amcenter
Member | Редактировать | Профиль | Сообщение | Цитировать | Сообщить модератору Вот кстати ссылка на вирус тотал по этому аськиному вирусу, ссылка взята с форума: http://habrahabr.ru/blogs/infosecurity/101870/ File name: file-1307965_exe Submission date: 2010-08-16 13:16:46 (UTC) Current status: finished Result: 9 /42 (21.4%) VT Community malware Safety score: 0.0% Compact Print results Antivirus Version Last Update Result AhnLab-V3 2010.08.16.02 2010.08.16 - AntiVir 8.2.4.34 2010.08.16 - Antiy-AVL 2.0.3.7 2010.08.16 - Authentium 5.2.0.5 2010.08.16 W32/Infostealer.A!Maximus Avast 4.8.1351.0 2010.08.15 - Avast5 5.0.332.0 2010.08.15 - AVG 9.0.0.851 2010.08.16 - BitDefender 7.2 2010.08.16 DeepScan:Generic.Malware.FPPkTkg.7388E5A8 CAT-QuickHeal 11.00 2010.08.16 - ClamAV 0.96.0.3-git 2010.08.16 - Comodo 5758 2010.08.16 - DrWeb 5.0.2.03300 2010.08.16 - Emsisoft 5.0.0.37 2010.08.16 Win32.SuspectCrc!IK eSafe 7.0.17.0 2010.08.15 - eTrust-Vet 36.1.7793 2010.08.16 - F-Prot 4.6.1.107 2010.08.16 W32/Infostealer.A!Maximus F-Secure 9.0.15370.0 2010.08.16 DeepScan:Generic.Malware.FPPkTkg.7388E5A8 Fortinet 4.1.143.0 2010.08.16 - GData 21 2010.08.16 DeepScan:Generic.Malware.FPPkTkg.7388E5A8 Ikarus T3.1.1.88.0 2010.08.16 Win32.SuspectCrc Jiangmin 13.0.900 2010.08.16 - Kaspersky 7.0.0.125 2010.08.16 - McAfee 5.400.0.1158 2010.08.16 - McAfee-GW-Edition 2010.1 2010.08.16 - Microsoft 1.6004 2010.08.16 - NOD32 5369 2010.08.16 - Norman 6.05.11 2010.08.15 - nProtect 2010-08-16.01 2010.08.16 - Panda 10.0.2.7 2010.08.15 Suspicious file PCTools 7.0.3.5 2010.08.16 - Prevx 3.0 2010.08.16 - Rising 22.61.00.04 2010.08.16 - Sophos 4.56.0 2010.08.16 - Sunbelt 6740 2010.08.16 Trojan.Win32.Generic!BT SUPERAntiSpyware 4.40.0.1006 2010.08.16 - Symantec 20101.1.1.7 2010.08.16 - TheHacker 6.5.2.1.349 2010.08.16 - TrendMicro 9.120.0.1004 2010.08.16 - TrendMicro-HouseCall 9.120.0.1004 2010.08.16 - VBA32 3.12.14.0 2010.08.13 - ViRobot 2010.8.16.3990 2010.08.16 - VirusBuster 5.0.27.0 2010.08.15 - Additional information Show all MD5 : 058ebc415a27694b7cff3093cfaf2f4a SHA1 : b0f3ccd65414853eb120b01e1ad7fbf25fc59690 SHA256: 41e19d03853208caec30a3c6c9bffa038e6b03f0a021b24bbac092dbdbff788c ssdeep: 12288:nXd+LIjfE/LpHIwRHmHpoAyco8BJ3y88j0/CQn3IZfnN:nXSQKL2wRHi1LW88OCe3K File size : 938496 bytes First seen: 2010-08-14 13:38:20 Last seen : 2010-08-16 15:23:07 Magic: PE32 executable for MS Windows (GUI) Intel 80386 32-bit TrID: Win32 Executable Borland Delphi 7 (66.6%)[*lb*]Win32 Executable Borland Delphi 6 (26.1%)[*lb*]InstallShield setup (4.2%)[*lb*]Win32 Executable Delphi generic (1.4%)[*lb*]Win32 Executable Generic (0.8%) sigcheck: publisher....: n/a[*lb*]copyright....: n/a[*lb*]product......: n/a[*lb*]description..: n/a[*lb*]original name: n/a[*lb*]internal name: n/a[*lb*]file version.: n/a[*lb*]comments.....: n/a[*lb*]signers......: -[*lb*]signing date.: -[*lb*]verified.....: Unsigned[*lb*] PEiD: BobSoft Mini Delphi -> BoB / BobSoft PEInfo: PE structure information [[ basic data ]] entrypointaddress: 0x7F4B4 timedatestamp....: 0x2A425E19 (Fri Jun 19 22:22:17 1992) machinetype......: 0x14C (Intel I386) [[ 8 section(s) ]] name, viradd, virsiz, rawdsiz, ntropy, md5 CODE, 0x1000, 0x7E51C, 0x7E600, 6.55, d78ea6492c93264eadaae1ceed20074f DATA, 0x80000, 0x2C00, 0x2C00, 4.84, d44e68cf5d4c96329c627a69c4246158 BSS, 0x83000, 0x3C89, 0x0, 0.0, d41d8cd98f00b204e9800998ecf8427e .idata, 0x87000, 0x2630, 0x2800, 4.89, c64a92d4df06da306828fe87901de092 .tls, 0x8A000, 0x10, 0x0, 0.0, d41d8cd98f00b204e9800998ecf8427e .rdata, 0x8B000, 0x18, 0x200, 0.18, 24dad9c95f5615eda29f922c58522c15 .reloc, 0x8C000, 0x8EB0, 0x9000, 6.66, 2b5c34c2b127d7fcf5ab8231b305abbe .rsrc, 0x95000, 0x58200, 0x58200, 6.14, 616c3a01e62f0b70559ed241670f42a1 http://www.virustotal.com/file-scan/report.html?id=41e19d03853208caec30a3c6c9bffa038e6b03f0a021b24bbac092dbdbff788c-1281964606 | Всего записей: 273 | Зарегистр. 25-11-2008 | Отправлено: 19:42 16-08-2010 | Исправлено: amcenter, 19:51 16-08-2010 |
|