Перейти к содержанию

Рекомендуемые сообщения

Опубликовано

0 VT Community user(s) with a total of 0 reputation credit(s) say(s) this sample is goodware. 0 VT Community user(s) with a total of 0 reputation credit(s) say(s) this sample is malware.

File name:

avz.exe

Submission date:

2011-11-29 05:54:47 (UTC)

Current status:

queued (#46) queued (#14) analysing finished

Result:

1/ 43 (2.3%)

 

VT Community

 

not reviewed

Safety score: -

Compact

Print results

Antivirus Version Last Update Result

AhnLab-V3 2011.11.29.00 2011.11.29 -

AntiVir 7.11.18.114 2011.11.29 -

Antiy-AVL 2.0.3.7 2011.11.29 -

Avast 6.0.1289.0 2011.11.28 -

AVG 10.0.0.1190 2011.11.28 -

BitDefender 7.2 2011.11.29 -

ByteHero 1.0.0.1 2011.11.14 -

CAT-QuickHeal 12.00 2011.11.29 -

ClamAV 0.97.3.0 2011.11.29 -

Commtouch 5.3.2.6 2011.11.29 -

Comodo 10793 2011.11.29 -

DrWeb 5.0.2.03300 2011.11.29 -

Emsisoft 5.1.0.11 2011.11.29 -

eSafe 7.0.17.0 2011.11.28 -

eTrust-Vet 37.0.9591 2011.11.28 -

F-Prot 4.6.5.141 2011.11.28 -

F-Secure 9.0.16440.0 2011.11.29 -

Fortinet 4.3.370.0 2011.11.29 -

GData 22 2011.11.29 -

Ikarus T3.1.1.109.0 2011.11.29 -

Jiangmin 13.0.900 2011.11.28 -

K7AntiVirus 9.119.5555 2011.11.28 -

Kaspersky 9.0.0.837 2011.11.29 -

McAfee 5.400.0.1158 2011.11.29 -

McAfee-GW-Edition 2010.1D 2011.11.28 -

Microsoft 1.7801 2011.11.29 -

NOD32 6667 2011.11.29 -

Norman 6.07.13 2011.11.28 -

nProtect 2011-11-28.02 2011.11.28 -

Panda 10.0.3.5 2011.11.28 -

PCTools 8.0.0.5 2011.11.29 -

Prevx 3.0 2011.11.29 -

Rising 23.86.01.01 2011.11.29 Suspicious

Sophos 4.71.0 2011.11.29 -

SUPERAntiSpyware 4.40.0.1006 2011.11.29 -

Symantec 20111.2.0.82 2011.11.29 -

TheHacker 6.7.0.1.350 2011.11.27 -

TrendMicro 9.500.0.1008 2011.11.29 -

TrendMicro-HouseCall 9.500.0.1008 2011.11.29 -

VBA32 3.12.16.4 2011.11.28 -

VIPRE 11174 2011.11.29 -

ViRobot 2011.11.29.4798 2011.11.29 -

VirusBuster 14.1.89.0 2011.11.28 -

Additional information

Show all

MD5 : 319fc947b4f21ec6d4234f0356a8a124

SHA1 : c413f882f4eff8191732e437b8dcf41e1dfc80a6

SHA256: fda71514a6f029e8a71c62e954c8784a28027ea4ea44696a64d50d705c8151c2

ssdeep: 12288:SY50RRgCQeiwhzX9SZX3jA6ZX/lovoTIYR9XzAuuVYhitXJ2eCQ:l04TCiB3c6Zv6vyzA

uuVdtZP

File size : 774144 bytes

First seen: 2011-11-29 05:54:47

Last seen : 2011-11-29 05:54:47

TrID:

UPX compressed Win32 Executable (42.6%)

Win32 EXE Yoda's Crypter (37.0%)

Win32 Executable Generic (11.8%)

Win16/32 Executable Delphi generic (2.8%)

Generic Win/DOS Executable (2.7%)

sigcheck:

publisher....: ___________ ___________, 2007-2010

copyright....: ____________ _______ AVZ

product......: ____________ _______ AVZ

description..: ____________ _______ AVZ

original name: avz.exe

internal name: ____________ _______ AVZ

file version.: 4.35.0.1

comments.....: n/a

signers......: -

signing date.: -

verified.....: Unsigned

packers (F-Prot): UPX

PEInfo: PE structure information

 

[[ basic data ]]

entrypointaddress: 0x29C990

timedatestamp....: 0x3E09F169 (Wed Dec 25 17:56:57 2002)

machinetype......: 0x14c (I386)

 

[[ 3 section(s) ]]

name, viradd, virsiz, rawdsiz, ntropy, md5

UPX0, 0x1000, 0x1E9000, 0x0, 0.00, d41d8cd98f00b204e9800998ecf8427e

UPX1, 0x1EA000, 0xB3000, 0xB2C00, 7.92, 35f7a2961d7b2969b51dc43e7f49d8ad

.rsrc, 0x29D000, 0x11000, 0xA000, 3.25, f3d6911ec0658ea7352e54b2d2b35ee6

 

[[ 13 import(s) ]]

KERNEL32.DLL: LoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess

advapi32.dll: FreeSid

comctl32.dll: ImageList_Add

comdlg32.dll: PrintDlgA

gdi32.dll: SaveDC

ole32.dll: CoInitialize

oleaut32.dll: VariantCopy

shell32.dll: DragFinish

user32.dll: GetDC

version.dll: VerQueryValueA

wininet.dll: InternetOpenA

winspool.drv: OpenPrinterA

wsock32.dll: htons

ExifTool:

file metadata

CharacterSet: Windows, Cyrillic

CodeSize: 733184

CompanyName: , 2007-2010

EntryPoint: 0x29c990

FileDescription: AVZ

FileFlagsMask: 0x003f

FileOS: Win32

FileSize: 756 kB

FileSubtype: 0

FileType: Win32 EXE

FileVersion: 4.35.0.1

FileVersionNumber: 4.35.0.1

ImageVersion: 0.0

InitializedDataSize: 40960

InternalName: AVZ

LanguageCode: Russian

LegalCopyright: AVZ

LegalTrademarks:

LinkerVersion: 2.25

MIMEType: application/octet-stream

MachineType: Intel 386 or later, and compatibles

OSVersion: 4.0

ObjectFileType: Executable application

OriginalFilename: avz.exe

PEType: PE32

ProductName: AVZ

ProductVersion: 4.35

ProductVersionNumber: 4.35.0.1

Subsystem: Windows GUI

SubsystemVersion: 4.0

TimeStamp: 2002:12:25 18:56:57+01:00

UninitializedDataSize: 2002944

Symantec reputation:Suspicious.Insight

 

VT Community

 

0

 

This file has never been reviewed by any VT Community member. Be the first one to comment on it!

 

VirusTotal Team

Опубликовано

Susumi,

требовалась ссылка, а не вся страница с вирустотал. :)

 

перекачайте наново AVZ по данной ссылке, распакуйте, обновите базы и переделайте логи AVZ.

а также - сделайте наконец-то логи RSIT

 

при следующем (восьмом!) игнорировании данной рекомендации я вынужден буду отказаться от помощи лично Вам. уже просто не смешно.

Пожалуйста, войдите, чтобы комментировать

Вы сможете оставить комментарий после входа в



Войти
×
×
  • Создать...