A-Squared Found nothing
AntiVir
Found TR/Crypt.XPACK.Gen
ArcaVir Found nothing
Avast Found nothing
AVG Antivirus Found nothing
BitDefender Found nothing
ClamAV Found nothing
CPsecure Found nothing
Dr.Web
Found Trojan.DownLoader.46203
F-Prot Antivirus Found nothing
F-Secure Anti-Virus
Found Backdoor.Win32.PoisonIvy.ay
Fortinet Found nothing
Ikarus
Found Backdoor.Win32.IRCBot.acd
Kaspersky Anti-Virus
Found Backdoor.Win32.PoisonIvy.ay
NOD32 Found nothing
Norman Virus Control Found nothing
Panda Antivirus Found nothing
Rising Antivirus Found nothing
Sophos Antivirus Found
Sus/ComPack-C (probable variant) VirusBuster Found nothing
VBA32 Found nothing
jotti
-----------------------
File rObos_hAck.rar received on 02.11.2008 21:24:22 (CET)Antivirus Version Last Update Result
AhnLab-V3 2008.2.12.10 2008.02.11 -
AntiVir 7.6.0.62 2008.02.11
TR/Crypt.XPACK.Gen
Authentium 4.93.8 2008.02.11 -
Avast 4.7.1098.0 2008.02.11 -
AVG 7.5.0.516 2008.02.11 -
BitDefender 7.2 2008.02.11 -
CAT-QuickHeal None 2008.02.11
(Suspicious) - DNAScan
ClamAV 0.92 2008.02.11 -
DrWeb 4.44.0.09170 2008.02.11
Trojan.DownLoader.46203 eSafe 7.0.15.0 2008.02.11
Suspicious File
eTrust-Vet 31.3.5527 2008.02.11 -
Ewido 4.0 2008.02.11 -
FileAdvisor 1 2008.02.11 -
Fortinet 3.14.0.0 2008.02.11 -
F-Prot 4.4.2.54 2008.02.11 -
F-Secure 6.70.13260.0 2008.02.11
Backdoor.Win32.PoisonIvy.ay
Ikarus T3.1.1.20 2008.02.11
Backdoor.Win32.IRCBot.acd
Kaspersky 7.0.0.125 2008.02.11
Backdoor.Win32.PoisonIvy.ay
McAfee 5227 2008.02.11 -
Microsoft 1.3204 2008.02.11 -
NOD32v2 2865 2008.02.11 -
Norman 5.80.02 2008.02.11 -
Panda 9.0.0.4 2008.02.11
Suspicious file
Prevx1 V2 2008.02.11 -
Rising 20.29.22.00 2008.01.30 -
Sophos 4.26.0 2008.02.11
Sus/ComPack-C
Sunbelt 2.2.907.0 2008.02.09 -
Symantec 10 2008.02.11
W32.Korgo.Z
TheHacker 6.2.9.217 2008.02.11 -
VBA32 3.12.6.0 2008.02.10 -
VirusBuster 4.3.26:9 2008.02.11
Packed/NTkrnl
Webwasher-Gateway 6.6.2 2008.02.11
Trojan.Crypt.XPACK.Gen
Additional information
File size: 94137 bytes
MD5: 7a1e61ba028ee804676d5917248614cc
SHA1: 5c7df0b71e9818294f8d50b8d186506221a920ae
PEiD: -
packers: NTKrnl
packers: PE_Patch, NTKrnl
looks as clean as my ass after a good shit. - nice try lol.