevx.com/aboutprogr ... 2700ED970032</A> |
PEiD : - |
packers (Kaspersky): UPX, PE_Patch |
packers (F-Prot): UPX |
RDS : NSRL Reference Data Set<BR>- |