|
Antivirus Version letzte aktualisierung Ergebnis
AhnLab-V3 2008.8.21.0 2008.08.22 -
AntiVir 7.8.1.23 2008.08.23 -
Authentium 5.1.0.4 2008.08.24 W32/Heuristic-THX!********
Avast 4.8.1195.0 2008.08.23 -
AVG 8.0.0.161 2008.08.24 -
BitDefender 7.2 2008.08.24 -
CAT-QuickHeal 9.50 2008.08.22 -
ClamAV 0.93.1 2008.08.24 PUA.Packed.Themida
DrWeb 4.44.0.09170 2008.08.24 -
eSafe 7.0.17.0 2008.08.24 -
eTrust-Vet 31.6.6044 2008.08.23 -
Ewido 4.0 2008.08.24 -
F-Prot 4.4.4.56 2008.08.24 W32/Heuristic-THX!********
F-Secure 7.60.13501.0 2008.08.24 -
Fortinet 3.14.0.0 2008.08.24 -
GData 2.0.7306.1023 2008.08.20 -
Ikarus T3.1.1.34.0 2008.08.24 -
K7AntiVirus 7.10.427 2008.08.23 -
Kaspersky 7.0.0.125 2008.08.24 -
McAfee 5368 2008.08.22 -
Microsoft 1.3807 2008.08.24 -
NOD32v2 3382 2008.08.23 -
Norman 5.80.02 2008.08.22 -
Panda 9.0.0.4 2008.08.24 -
PCTools 4.4.2.0 2008.08.24 Packed/Themida
Prevx1 V2 2008.08.24 -
Rising 20.58.62.00 2008.08.24 -
Sophos 4.32.0 2008.08.24 Mal/Behav-285
Sunbelt 3.1.1575.1 2008.08.23 -
Symantec 10 2008.08.24 -
TheHacker 6.3.0.6.060 2008.08.23 -
TrendMicro 8.700.0.1004 2008.08.23 WORM_SDBOT.GAV
VBA32 3.12.8.4 2008.08.23 -
ViRobot 2008.8.22.1346 2008.08.22 -
VirusBuster 4.5.11.0 2008.08.24 Packed/Themida
Webwasher-Gateway 6.6.2 2008.08.24 Win32.Malware.gen (suspicious)
weitere Informationen
File size: 2084864 bytes
MD5...: 9d31429d1a6c693883d9cac951457332
SHA1..: 4f3e653197cd39b321339871a7e2e4ee5f81334f
SHA256: 496adf16ac8876c50b8604414cb3464e5dd84c36704fea1723 c14f3f048aa100
SHA512: 31415125c4d204acad9a4e8d30ba1c63db509b3b5384a2847f c3b7d3ffdc70dc
a97859d041d05b6839815b50146eadc47d18cf257a71194959 d35d2bdecafcc6
PEiD..: -
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x838014
timedatestamp.....: 0x48912ed7 (Thu Jul 31 03:17:43 2008)
machinetype.......: 0x14c (I386)
( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
0x1000 0x435000 0x165000 7.99 b4b63394d8242c655e7000aab0d23362
.rsrc 0x436000 0xbe0 0x1000 4.93 d351e406c074013f1e7e1124c356cd0e
.idata 0x437000 0x1000 0x1000 0.24 8a22fda96c18c0260ef658a4534b2840
XUG 0x438000 0x152000 0x95000 7.88 6356207c8308b4a36e5692c87762478c
( 2 imports )
> KERNEL32.dll: CreateFileA, ExitProcess
> COMCTL32.dll: InitCommonControls
( 1 exports )
fcEXP
packers (Authentium): Themida
packers (F-Prot): Themida
could some 1 tell me pls if this 1 is clean ? or a keylogger or sth else??
..thx
|