| 反病毒引擎 | 版本 | 最后更新 | 扫描结果 |
| a-squared | 4.5.0.24 | 2009.08.07 | - |
| AhnLab-V3 | 5.0.0.2 | 2009.08.07 | - |
| AntiVir | 7.9.0.246 | 2009.08.07 | - |
| Antiy-AVL | 2.0.3.7 | 2009.08.07 | - |
| Authentium | 5.1.2.4 | 2009.08.07 | W32/Heuristic-210!Eldorado |
| Avast | 4.8.1335.0 | 2009.08.06 | - |
| AVG | 8.5.0.406 | 2009.08.07 | - |
| BitDefender | 7.2 | 2009.08.07 | - |
| CAT-QuickHeal | 10.00 | 2009.08.07 | - |
| ClamAV | 0.94.1 | 2009.08.07 | - |
| Comodo | 1898 | 2009.08.07 | - |
| DrWeb | 5.0.0.12182 | 2009.08.07 | - |
| eSafe | 7.0.17.0 | 2009.08.06 | - |
| eTrust-Vet | 31.6.6665 | 2009.08.07 | - |
| F-Prot | 4.4.4.56 | 2009.08.07 | W32/Heuristic-210!Eldorado |
| F-Secure | 8.0.14470.0 | 2009.08.07 | - |
| Fortinet | 3.120.0.0 | 2009.08.07 | - |
| GData | 19 | 2009.08.07 | - |
| Ikarus | T3.1.1.64.0 | 2009.08.07 | - |
| Jiangmin | 11.0.800 | 2009.08.07 | - |
| K7AntiVirus | 7.10.813 | 2009.08.07 | - |
| Kaspersky | 7.0.0.125 | 2009.08.07 | - |
| McAfee | 5700 | 2009.08.06 | - |
| McAfee+Artemis | 5700 | 2009.08.06 | - |
| McAfee-GW-Edition | 6.8.5 | 2009.08.07 | - |
| Microsoft | 1.4903 | 2009.08.07 | - |
| NOD32 | 4315 | 2009.08.07 | - |
| Norman | 6.01.09 | 2009.08.07 | - |
| nProtect | 2009.1.8.0 | 2009.08.07 | - |
| Panda | 10.0.0.14 | 2009.08.07 | Suspicious file |
| PCTools | 4.4.2.0 | 2009.08.07 | - |
| Prevx | 3.0 | 2009.08.07 | - |
| Rising | 21.41.44.00 | 2009.08.07 | Win32.Virut.bm |
| Sophos | 4.44.0 | 2009.08.07 | - |
| Sunbelt | 3.2.1858.2 | 2009.08.07 | - |
| Symantec | 1.4.4.12 | 2009.08.07 | - |
| TheHacker | 6.3.4.3.377 | 2009.08.05 | - |
| TrendMicro | 8.950.0.1094 | 2009.08.07 | - |
| VBA32 | 3.12.10.9 | 2009.08.07 | - |
| ViRobot | 2009.8.7.1873 | 2009.08.07 | - |
| VirusBuster | 4.6.5.0 | 2009.08.06 | - |
| 附加信息 |
| File size: 1859136 bytes |
| MD5 : c221a7faba65eefddc756ba80d3ff2a6 |
| SHA1 : eee2ad4567b850aa55d6f95187e3220a1886f51c |
| SHA256: 6f7b222284bdd97d09995ba6f9ac02bd10e63228f19e90bb94b374a3de069346 |
| PEInfo: PE Structure information ( base data ) entrypointaddress.: 0x1000 timedatestamp.....: 0x4487A1E9 (Thu Jun 8 06:04:57 2006) machinetype.......: 0x14C (Intel I386) ( 10 sections ) name viradd virsiz rawdsiz ntrpy md5 0x1000 0xE2000 0x5D400 8.00 272d397a70ba2897554dbca1a8579846 0xE3000 0x9000 0x3A00 7.99 8a305265e01d48092442151e6e7abf87 0xEC000 0x15000 0x5000 7.99 a00e80908ebcebe9ad03f174b833ee57 0x101000 0x13000 0x3200 7.99 32e6a842e94c588af6f08d6909011ce6 0x114000 0x37E000 0x6800 7.99 3378ca1a88505187e3e82b8e761b94e6 .rsrc 0x492000 0x345000 0x10DC00 7.99 f2359c606d3b7d9a10c0a7f16cea6052 0x7D7000 0x3000 0x2C00 7.98 aba8f353e4881aba2e5375f26e0fb66b 0x7DA000 0x1000 0x200 7.62 18b6f43f4cce9cbb42fe02fabf14c014 .data 0x7DB000 0x46000 0x45800 7.87 6b569d63379ea56bce64a7a94d97734f .adata 0x821000 0x1000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e ( 21 imports ) > advapi32.dll: RegCreateKeyA > avifil32.dll: AVIFileInit > comctl32.dll: ImageList_Draw > comdlg32.dll: CommDlgExtendedError > gdi32.dll: LineTo > hook.dll: _setKbHook@@YAXHH@Z > jiaoaud.dll: AudRegisterServer > jiaodsp.dll: DSPIsEffectBufUsing > kernel32.dll: GetProcAddress, GetModuleHandleA, LoadLibraryA, RaiseException > language.dll: fun1 > newdev.dll: UpdateDriverForPlugAndPlayDevicesA > ole32.dll: CoTaskMemAlloc > oleaut32.dll: VariantTimeToSystemTime, VariantChangeTypeEx > oledlg.dll: OleUIBusyA > olepro32.dll: OleCreateFontIndirect > setupapi.dll: SetupDiGetDeviceRegistryPropertyA > shell32.dll: DragFinish > user32.dll: ShowOwnedPopups > wininet.dll: InternetCanonicalizeUrlA > winmm.dll: timeKillEvent > winspool.drv: OpenPrinterA ( 0 exports ) |
| TrID : File type identification Generic Win/DOS Executable (50.0%) DOS Executable Generic (49.9%) |
| ssdeep: 49152:721sBRa0MCsTsRVkzhEnAe2D5F1TqRpZGkrZl:y1m80Fs6CoD2tF1BCl |
| PEiD : ASProtect v1.23 RC1 |
| packers (Kaspersky): PE_Patch |
| packers (F-Prot): PE_Patch, Aspack |
| packers (Authentium): PE_Patch, Aspack, Aspack |
| RDS : NSRL Reference Data Set - |