File name: DFRGFAT.EXE 
Po vmn souboru z jinho potae je vsledek takovto:

File already analysed
This file was already analysed by VirusTotal on 2011-02-26 20:29:04 . 
Detection ratio: 0/43 
You can take a look at the last analysis or analyse it again now. 

Po reanalze:
SHA256: 087af4c134b87c31328e7dedc876ad98fe62d07188b834b8514fde36a8317964 
SHA1: b5d0a555e33e6d0bdeb1a01ea2ccc1fcfd50eb91 
MD5: 3bb8134ac21e756cf3ed051dba113dcc 
File size: 81.0 KB ( 82944 bytes )  
File name: dfrgfat.exe 
File type: Win32 EXE 
Detection ratio: 0 / 45  
Analysis date: 2013-03-11 11:06:19 UTC ( 0 minut ago )  

Dodaten info:
ssdeep
1536:1goGd9cKL+n9ZBCcaNWKjiHQ6zS/iZwOY6zLRKyCN9:1E9cKL+9ZUlsKjUHZTzLRKtN9  
TrID
Win32 Executable MS Visual C++ (generic) (65.2%)
Win32 Executable Generic (14.7%)
Win32 Dynamic Link Library (generic) (13.1%)
Generic Win/DOS Executable (3.4%)
DOS Executable Generic (3.4%)
 
ExifTool
SubsystemVersion.........: 4.0
InitializedDataSize......: 5120
ImageVersion.............: 5.1
ProductName..............: Windows Disk Defragmenter
FileVersionNumber........: 5.1.2600.5512
UninitializedDataSize....: 0
LanguageCode.............: Czech
FileFlagsMask............: 0x003f
CharacterSet.............: Unicode
LinkerVersion............: 7.1
FileOS...................: Windows NT 32-bit
MIMEType.................: application/octet-stream
Subsystem................: Windows GUI
FileVersion..............: 5.1.2600.5512 (xpsp.080413-2111)
TimeStamp................: 2008:04:13 19:33:44+01:00
FileType.................: Win32 EXE
PEType...................: PE32
InternalName.............: DFRGFAT.EXE
ProductVersion...........: 5.1.2600.5512
FileDescription..........: Disk Defragmenter FAT File System Module
OSVersion................: 5.1
OriginalFilename.........: DFRGFAT.EXE
LegalCopyright...........: 2001 Microsoft Corp. and Executive Software Int'l, Inc.
MachineType..............: Intel 386 or later, and compatibles
CompanyName..............: Microsoft Corp. and Executive Software International, Inc.
CodeSize.................: 76800
FileSubtype..............: 0
ProductVersionNumber.....: 5.1.2600.5512
Warning..................: Possibly corrupt Version resource
EntryPoint...............: 0x12420
ObjectFileType...........: Executable application 
Sigcheck
publisher................: Microsoft Corp. and Executive Software International, Inc.
product..................: Windows Disk Defragmenter
internal name............: DFRGFAT.EXE
copyright................: (c)2001 Microsoft Corp. and Executive Software Int_l, Inc.
original name............: DFRGFAT.EXE
file version.............: 5.1.2600.5512 (xpsp.080413-2111)
description..............: Disk Defragmenter FAT File System Module 
Portable Executable structural information
Compilation timedatestamp.....: 2008-04-13 18:33:44
Target machine................: Intel 386 or later processors and compatible processors
Entry point address...........: 0x00012420

PE Sections...................:

Name        Virtual Address  Virtual Size  Raw Size  Entropy  MD5
.text                  4096         76324     76800     6.38  b378350511bcb45939acdf86798379ff
.data                 81920        120068      3584     0.90  46975373b7c60c65e609f6e0df2af5c9
.rsrc                204800          1432      1536     3.69  6de0b338a712f9ce0221933ac4d6664c

PE Imports....................:

[[VSSAPI.DLL]]
Ord(5)

[[GDI32.dll]]
GetStockObject

[[ADVAPI32.dll]]
SetSecurityDescriptorDacl, RegCreateKeyExW, SetEntriesInAclW, RegCloseKey, OpenProcessToken, RegSetValueExW, FreeSid, GetSecurityDescriptorDacl, AllocateAndInitializeSid, InitializeSecurityDescriptor, AdjustTokenPrivileges, LookupPrivilegeValueW, RegOpenKeyExW, RegQueryValueExW

