Re: internet
Napsal: 21 kvě 2010 18:18
a-squared 4.5.0.50 2010.05.10 Trojan.Win32.Bagle!IK
AhnLab-V3 2010.05.21.00 2010.05.20 -
AntiVir 8.2.1.242 2010.05.21 -
Antiy-AVL 2.0.3.7 2010.05.21 -
Authentium 5.2.0.5 2010.05.21 W32/Bagle.IJ
Avast 4.8.1351.0 2010.05.21 -
Avast5 5.0.332.0 2010.05.21 -
AVG 9.0.0.787 2010.05.21 -
BitDefender 7.2 2010.05.21 Rootkit.Bagle.K
CAT-QuickHeal 10.00 2010.05.21 -
ClamAV 0.96.0.3-git 2010.05.21 Trojan.Agent-66914
Comodo 4899 2010.05.21 -
DrWeb 5.0.2.03300 2010.05.21 -
eSafe 7.0.17.0 2010.05.20 Win32.Bagle.RC.worm
eTrust-Vet 35.2.7502 2010.05.21 -
F-Prot 4.6.0.103 2010.05.20 W32/Bagle.IJ
F-Secure 9.0.15370.0 2010.05.21 Rootkit:W32/Bagle.SR
Fortinet 4.1.133.0 2010.05.21 W32/Bagle.ZNG!worm
GData 21 2010.05.21 Rootkit.Bagle.K
Ikarus T3.1.1.84.0 2010.05.21 Trojan.Win32.Bagle
Jiangmin 13.0.900 2010.05.21 Trojan/Agent.cmdf
Kaspersky 7.0.0.125 2010.05.21 -
McAfee 5.400.0.1158 2010.05.21 -
McAfee-GW-Edition 2010.1 2010.05.21 -
Microsoft 1.5802 2010.05.21 -
NOD32 5136 2010.05.21 -
Norman 6.04.12 2010.05.21 -
nProtect 2010-05-21.01 2010.05.21 Worm/W32.Bagle.7168
Panda 10.0.2.7 2010.05.21 -
PCTools 7.0.3.5 2010.05.21 Trojan-Downloader.Bagle
Prevx 3.0 2010.05.21 Medium Risk Malware
Rising 22.48.04.04 2010.05.21 Trojan.Win32.Generic.51E920C9
Sophos 4.53.0 2010.05.21 -
Sunbelt 6334 2010.05.21 Trojan.Win32.Generic!BT
Symantec 20101.1.0.89 2010.05.21 -
TheHacker 6.5.2.0.284 2010.05.20 Trojan/Rootkit.gen
TrendMicro 9.120.0.1004 2010.05.21 -
TrendMicro-HouseCall 9.120.0.1004 2010.05.21 -
VBA32 3.12.12.5 2010.05.21 -
ViRobot 2010.5.20.2326 2010.05.21 Trojan.Win32.Bagle.7168
VirusBuster 5.0.27.0 2010.05.21 -
Rozšiřující informace
File size: 7168 bytes
MD5...: 524d8d450622db4a7875b111c299a76b
SHA1..: fe22db1e0b864e77baeca5520c05c42431784fd8
SHA256: 7ae9aae77884ac0baa2f8168b3ed4de0c0c9834a42d8e5a775f47a2c66cec237
ssdeep: 96:wQQovxXZHQ7SioGfU2zSVeUvaUOPLNI8n1Sw1xJj0o:w+PQ/oV2z2eaaUOW8R
I
PEiD..: -
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x1990
timedatestamp.....: 0x4788d40f (Sat Jan 12 14:51:59 2008)
machinetype.......: 0x14c (I386)
( 6 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x9d4 0xa00 5.78 b65e29f81689fbde8b3d49891e4011de
.rdata 0x2000 0x144 0x200 2.93 4c5e3a3a7d9a4ad57704be677563d7ca
.data 0x3000 0x20 0x200 0.26 4f4f5306b935a3d853c02c6c206aa506
INIT 0x4000 0x292 0x400 3.74 a077364ef66a2ed1ad88d7557f37474a
.rsrc 0x5000 0x300 0x400 2.56 85021f99de084aa59772f678fd7aaf3a
.reloc 0x6000 0x106 0x200 2.65 173202905f3e2cfaecaf72eb73fd3c1c
( 2 imports )
