反病毒引擎 版本 最后更新 扫描结果
a-squared 4.5.0.50 2010.01.26 Trojan-Spy.Win32.FlyStudio!IK
AhnLab-V3 5.0.0.2 2010.01.25 Win-Trojan/Bifrose.37888.T
AntiVir 7.9.1.150 2010.01.25 -
Antiy-AVL 2.0.3.7 2010.01.26 -
Authentium 5.2.0.5 2010.01.26 W32/Onlinegames.BHW
Avast 4.8.1351.0 2010.01.26 Win32:Trojan-gen
AVG 9.0.0.730 2010.01.25 Suspicion: unknown virus
BitDefender 7.2 2010.01.26 -
CAT-QuickHeal 10.00 2010.01.25 Trojan.Agent.IRC
ClamAV 0.94.1 2010.01.25 PUA.Packed.NPack-2
Comodo 3710 2010.01.26 -
DrWeb 5.0.1.12222 2010.01.26 -
eSafe 7.0.17.0 2010.01.25 -
eTrust-Vet 35.2.7259 2010.01.25 Win32/PcClient.QI
F-Prot 4.5.1.85 2010.01.25 W32/Onlinegames.BHW
F-Secure 9.0.15370.0 2010.01.25 Suspicious:W32/Malware!Gemini
Fortinet 4.0.14.0 2010.01.25 -
GData 19 2010.01.26 Win32:Trojan-gen
Ikarus T3.1.1.80.0 2010.01.26 Backdoor.Win32.IRCBot
Jiangmin 13.0.900 2010.01.24 -
K7AntiVirus 7.10.952 2010.01.22 Trojan.Win32.Malware.1
McAfee 5872 2010.01.25 -
McAfee+Artemis 5872 2010.01.25 -
McAfee-GW-Edition 6.8.5 2010.01.26 -
Microsoft 1.5405 2010.01.26 VirTool:Win32/DelfInject.gen!X
NOD32 4805 2010.01.25 a variant of Win32/Packed.FlyStudio
Norman 6.04.03 2010.01.25 -
nProtect 2009.1.8.0 2010.01.25 -
Panda 10.0.2.2 2010.01.25 -
PCTools 7.0.3.5 2010.01.26 -
Prevx 3.0 2010.01.26 -
Rising 22.32.01.01 2010.01.26 -
Sophos 4.50.0 2010.01.26 W32/AutoRun-MO
Sunbelt 3.2.1858.2 2010.01.25 Packer.NSAnti.Gen (v)
Symantec 20091.2.0.41 2010.01.26 -
TheHacker 6.5.0.9.163 2010.01.26 -
TrendMicro 9.120.0.1004 2010.01.25 -
VBA32 3.12.12.1 2010.01.25 Backdoor.Win32.Hupigon.hndn
ViRobot 2010.1.25.2154 2010.01.25 Backdoor.Win32.Hupigon.38920
VirusBuster 5.0.21.0 2010.01.25 Packed/NSPack
附加信息
File size: 3066491 bytes
MD5 : 23b2c0095dae684a05e533136947b045
SHA1 : f1154f31156900463f04ab3eadf8308d5a6c446e
SHA256: bd1e40043832a4c5e449aef3679dfdefd3fbe202322d0942311eea9dafebb5da
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x379D
timedatestamp.....: 0x439A6DC4 (Sat Dec 10 06:55:16 2005)
machinetype.......: 0x14C (Intel I386)
( 5 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x62B6 0x6400 6.41 d9f48557c009a2eb7979fc10b0b362ef
.rdata 0x8000 0x11CA 0x1200 5.29 0562a781a8cdf5785a117a97cc7e5f02
.data 0xA000 0x41AF4 0xC00 4.81 769f3be831c912dddacbe34424aca6cb
.ndata 0x4C000 0x42000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.rsrc 0x8E000 0x28000 0x27E00 4.48 e05d59fdb83fcad61a1a874cf6b20797
( 8 imports )
> advapi32.dll: RegEnumKeyA, RegEnumValueA, RegSetValueExA, RegCreateKeyExA, RegOpenKeyExA, RegDeleteKeyA, RegDeleteValueA, RegCloseKey, RegQueryValueExA
> comctl32.dll: ImageList_AddMasked, ImageList_Destroy, -, ImageList_Create