[[KERNEL32.dll]]
DeviceIoControl, SystemTimeToFileTime, lstrcpynW, ReleaseMutex, LoadLibraryW, GlobalFree, WaitForSingleObject, GetVersionExW, SetEvent, QueryPerformanceCounter, GetTimeFormatW, GetTickCount, GlobalUnlock, FlushFileBuffers, lstrcmpiW, GlobalAlloc, lstrlenW, GetLocalTime, FindFirstVolumeMountPointW, GlobalSize, DeleteCriticalSection, GetStartupInfoA, GetLastError, EnterCriticalSection, SizeofResource, GetVolumeInformationW, GetCurrentProcessId, GetSystemWindowsDirectoryW, GetVolumeNameForVolumeMountPointW, GetDateFormatW, GetCommandLineW, CreateThread, UnhandledExceptionFilter, SetErrorMode, GetFileInformationByHandle, FindVolumeMountPointClose, GlobalLock, GetSystemPowerStatus, GetComputerNameW, FindNextVolumeMountPointW, GetModuleHandleA, lstrcpyW, WideCharToMultiByte, SetFilePointer, GetDiskFreeSpaceW, GetExitCodeThread, GlobalReAlloc, SetUnhandledExceptionFilter, WriteFile, GetCurrentProcess, ReadFile, GetSystemTimeAsFileTime, FindResourceW, ExitThread, lstrcatW, GetFileAttributesExW, LocalFree, FormatMessageW, TerminateProcess, InitializeCriticalSection, OpenEventW, CreateFileW, GlobalHandle, CompareStringW, GetDriveTypeW, InterlockedDecrement, Sleep, ExpandEnvironmentStringsW, CloseHandle, GetCurrentThreadId, OutputDebugStringA, LeaveCriticalSection, lstrcmpW, GetFileSize, SetLastError, InterlockedIncrement

[[msvcrt.dll]]
__p__fmode, _wcsupr, _ftol, _wfopen, fclose, __dllonexit, swprintf, towupper, wcscpy, _fmode, _cexit, _c_exit, ??2@YAPAXI@Z, _onexit, wcslen, wcscmp, exit, _XcptFilter, wcsncat, __setusermatherr, _local_unwind2, _controlfp, sprintf, _adjust_fdiv, _acmdln, _wcsicmp, iswctype, wcschr, __p__commode, ??3@YAXPAX@Z, wcscat, wcscspn, atoi, wcsncmp, __getmainargs, _initterm, _except_handler3, wcsncpy, memmove, localeconv, swscanf, wcsrchr, wcsstr, _exit, _wtoi, fgetws, __set_app_type

[[SHELL32.dll]]
SHGetSpecialFolderLocation, SHGetPathFromIDListW

[[ntdll.dll]]
NtQueryVolumeInformationFile, NtQueryInformationFile, NtWaitForSingleObject, NtFsControlFile

[[ole32.dll]]
CoInitializeEx, CoUninitialize, ReleaseStgMedium, CoRegisterClassObject, CoCreateInstanceEx, CLSIDFromString

[[USER32.dll]]
SetTimer, MessageBoxW, SendMessageW, wsprintfW, RegisterClassExW, KillTimer, TranslateMessage, GetMessageW, CharUpperW, DefWindowProcW, LoadStringW, LoadCursorW, CreateWindowExW, wvsprintfA, PostQuitMessage, PostMessageW, DispatchMessageW, DestroyWindow

[[COMCTL32.dll]]
Ord(17)

PE Resources..................:

Resource type            Number of resources
RT_STRING                1
RT_VERSION               1

Resource language        Number of resources
CZECH DEFAULT            2 
First seen by VirusTotal
2010-01-23 13:28:27 UTC ( 3 roky, 1 msc ago )  
Last seen by VirusTotal
2013-03-11 11:06:19 UTC ( 3 minuty ago )  
File names (max. 25)
1.DFRGFAT.EXE 
2.file-1903475_exe 
3.dfrgfat.exe 
 

