反病毒引擎 版本 最后更新 扫描结果
a-squared 4.5.0.50 2010.03.26 -
AhnLab-V3 5.0.0.2 2010.03.26 -
AntiVir 7.10.5.241 2010.03.26 -
Antiy-AVL 2.0.3.7 2010.03.26 -
Authentium 5.2.0.5 2010.03.26 -
Avast 4.8.1351.0 2010.03.26 -
Avast5 5.0.332.0 2010.03.26 -
AVG 9.0.0.787 2010.03.26 -
BitDefender 7.2 2010.03.26 -
CAT-QuickHeal 10.00 2010.03.26 -
ClamAV 0.96.0.0-git 2010.03.26 -
Comodo 4394 2010.03.26 -
DrWeb 5.0.1.12222 2010.03.26 -
eSafe 7.0.17.0 2010.03.25 Win32.Banker
eTrust-Vet 35.2.7390 2010.03.26 -
F-Prot 4.5.1.85 2010.03.26 -
F-Secure 9.0.15370.0 2010.03.26 -
Fortinet 4.0.14.0 2010.03.26 -
GData 19 2010.03.26 -
Ikarus T3.1.1.80.0 2010.03.26 -
Jiangmin 13.0.900 2010.03.26 -
K7AntiVirus 7.10.1004 2010.03.22 -
Kaspersky 7.0.0.125 2010.03.26 -
McAfee 5932 2010.03.26 -
McAfee+Artemis 5932 2010.03.26 -
McAfee-GW-Edition 6.8.5 2010.03.26 -
Microsoft 1.5605 2010.03.26 -
NOD32 4978 2010.03.26 -
Norman 6.04.10 2010.03.26 -
nProtect 2009.1.8.0 2010.03.26 -
Panda 10.0.2.2 2010.03.26 -
PCTools 7.0.3.5 2010.03.26 -
Prevx 3.0 2010.03.26 -
Rising 22.40.04.04 2010.03.26 -
Sophos 4.52.0 2010.03.26 -
Sunbelt 6100 2010.03.26 -
Symantec 20091.2.0.41 2010.03.26 -
TheHacker 6.5.2.0.245 2010.03.26 -
TrendMicro 9.120.0.1004 2010.03.26 -
VBA32 3.12.12.2 2010.03.25 -
ViRobot 2010.3.26.2246 2010.03.26 -
VirusBuster 5.0.27.0 2010.03.26 -
附加信息
File size: 176128 bytes
MD5 : 7103a128fa685dc641a258ef565dd0c4
SHA1 : 6398be109160c4d96bdcf5c49d3157f503e77940
SHA256: 61d88865bae04716178477b28cac31a66786c072b8cb4ad89f5b5d17617a14d2
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x5F9A
timedatestamp.....: 0x3F0B7369 (Wed Jul 9 03:44:09 2003)
machinetype.......: 0x14C (Intel I386)
( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x1A294 0x1B000 6.53 e82b0a54e9b3da9b66ec6e7adceb8a9e
.rdata 0x1C000 0x7012 0x8000 4.49 6159b52285676d76f25c9e38e3af171f
.data 0x24000 0x5214 0x2000 3.61 f828635ebe5e3a382894a35a84b0c9f1
.rsrc 0x2A000 0x4338 0x5000 3.11 95c925976fe5404b0b31821e386dec57
( 9 imports )
> advapi32.dll: RegOpenKeyA, RegQueryValueExA, RegOpenKeyExA, RegDeleteKeyA, RegEnumKeyA, RegQueryValueA, RegCreateKeyExA, RegSetValueExA, RegCloseKey
> comctl32.dll: -
> gdi32.dll: CreateFontIndirectA, GetStockObject, CreateBitmap, DeleteDC, Escape, ScaleWindowExtEx, SetWindowExtEx, ScaleViewportExtEx, SetViewportExtEx, OffsetViewportOrgEx, SetViewportOrgEx, DPtoLP, GetDeviceCaps, ExtTextOutA, TextOutA, RectVisible, PtVisible, GetObjectA, DeleteObject, GetClipBox, SetMapMode, SetTextColor, SetBkColor, RestoreDC, SaveDC, SelectObject
> kernel32.dll: GetSystemInfo, VirtualQuery, RtlUnwind, GetDriveTypeA, GetFileType, GetSystemTimeAsFileTime, GetStartupInfoA, GetCommandLineA, ExitProcess, TerminateProcess, HeapReAlloc, HeapSize, HeapDestroy, HeapCreate, VirtualFree, IsBadWritePtr, SetUnhandledExceptionFilter, SetStdHandle, SetHandleCount, VirtualAlloc, UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, QueryPerformanceCounter, GetTickCount, GetCurrentProcessId, LCMapStringA, LCMapStringW, GetStringTypeA, GetStringTypeW, GetTimeZoneInformation, IsBadReadPtr, IsBadCodePtr, SetEnvironmentVariableA, VirtualProtect, HeapFree, HeapAlloc, FileTimeToLocalFileTime, SetErrorMode, FileTimeToSystemTime, GetOEMCP, GetCPInfo, GetFullPathNameA, FindFirstFileA, FindClose, GetCurrentProcess, FlushFileBuffers, SetFilePointer, WriteFile, GetCurrentDirectoryA, WritePrivateProfileStringA, GlobalFlags, TlsFree, LocalReAlloc, TlsSetValue, TlsAlloc, TlsGetValue, GlobalHandle, GlobalReAlloc, LocalAlloc, InterlockedIncrement, DeleteCriticalSection, RaiseException, InterlockedDecrement, GlobalGetAtomNameA, GlobalFindAtomA, lstrcatA, lstrcmpW, FreeResource, GlobalAddAtomA, GetCurrentThread, GetCurrentThreadId, FreeLibrary, GlobalDeleteAtom, lstrcmpA, GetModuleFileNameA, ConvertDefaultLocale, EnumResourceLanguagesA, lstrcpyA, LoadLibraryA, GetModuleHandleA, GetProcAddress, SetLastError, GlobalFree, MulDiv, GlobalAlloc, GlobalLock, GlobalUnlock, FormatMessageA, lstrcpynA, LocalFree, CreateThread, CreateFileA, ReadFile, CloseHandle, WaitForSingleObject, ResetEvent, SetEvent, FindResourceA, LoadResource, LockResource, SizeofResource, LeaveCriticalSection, EnterCriticalSection, InitializeCriticalSection, CreateEventA, CompareStringW, CompareStringA, lstrlenA, lstrcmpiA, GetVersion, GetLastError, WideCharToMultiByte, MultiByteToWideChar, GetVersionExA, GetThreadLocale, GetLocaleInfoA, GetACP, GetStdHandle, InterlockedExchange
> oleaut32.dll: -, -, -
> shell32.dll: DragQueryFileA
> shlwapi.dll: PathFindFileNameA, PathFindExtensionA
> user32.dll: LoadCursorA, GetSysColorBrush, wsprintfA, DestroyMenu, RegisterWindowMessageA, WinHelpA, GetCapture, CreateWindowExA, GetClassLongA, GetClassInfoExA, GetClassNameA, SetPropA, GetPropA, RemovePropA, GetForegroundWindow, GetTopWindow, UnhookWindowsHookEx, GetMessageTime, GetMessagePos, MapWindowPoints, SetScrollPos, SetForegroundWindow, UpdateWindow, GetMenu, AdjustWindowRectEx, RegisterClassA, UnregisterClassA, DefWindowProcA, CallWindowProcA, SystemParametersInfoA, GetWindowPlacement, GetWindow, GetDesktopWindow, SetActiveWindow, CreateDialogIndirectParamA, DestroyWindow, IsWindow, GetNextDlgTabItem, EndDialog, SetMenuItemBitmaps, ModifyMenuA, EnableMenuItem, CheckMenuItem, GetMenuCheckMarkDimensions, LoadBitmapA, SetWindowsHookExA, CallNextHookEx, GetMessageA, TranslateMessage, DispatchMessageA, GetActiveWindow, IsWindowVisible, GetKeyState, PeekMessageA, GetCursorPos, ValidateRect, MessageBoxA, GetClassInfoA, CopyRect, GetWindowRect, InvalidateRect, DrawIcon, AppendMenuA, SendMessageA, GetSystemMenu, IsIconic, GetClientRect, GetLastActivePopup, SetCursor, PostQuitMessage, PostMessageA, EndPaint, BeginPaint, ReleaseDC, GetDC, ClientToScreen, ScreenToClient, GrayStringA, DrawTextExA, DrawTextA, TabbedTextOutA, GetWindowTextA, GetFocus, GetParent, SetWindowPos, SetFocus, IsWindowEnabled, ShowWindow, MoveWindow, PtInRect, EnableWindow, LoadIconA, GetSystemMetrics, GetSysColor, GetSubMenu, GetMenuItemCount, GetMenuItemID, GetMenuState, GetDlgItem, SendDlgItemMessageA, SetWindowLongA, GetDlgCtrlID, SetWindowTextA, GetWindowLongA, IsDialogMessageA
> winspool.drv: OpenPrinterA, DocumentPropertiesA, ClosePrinter
( 0 exports )
TrID : File type identification
48.4% (.EXE) Win32 Executable MS Visual C++ (generic) (31206/45/13)
20.3% (.SCR) Windows Screen Saver (13105/51/3)
13.2% (.EXE) Win32 Executable Generic (8527/13/3)
11.7% (.DLL) Win32 Dynamic Link Library (generic) (7583/30/2)
3.1% (.EXE) Generic Win/DOS Executable (2002/3)
ssdeep: 3072:FcAR4DlF9GNcN1ybLSWhRIUhx1cpqly0BgVTF:6rF9qqA2WTIykQK
sigcheck: publisher....: n/a
copyright....: Copyright (C) 2003
product......: md5sum Application
description..: md5sum MFC Application
original name: md5sum.EXE
internal name: md5sum
file version.: 1, 0, 1, 1
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEiD : -
CWSandbox:
http://research.sunbelt-software.com/partnerresource/MD5.aspx?md5=7103a128fa685dc641a258ef565dd0c4 RDS : NSRL Reference Data Set
注意MD5 自己比对去。
http://www.virustotal.com/zh-cn/analisis/61d88865bae04716178477b28cac31a66786c072b8cb4ad89f5b5d17617a14d2-1269630537报告地址、