下面是杀毒报告,我不会做毒,请放心使用!
文件 _________3GQQ___.exe 接收于 2010.03.20 02:48:52 (UTC)反病毒引擎 版本 最后更新 扫描结果
a-squared 4.5.0.50 2010.03.19 -
AhnLab-V3 5.0.0.2 2010.03.19 -
AntiVir 8.2.1.196 2010.03.19 -
Antiy-AVL 2.0.3.7 2010.03.19 -
Authentium 5.2.0.5 2010.03.19 W32/Agent.CM.gen!Eldorado
Avast 4.8.1351.0 2010.03.19 -
Avast5 5.0.332.0 2010.03.19 -
AVG 9.0.0.787 2010.03.20 -
BitDefender 7.2 2010.03.20 -
CAT-QuickHeal 10.00 2010.03.19 -
ClamAV 0.96.0.0-git 2010.03.20 Trojan.Downloader-72711
Comodo 4324 2010.03.20 -
DrWeb 5.0.1.12222 2010.03.20 -
eSafe 7.0.17.0 2010.03.18 -
eTrust-Vet 35.2.7376 2010.03.19 Win32/FlyAgent!generic
F-Prot 4.5.1.85 2010.03.19 W32/Agent.CM.gen!Eldorado
F-Secure 9.0.15370.0 2010.03.19 -
Fortinet 4.0.14.0 2010.03.19 -
GData 19 2010.03.20 -
Ikarus T3.1.1.80.0 2010.03.19 -
Jiangmin 13.0.900 2010.03.19 -
K7AntiVirus 7.10.1002 2010.03.19 Generic.Malware.4
Kaspersky 7.0.0.125 2010.03.20 -
McAfee 5925 2010.03.19 -
McAfee+Artemis 5925 2010.03.19 -
McAfee-GW-Edition 6.8.5 2010.03.19 Heuristic.BehavesLike.Win32.Spyware.H
Microsoft 1.5605 2010.03.19 -
NOD32 4959 2010.03.19 a variant of Win32/Packed.FlyStudio
Norman 6.04.09 2010.03.19 -
nProtect 2009.1.8.0 2010.03.19 -
Panda 10.0.2.2 2010.03.19 -
PCTools 7.0.3.5 2010.03.20 -
Prevx 3.0 2010.03.20 Medium Risk Malware
Rising 22.39.04.05 2010.03.20 -
Sophos 4.51.0 2010.03.20 -
Sunbelt 5982 2010.03.20 -
Symantec 20091.2.0.41 2010.03.20 Suspicious.Insight
TheHacker 6.5.2.0.240 2010.03.20 -
TrendMicro 9.120.0.1004 2010.03.19 -
VBA32 3.12.12.2 2010.03.19 Win32.FlyStudio.NKP
ViRobot 2010.3.19.2236 2010.03.19 -
VirusBuster 5.0.27.0 2010.03.19 -
附加信息
File size: 82944 bytes
MD5...: fc4d43ad6d4487c9499e4bda6caa17b6
SHA1..: 56c94d341dd7d18782a7f9094ac616372634f6a7
SHA256: 0abcde1a924515b26a51223522f83baf0ef03f7c6ff74e754d3a1c0ddc1ba35f
ssdeep: 1536:Kq8a8wstjitAxqLVRqLFQaveajBIsxRLq8a8wstjitAxk:Ma8P4KMjcVeaj<BR>BI0va8P4Kq<BR>
PEiD..: -
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x1000<BR>timedatestamp.....: 0x59bffa3 (Mon Dec 25 05:33:23 1972)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 4 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x22c 0x400 3.56 0ebb8343585a72ffe6649584e8373340<BR>.rdata 0x2000 0x194 0x200 3.64 684bd04c4e90ebb1ac24b9d56ab5240e<BR>.data 0x3000 0xe800 0xe800 7.21 4ecc7c1138764a777db5e2b87560635b<BR>.rsrc 0x12000 0x5188 0x5200 5.34 d80666f31d0f776cf97d544b2a31f077<BR><BR>( 3 imports ) <BR>> USER32.dll: MessageBoxA<BR>> KERNEL32.dll: FreeLibrary, lstrcatA, GetModuleFileNameA, ExitProcess, LoadLibraryA, GetProcAddress, lstrlenA<BR>> ADVAPI32.dll: RegQueryValueExA, RegCloseKey, RegOpenKeyExA<BR><BR>( 0 exports ) <BR>
RDS...: NSRL Reference Data Set<BR>-
pdfid.: -
trid..: Win32 Executable Generic (38.5%)<BR>Win32 Dynamic Link Library (generic) (34.2%)<BR>Clipper DOS Executable (9.1%)<BR>Generic Win/DOS Executable (9.0%)<BR>DOS Executable Generic (9.0%)
<a href='http://info.prevx.com/aboutprogramtext.asp?PX5=47EF75970044640644AC01FC40009C0017E4A9F0' target='_blank'>http://info.prevx.com/aboutprogramtext.asp?PX5=47EF75970044640644AC01FC40009C0017E4A9F0</a>
sigcheck:<BR>publisher....: n/a<BR>copyright....: ______ ________<BR>product......: _____<BR>description..: _____<BR>original name: n/a<BR>internal name: n/a<BR>file version.: 1.0.0.0<BR>comments.....: __________(http://www.eyuyan.com)<BR>signers......: -<BR>signing date.: -<BR>verified.....: Unsigned<BR>
不要骂我,我没加毒,不信可以下载后在百度查找世界查毒网把下载的传上去