> gdi32.dll: SetBkColor, GetDeviceCaps, GetCurrentObject, GetObjectA, DeleteObject, CreateBrushIndirect, CreateFontIndirectA, SetBkMode, SetTextColor, SelectObject
> kernel32.dll: SearchPathA, GetShortPathNameA, GetFullPathNameA, MoveFileA, SetCurrentDirectoryA, GetFileAttributesA, GetLastError, CreateDirectoryA, SetFileAttributesA, Sleep, GetFileSize, GetModuleFileNameA, GetTickCount, GetCurrentProcess, CopyFileA, ExitProcess, lstrcpynA, GetCommandLineA, GetWindowsDirectoryA, CompareFileTime, GetUserDefaultLangID, GetDiskFreeSpaceA, GlobalUnlock, GlobalLock, CreateThread, CreateProcessA, RemoveDirectoryA, CreateFileA, GetTempFileNameA, SetEndOfFile, UnmapViewOfFile, MapViewOfFile, CreateFileMappingA, lstrcpyA, lstrlenA, lstrcatA, GetSystemDirectoryA, SetFileTime, CloseHandle, lstrcmpiA, GetEnvironmentVariableA, ExpandEnvironmentStringsA, GlobalFree, GlobalAlloc, WaitForSingleObject, GetExitCodeProcess, SetErrorMode, GetModuleHandleA, LoadLibraryA, GetProcAddress, FreeLibrary, MultiByteToWideChar, WritePrivateProfileStringA, GetPrivateProfileStringA, WriteFile, MulDiv, ReadFile, SetFilePointer, FindClose, FindNextFileA, FindFirstFileA, DeleteFileA, GetTempPathA
> ole32.dll: OleInitialize, OleUninitialize, CoCreateInstance
> shell32.dll: SHGetMalloc, SHGetPathFromIDListA, SHBrowseForFolderA, SHGetFileInfoA, ShellExecuteA, SHFileOperationA, SHGetSpecialFolderLocation
> user32.dll: ExitWindowsEx, CharNextA, DialogBoxParamA, GetClassInfoA, SystemParametersInfoA, RegisterClassA, EndDialog, SetClassLongA, IsWindowEnabled, SetWindowPos, GetSysColor, CheckDlgButton, GetAsyncKeyState, IsDlgButtonChecked, GetMessagePos, LoadBitmapA, IsWindowVisible, CloseClipboard, SetClipboardData, EmptyClipboard, OpenClipboard, CreateDialogParamA, AppendMenuA, CreatePopupMenu, GetSystemMetrics, SetDlgItemTextA, GetDlgItemTextA, MessageBoxA, CharPrevA, wvsprintfA, DispatchMessageA, PeekMessageA, SendMessageTimeoutA, FindWindowExA, IsWindow, GetDlgItem, SetWindowLongA, LoadImageA, GetDC, InvalidateRect, CreateWindowExA, GetWindowLongA, DrawFocusRect, DestroyWindow, SetTimer, SetWindowTextA, PostQuitMessage, SetForegroundWindow, ShowWindow, TrackPopupMenu, wsprintfA, SendMessageA, CallWindowProcA, MapWindowPoints, GetWindowRect, ScreenToClient, PtInRect, LoadCursorA, SetCursor, DefWindowProcA, BeginPaint, GetClientRect, FillRect, DrawTextA, EndPaint, EnableWindow
> version.dll: GetFileVersionInfoSizeA, GetFileVersionInfoA, VerQueryValueA
( 0 exports )
TrID : File type identification
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
ssdeep: 49152:Sz9ypUFolhd/BYsZjuemq05bMNcQ2O8C2fr1TwCEmR1zSSn+YoL8KxtEHLTzr:w9ypUChV+sZ6C0lMCjOKfr1Tw83zSSn3
PEiD : -
RDS : NSRL Reference Data Set