Service load:
0% 100%
File: Guildwar_Bottie_1.12.exe
Status:
INFECTED/MALWARE (Note: this file has been scanned before. Therefore, this file's scan results will not be stored in the database)
MD5 08aec964fa133d0d0c1c45c2ec3c608c
Packers detected:
UPX, AUTOIT
Scanner results
AntiVir
Found nothing
ArcaVir
Found nothing
Avast
Found nothing
AVG Antivirus
Found nothing
BitDefender
Found nothing
ClamAV
Found nothing
Dr.Web
Found nothing
F-Prot Antivirus
Found nothing
Fortinet
Found nothing
Kaspersky Anti-Virus
Found nothing
NOD32
Found nothing
Norman Virus Control
Found nothing
UNA
Found Backdoor.Rbot
VirusBuster
Found nothing
VBA32
Found nothing
Complete scanning result of "Guildwar_Bottie_1.12.exe", received in VirusTotal at 05.06.2006, 19:54:58 (CET).
Antivirus Version Update Result
AntiVir 6.34.0.24 04.20.2006 no virus found
Avast 4.6.695.0 05.05.2006 no virus found
AVG 386 05.05.2006 no virus found
Avira 6.34.1.58 05.06.2006 no virus found
BitDefender 7.2 05.06.2006 no virus found
CAT-QuickHeal 8.00 05.05.2006 no virus found
ClamAV devel-20060426 05.05.2006 no virus found
DrWeb 4.33 05.06.2006 no virus found
eTrust-InoculateIT 23.72.1 05.06.2006 no virus found
eTrust-Vet 12.4.2194 05.04.2006 no virus found
Ewido 3.5 05.06.2006 no virus found
Fortinet 2.71.0.0 05.06.2006 suspicious
F-Prot 3.16c 05.05.2006 no virus found
Ikarus 0.2.65.0 05.05.2006 no virus found
Kaspersky 4.0.2.24 05.06.2006 no virus found
McAfee 4756 05.05.2006 no virus found
Microsoft 1.1372 05.06.2006 no virus found
NOD32v2 1.1523 05.05.2006 no virus found
Norman 5.90.17 05.05.2006 no virus found
Panda 9.0.0.4 05.06.2006 Suspicious file
Sophos 4.05.0 05.06.2006 no virus found
Symantec 8.0 05.06.2006 no virus found
TheHacker 5.9.7.139 05.05.2006 no virus found
UNA 1.83 05.06.2006 Backdoor.Rbot
VBA32 3.11.0 05.06.2006 no virus found
Aditional Information
File size: 129312 bytes
MD5: 08aec964fa133d0d0c1c45c2ec3c608c
SHA1: 64ff093941ba469a48a4c915fc1edaadbc49f9d
Since it is packed with UPX and done in AUTOIT, the R.Bot "virus" comes with it.
HOWEVER, there is no virus, only some "packing-structure" or something like that, duno what but it's detected by a very few AV's as virus, BUT IT IS NOT. SO IT IS SAFE!
|