elite*gold: 0
Join Date: Nov 2008
Posts: 1,943
Received Thanks: 329
|
Antivirus Version Last Update Result
AhnLab-V3 2011.07.28.00 2011.07.27 -
AntiVir 7.11.12.159 2011.07.28 -
Antiy-AVL 2.0.3.7 2011.07.28 -
Avast 4.8.1351.0 2011.07.28 -
Avast5 5.0.677.0 2011.07.28 -
AVG 10.0.0.1190 2011.07.28 Suspicion: unknown virus
BitDefender 7.2 2011.07.28 -
CAT-QuickHeal 11.00 2011.07.28 -
ClamAV 0.97.0.0 2011.07.28 -
Commtouch 5.3.2.6 2011.07.28 -
Comodo 9544 2011.07.28 -
DrWeb 5.0.2.03300 2011.07.28 -
Emsisoft 5.1.0.8 2011.07.28 -
eSafe 7.0.17.0 2011.07.27 -
eTrust-Vet 36.1.8469 2011.07.28 -
F-Prot 4.6.2.117 2011.07.28 -
F-Secure 9.0.16440.0 2011.07.28 -
Fortinet 4.2.257.0 2011.07.28 -
GData 22 2011.07.28 -
Ikarus T3.1.1.104.0 2011.07.28 -
Jiangmin 13.0.900 2011.07.28 -
K7AntiVirus 9.109.4957 2011.07.28 -
Kaspersky 9.0.0.837 2011.07.28 -
McAfee 5.400.0.1158 2011.07.28 -
McAfee-GW-Edition 2010.1D 2011.07.28 -
Microsoft 1.7104 2011.07.28 -
NOD32 6332 2011.07.28 -
Norman 6.07.10 2011.07.28 -
nProtect 2011-07-28.04 2011.07.28 -
Panda 10.0.3.5 2011.07.28 Suspicious file
PCTools 8.0.0.5 2011.07.28 -
Prevx 3.0 2011.07.28 -
Rising 23.68.02.03 2011.07.27 -
Sophos 4.67.0 2011.07.28 -
SUPERAntiSpyware 4.40.0.1006 2011.07.28 -
Symantec 20111.1.0.186 2011.07.28 -
TheHacker 6.7.0.1.264 2011.07.28 -
TrendMicro 9.200.0.1012 2011.07.28 -
TrendMicro-HouseCall 9.200.0.1012 2011.07.28 -
VBA32 3.12.16.4 2011.07.28 -
VIPRE 9993 2011.07.28 -
ViRobot 2011.7.28.4593 2011.07.28 -
VirusBuster 14.0.144.0 2011.07.28 -
Additional information
MD5 : c3dbe36c7da364ac3051de4da0dd77dd
SHA1 : dfe82c16c317eb30da64cf9c85cbee4d1f5acfc0
SHA256: 7ca034cdd4cb6f5490704b029d9c029b85e31ba9eb350a9838 b0102532af5cdb
ssdeep: 1536:/zTWh1UAtMxgMHZqQ/uFxA07xqAq86TCQQIp/R/bnAz1+JmfJvuVfTsZRf9:uA5g5Fy+xR
p8RV/lBmv1
File size : 880640 bytes
First seen: 2011-07-28 18:48:25
Last seen : 2011-07-28 18:48:25
TrID:
Generic Win/DOS Executable (49.9%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEInfo: PE structure information
[[ basic data ]]
entrypointaddress: 0x27D0
timedatestamp....: 0x4E30BE6C (Thu Jul 28 01:42:04 2011)
machinetype......: 0x14c (I386)
[[ 3 section(s) ]]
name, viradd, virsiz, rawdsiz, ntropy, md5
.text, 0x1000, 0x14C90, 0x15000, 5.76, 66d5cae5011beef09a30276bf64c30d5
.data, 0x16000, 0xBCCAF, 0xBD000, 7.63, cddae0d22725e9f15d88dc0245a64ad7
.rsrc, 0xD3000, 0x3878, 0x4000, 0.00, d41d8cd98f00b204e9800998ecf8427e
[[ 1 import(s) ]]
MSVBVM60.DLL: _CIcos, _adj_fptan, __vbaFreeVar, _adj_fdiv_m64, _adj_fprem1, __vbaSetSystemError, _adj_fdiv_m32, __vbaAryDestruct, __vbaOnError, _adj_fdiv_m16i, _adj_fdivr_m16i, -, _CIsin, __vbaChkstk, __vbaGenerateBoundsError, __vbaAryConstruct2, DllFunctionCall, __vbaFpUI1, _adj_fpatan, __vbaUI1I2, _CIsqrt, __vbaExceptHandler, _adj_fprem, _adj_fdivr_m64, __vbaFPException, -, _CIlog, __vbaErrorOverflow, _adj_fdiv_m32i, _adj_fdivr_m32i, _adj_fdivr_m32, _adj_fdiv_r, -, __vbaFpI2, __vbaFpI4, _CIatan, _allmul, _CItan, _CIexp, __vbaFreeStr
ExifTool:
file metadata
CodeSize: 86016
EntryPoint: 0x27d0
FileSize: 100 kB
FileType: Win32 EXE
ImageVersion: 1.0
InitializedDataSize: 786432
LinkerVersion: 6.0
MIMEType: application/octet-stream
MachineType: Intel 386 or later, and compatibles
OSVersion: 4.0
PEType: PE32
Subsystem: Windows GUI
SubsystemVersion: 4.0
TimeStamp: 2011:07:28 03:42:04+02:00
UninitializedDataSize: 0
Warning: Error processing PE data dictionary
Symantec reputation:Suspicious.Insight
Scheint Clean zu sein ~.~
€: Geht nicht!
|