> ntoskrnl.exe: MmIsAddressValid, MmProbeAndLockPages, MmMapLockedPagesSpecifyCache, MmBuildMdlForNonPagedPool, IoAllocateMdl, _except_handler3, ObfDereferenceObject, ObReferenceObjectByName, MmUnlockPages, RtlInitUnicodeString, KeServiceDescriptorTable, PsGetCurrentProcessId, IoGetCurrentProcess, IoDeleteDevice, IoCreateSymbolicLink, IoCreateDevice, IoDeleteSymbolicLink, IoFreeMdl, IoDriverObjectType, IofCompleteRequest
> HAL.dll: KfLowerIrql, KeRaiseIrqlToDpcLevel
( 0 exports )
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win32 Executable Generic (68.0%)
Generic Win/DOS Executable (15.9%)
DOS Executable Generic (15.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ThreatExpert info: <a href='http://www.threatexpert.com/report.aspx ... 11c299a76b' target='_blank'>http://www.threatexpert.com/report.aspx ... 299a76b</a>
sigcheck:
publisher....: n/a
copyright....: Zaitsev Oleg, Copyright (C) 2004-2006
product......: AVZ Driver
description..: AVZ Driver
original name: avz.sys
internal name: avz.sys
file version.: 1, 2, 0, 0
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
<a href='http://info.prevx.com/aboutprogramtext. ... 00CCFB2D16' target='_blank'>http://info.prevx.com/aboutprogramtext. ... CFB2D16</a>
VAROVÁNÍ: VirusTotal je služba poskytovaná zdarma společnosti Hispasec Sistemas. Kvalita výsledků není nijak zaručena. Výsledky jsou závislé na tvůrci daného produktu. Vysledky testů nemusí být 100% správné. Tyto výsledky nemusí znamenat, že daný soubor je infikován, nebo čistý!
AhnLab-V3 2010.05.21.00 2010.05.20 -
AntiVir 8.2.1.242 2010.05.21 -
Antiy-AVL 2.0.3.7 2010.05.21 -
Authentium 5.2.0.5 2010.05.21 W32/Bagle.IJ
Avast 4.8.1351.0 2010.05.21 -
Avast5 5.0.332.0 2010.05.21 -
AVG 9.0.0.787 2010.05.21 -
BitDefender 7.2 2010.05.21 Rootkit.Bagle.K
CAT-QuickHeal 10.00 2010.05.21 -
ClamAV 0.96.0.3-git 2010.05.21 Trojan.Agent-66914
Comodo 4899 2010.05.21 -
DrWeb 5.0.2.03300 2010.05.21 -
eSafe 7.0.17.0 2010.05.20 Win32.Bagle.RC.worm
eTrust-Vet 35.2.7502 2010.05.21 -
F-Prot 4.6.0.103 2010.05.20 W32/Bagle.IJ
F-Secure 9.0.15370.0 2010.05.21 Rootkit:W32/Bagle.SR
Fortinet 4.1.133.0 2010.05.21 W32/Bagle.ZNG!worm
GData 21 2010.05.21 Rootkit.Bagle.K
Ikarus T3.1.1.84.0 2010.05.21 Trojan.Win32.Bagle
Jiangmin 13.0.900 2010.05.21 Trojan/Agent.cmdf
Kaspersky 7.0.0.125 2010.05.21 -
McAfee 5.400.0.1158 2010.05.21 -
McAfee-GW-Edition 2010.1 2010.05.21 -
Microsoft 1.5802 2010.05.21 -
NOD32 5136 2010.05.21 -
Norman 6.04.12 2010.05.21 -
nProtect 2010-05-21.01 2010.05.21 Worm/W32.Bagle.7168
Panda 10.0.2.7 2010.05.21 -
PCTools 7.0.3.5 2010.05.21 Trojan-Downloader.Bagle
Prevx 3.0 2010.05.21 Medium Risk Malware
Rising 22.48.04.04 2010.05.21 Trojan.Win32.Generic.51E920C9
Sophos 4.53.0 2010.05.21 -
Sunbelt 6334 2010.05.21 Trojan.Win32.Generic!BT
Symantec 20101.1.0.89 2010.05.21 -
