---> KNiGHT eMPiRe .eXe SoaC iÇİN
Dosya SOACS.exe alýndýðý zaman 2009.09.27 13:49:11 (UTC)
şimdiki Durumu: tamamlandý
Sonuç: 21/41 (51.22%)
Compact Formatlanmýş
Sonuçlarý yazdýr. Sonuçlarý yazdýr.
Antivirüs Versiyon Son Güncelleştirme Sonuç
a-squared 4.5.0.24 2009.09.27 Virus.Win32.IRCBot!IK
AhnLab-V3 5.0.0.2 2009.09.26 -
AntiVir 7.9.1.25 2009.09.25 TR/Dropper.Gen
Antiy-AVL 2.0.3.7 2009.09.27 -
Authentium 5.1.2.4 2009.09.26 W32/Heuristic-210!Eldorado
Avast 4.8.1351.0 2009.09.26 Win32:Trojan-gen {Other}
AVG 8.5.0.412 2009.09.27 SHeur2.AXIK
BitDefender 7.2 2009.09.27 Application.Generic.193422
CAT-QuickHeal 10.00 2009.09.26 Trojan.Agent.ATV
ClamAV 0.94.1 2009.09.27 -
Comodo 2451 2009.09.27 UnclassifiedMalware
DrWeb 5.0.0.12182 2009.09.27 -
eSafe 7.0.17.0 2009.09.24 Win32.TRDropper
eTrust-Vet 31.6.6763 2009.09.27 -
F-Prot 4.5.1.85 2009.09.26 W32/Heuristic-210!Eldorado
F-Secure 8.0.14470.0 2009.09.26 -
Fortinet 3.120.0.0 2009.09.27 PossibleThreat
GData 19 2009.09.27 Application.Generic.193422
Ikarus T3.1.1.72.0 2009.09.27 Virus.Win32.IRCBot
Jiangmin 11.0.800 2009.09.27 -
K7AntiVirus 7.10.855 2009.09.26 Trojan.Win32.Malware.1
Kaspersky 7.0.0.125 2009.09.27 -
McAfee 5753 2009.09.26 -
McAfee+Artemis 5753 2009.09.26 Artemis!184DB1A2FD01
McAfee-GW-Edition 6.8.5 2009.09.27 Heuristic.LooksLike.Win32.Suspicious.B!85
Microsoft 1.5005 2009.09.23 -
NOD32 4461 2009.09.27 -
Norman 6.01.09 2009.09.26 W32/Malware.IHHD
nProtect 2009.1.8.0 2009.09.27 Trojan/W32.Agent.73016
Panda 10.0.2.2 2009.09.27 Suspicious file
PCTools 4.4.2.0 2009.09.27 -
Prevx 3.0 2009.09.27 -
Rising 21.48.62.00 2009.09.27 -
Sophos 4.45.0 2009.09.27 Mal/Generic-A
Sunbelt 3.2.1858.2 2009.09.26 -
Symantec 1.4.4.12 2009.09.27 Trojan Horse
TheHacker 6.5.0.2.019 2009.09.26 -
TrendMicro 8.950.0.1094 2009.09.25 -
VBA32 3.12.10.11 2009.09.25 -
ViRobot 2009.9.26.1958 2009.09.26 -
VirusBuster 4.6.5.0 2009.09.26 -
Ýlave Bilgiler
File size: 73016 bytes
MD5 : 184db1a2fd01bcbe1f3cb15ae3f2092d
SHA1 : 69200101585bdcc47736cc52639fcd9451d0c663
SHA256: 001319d855731080f221facb7cf95e42a295116a816dafe167a19cc11ca10dd9
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x1000
timedatestamp.....: 0x4A89B21B (Mon Aug 17 21:40:11 2009)
machinetype.......: 0x14C (Intel I386)
( 2 sections )
name viradd virsiz rawdsiz ntrpy md5
.ASPack 0x1000 0x18000 0x200 0.55 db4ebfae73d41daa7ccdae6f0afc5a2c
.ASPack 0x19000 0x15A40 0x11938 7.60 2c4b421bbedb24d8e1ae97a741c34ed6
( 1 imports )
> kernel32.dll: LoadLibraryA, GetProcAddress, VirtualAlloc, VirtualProtect, VirtualFree, GetModuleHandleA
( 0 exports )
TrID : File type identification
Win32 EXE Yoda's Crypter (56.9%)
Win32 Executable Generic (18.2%)
Win32 Dynamic Link Library (generic) (16.2%)
Generic Win/DOS Executable (4.2%)
DOS Executable Generic (4.2%)
ssdeep: 1536
hMcn5hcY9+w1GWJ3K399q+hczTLu7GSjpwpDLGkxP34+ad
hME5hx9+wk39RKznLSgDjxw+ad
PEiD : ASPack v2.12
packers (Kaspersky): PE_Patch.RLPack, RLPack
packers (F-Prot): Malware_Prot.AJ
packers (Authentium): Malware_Prot.AJ
RDS : NSRL Reference Data Set
-