File conime.exe ricevuto il 2010.01.11 12:44:20 (UTC)
Stato corrente: finito
Risultato: 0/41 (0.00%)
Formattato Formattato
Stampa risultati Stampa risultati
Antivirus Versione Ultimo aggiornamento Risultato
a-squared 4.5.0.48 2010.01.11 -
AhnLab-V3 5.0.0.2 2010.01.10 -
AntiVir 7.9.1.134 2010.01.11 -
Antiy-AVL 2.0.3.7 2010.01.11 -
Authentium 5.2.0.5 2010.01.10 -
Avast 4.8.1351.0 2010.01.10 -
AVG 9.0.0.725 2010.01.11 -
BitDefender 7.2 2010.01.11 -
CAT-QuickHeal 10.00 2010.01.11 -
ClamAV 0.94.1 2010.01.11 -
Comodo 3545 2010.01.11 -
DrWeb 5.0.1.12222 2010.01.11 -
eSafe 7.0.17.0 2010.01.10 -
eTrust-Vet 35.2.7229 2010.01.11 -
F-Prot 4.5.1.85 2010.01.10 -
F-Secure 9.0.15370.0 2010.01.11 -
Fortinet 4.0.14.0 2010.01.09 -
GData 19 2010.01.11 -
Ikarus T3.1.1.80.0 2010.01.11 -
Jiangmin 13.0.900 2010.01.11 -
K7AntiVirus 7.10.943 2010.01.09 -
Kaspersky 7.0.0.125 2010.01.11 -
McAfee 5857 2010.01.10 -
McAfee+Artemis 5857 2010.01.10 -
McAfee-GW-Edition 6.8.5 2010.01.11 -
Microsoft 1.5302 2010.01.11 -
NOD32 4760 2010.01.11 -
Norman 6.04.03 2010.01.10 -
nProtect 2009.1.8.0 2010.01.11 -
Panda 10.0.2.2 2010.01.10 -
PCTools 7.0.3.5 2010.01.11 -
Prevx 3.0 2010.01.11 -
Rising 22.30.00.05 2010.01.11 -
Sophos 4.49.0 2010.01.11 -
Sunbelt 3.2.1858.2 2010.01.10 -
Symantec 20091.2.0.41 2010.01.11 -
TheHacker 6.5.0.3.146 2010.01.11 -
TrendMicro 9.120.0.1004 2010.01.11 -
VBA32 3.12.12.1 2010.01.11 -
ViRobot 2010.1.11.2130 2010.01.11 -
VirusBuster 5.0.21.0 2010.01.10 -
Informazioni addizionali
File size: 68608 bytes
MD5 : 05cb3da78a4bbd9b799a5957f9d101cc
SHA1 : a012c3a14e8117d3b68c215101a84de10b33e0f5
SHA256: 1448b75e3921e0f3f20949b7db089a392c30e1c22275ee3fdd3fa9824cc08433
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0xEACE
timedatestamp.....: 0x4549AE78 (Thu Nov 2 09:38:16 2006)
machinetype.......: 0x14C (Intel I386)
( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xF026 0xF200 6.57 7ae3bb5d5b355e5b762a724216c3f620
.data 0x11000 0x56C 0x200 3.36 7cfde319aae420bde9bc45b57c06e8bf
.rsrc 0x12000 0x8D0 0xA00 2.88 bcf997ca70576d60c5fec089748b0126
.reloc 0x13000 0x9AE 0xA00 5.77 16276b8751326a8b42850e5ecd78bb87
( 10 imports )
> advapi32.dll: RegQueryValueExW, RegOpenKeyExW, RegCloseKey
> gdi32.dll: GetStockObject, TranslateCharsetInfo
> imm32.dll: ImmCreateContext, ImmReleaseContext, ImmGetContext, ImmGetGuideLineW, ImmGetConversionStatus, ImmGetOpenStatus, ImmSetConversionStatus, ImmGetProperty, ImmAssociateContext, ImmSimulateHotKey, ImmTranslateMessage, ImmCallImeConsoleIME, ImmGetIMEFileNameW, ImmEscapeW, ImmNotifyIME, ImmGetCandidateListW, ImmGetCompositionStringW, ImmGetHotKey, ImmSetActiveContextConsoleIME, ImmDestroyContext, ImmSetOpenStatus
> kernel32.dll: lstrlenA, RegisterConsoleIME, InterlockedExchange, MultiByteToWideChar, VirtualQuery, GetSystemInfo, VirtualAlloc, VirtualProtect, GetVersionExW, InterlockedDecrement, InterlockedIncrement, lstrlenW, WideCharToMultiByte, GetCommandLineW, RegisterApplicationRestart, HeapSetInformation, OpenEventW, SetEvent, CloseHandle, GetCurrentThreadId, GetACP, LocalAlloc, LocalReAlloc, LocalFree, UnhandledExceptionFilter, GetCurrentProcess, TerminateProcess, GetSystemTimeAsFileTime, GetCurrentProcessId, GetTickCount, QueryPerformanceCounter, GetModuleHandleA, SetUnhandledExceptionFilter, GetStartupInfoA, InterlockedCompareExchange, Sleep, UnregisterConsoleIME
> msctf.dll: TF_IsCtfmonRunning, TF_Notify
> msvcrt.dll: memset, _amsg_exit, malloc, free, __getmainargs, _local_unwind4, memcpy, _vsnwprintf, _cexit, _exit, _XcptFilter, _ismbblead, exit, _initterm, _controlfp, _terminate@@YAXXZ, _onexit, _lock, __dllonexit, _unlock, _except_handler4_common, __set_app_type, __p__fmode, __p__commode, _adjust_fdiv, __setusermatherr, memmove, _acmdln
> ole32.dll: CoUninitialize, CoCreateInstance, CoInitializeEx
> oleaut32.dll: -, -, -, -, -, -, -
> user32.dll: UnregisterClassW, CreateWindowExW, RegisterClassW, LoadCursorW, LoadIconW, EnableWindow, DispatchMessageW, TranslateMessage, GetMessageW, GetKeyState, GetKeyboardLayoutNameW, IsWindow, IsWindowEnabled, SetForegroundWindow, PostQuitMessage, DefWindowProcW, DestroyWindow, PostMessageW, RegisterWindowMessageW, ActivateKeyboardLayout, SendMessageTimeoutW, KillTimer, AttachThreadInput, SetTimer
> uxtheme.dll: SetThemeAppProperties
( 0 exports )
TrID : File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
ThreatExpert:
http://www.threatexpert.com/report.aspx ... 57f9d101ccssdeep: 1536:8NAxUXGDZdOHdSq42VRvsVLTqZBq08KDK6dJSFJ30fa73:8a08ZdOHdr5RvsVPDKDjSFJp7
PEiD : -
PDFiD : ['-', None, None]
RDS : NSRL Reference Data Set
( Microsoft )
Installed Vista Ultimate: conime.exe