TheHacker 6.5.2.0.284 2010.05.20 Trojan/Rootkit.gen
TrendMicro 9.120.0.1004 2010.05.21 -
TrendMicro-HouseCall 9.120.0.1004 2010.05.21 -
VBA32 3.12.12.5 2010.05.21 -
ViRobot 2010.5.20.2326 2010.05.21 Trojan.Win32.Bagle.7168
VirusBuster 5.0.27.0 2010.05.21 -
Rozšiřující informace
File size: 7168 bytes
MD5...: 524d8d450622db4a7875b111c299a76b
SHA1..: fe22db1e0b864e77baeca5520c05c42431784fd8
SHA256: 7ae9aae77884ac0baa2f8168b3ed4de0c0c9834a42d8e5a775f47a2c66cec237
ssdeep: 96:wQQovxXZHQ7SioGfU2zSVeUvaUOPLNI8n1Sw1xJj0o:w+PQ/oV2z2eaaUOW8R
I
PEiD..: -
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x1990
timedatestamp.....: 0x4788d40f (Sat Jan 12 14:51:59 2008)
machinetype.......: 0x14c (I386)
( 6 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x9d4 0xa00 5.78 b65e29f81689fbde8b3d49891e4011de
.rdata 0x2000 0x144 0x200 2.93 4c5e3a3a7d9a4ad57704be677563d7ca
.data 0x3000 0x20 0x200 0.26 4f4f5306b935a3d853c02c6c206aa506
INIT 0x4000 0x292 0x400 3.74 a077364ef66a2ed1ad88d7557f37474a
.rsrc 0x5000 0x300 0x400 2.56 85021f99de084aa59772f678fd7aaf3a
.reloc 0x6000 0x106 0x200 2.65 173202905f3e2cfaecaf72eb73fd3c1c
( 2 imports )
> ntoskrnl.exe: MmIsAddressValid, MmProbeAndLockPages, MmMapLockedPagesSpecifyCache, MmBuildMdlForNonPagedPool, IoAllocateMdl, _except_handler3, ObfDereferenceObject, ObReferenceObjectByName, MmUnlockPages, RtlInitUnicodeString, KeServiceDescriptorTable, PsGetCurrentProcessId, IoGetCurrentProcess, IoDeleteDevice, IoCreateSymbolicLink, IoCreateDevice, IoDeleteSymbolicLink, IoFreeMdl, IoDriverObjectType, IofCompleteRequest
> HAL.dll: KfLowerIrql, KeRaiseIrqlToDpcLevel
( 0 exports )
RDS...: NSRL Reference Data Set
-
pdfid.: -
trid..: Win32 Executable Generic (68.0%)
Generic Win/DOS Executable (15.9%)
DOS Executable Generic (15.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
ThreatExpert info: <a href='http://www.threatexpert.com/report.aspx ... 11c299a76b' target='_blank'>http://www.threatexpert.com/report.aspx ... 299a76b</a>
sigcheck:
publisher....: n/a
copyright....: Zaitsev Oleg, Copyright (C) 2004-2006
product......: AVZ Driver
description..: AVZ Driver
original name: avz.sys
internal name: avz.sys
file version.: 1, 2, 0, 0
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
<a href='http://info.prevx.com/aboutprogramtext. ... 00CCFB2D16' target='_blank'>http://info.prevx.com/aboutprogramtext. ... CFB2D16</a>
VAROVÁNÍ: VirusTotal je služba poskytovaná zdarma společnosti Hispasec Sistemas. Kvalita výsledků není nijak zaručena. Výsledky jsou závislé na tvůrci daného produktu. Vysledky testů nemusí být 100% správné. Tyto výsledky nemusí znamenat, že daný soubor je infikován, nebo čistý!