| Clique sur le menu Demarrer /Panneau de configuration/Options des dossiers/ puis dans l'onglet Affichage
- Coche Afficher les fichiers et dossiers cachés
- Décoche Masquer les extensions des fichiers dont le type est connu
- Décoche Masquer les fichiers protégés du système d'exploitation (recommandé)
clique sur Appliquer, puis OK.
N'oublie pas de recacher à nouveau les fichiers cachés et protégés du système d'exploitation en fin de désinfection, c'est important
Fais analyser le(s) fichier(s) suivants sur Virustotal :
http://www.virustotal.com/flash/index_en.html
* Clique sur Parcourir en haut, choisis Poste de travail et cherche ce fichier :
C:\WINDOWS\system32\wsimd.dll
* Clique maintenant sur Envoyer le fichier. et laisse travailler tant que "Situation actuelle : en cours d'analyse" est affiché.
* Il est possible que le fichier soit mis en file d'attente en raison d'un grand nombre de demandes d'analyses. En ce cas, il te faudra patienter sans actualiser la page.
* Lorsque l'analyse est terminée ("Situation actuelle: terminé"), clique sur Formaté
* Une nouvelle fenêtre de ton navigateur va apparaître
* Clique alors sur les deux fleches
* Fais un clic droit sur la page, et choisis Sélectionner tout, puis copier
* Enfin colle le résultat dans ta prochaine réponse.
* Fais la même chose avec ces fichiers :
C:\WINDOWS\system32\wsfwDS.dll
C:\WINDOWS\system32\dsaNac.dll
C:\WINDOWS\system32\dsa.dll
Note : Pour analyser un autre fichier, clique en bas sur Autre fichier.
On vous aide ailleurs ? signalez-le !!!!!
Mettre en resolu pour les autres Merci
®© ----™g3и-н@¢км@и™---- ©® Répondre à gen-hackman | Fichier wsimd.dll reçu le 2009.02.19 00:56:13 (CET)Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 237636 bytes
MD5...: 83ab8f284222998a31875d81b633aa47
SHA1..: 24e526aedf7e1abc1ae2c04ec38c7895b18b6d44
SHA256: 843a1ce24051c67851e245e25027c12b3f552136dae9afe197bb86b6050cdc86
SHA512: 27ad3b91231e8aa761b1b241105ac8d34bf01e04cbb0dbb367b07ca0cfee9915<BR>c637ca7f2f4ba9d44e197e228e68d41620eda41d4942f14b2a3530b268d6ef2d
ssdeep: 3072:yQ55Pa+wFMaC81BlwJLH5QP2qTFY1ub027yVrddeqRIU1O5c3NFxhSAIIR:<BR>yQ58l1BCJtQP2GGVr9FdP<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Windows OCX File (63.5%)<BR>Win32 Executable MS Visual C++ (generic) (19.3%)<BR>Windows Screen Saver (6.7%)<BR>Win32 Executable Generic (4.3%)<BR>Win32 Dynamic Link Library (generic) (3.8%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x10007848<BR>timedatestamp.....: 0x44efb89e (Sat Aug 26 02:57:34 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x23e0e 0x24000 6.60 e6f825f551257ca4a65d0f7babc63110<BR>.rdata 0x25000 0x803a 0x9000 4.58 6e7b4f7855b9e099a6f1102cc6f60dfd<BR>.data 0x2e000 0x8732 0x5000 2.64 c55815c11c8573e977be765c7bec737e<BR>.rsrc 0x37000 0x29f8 0x3000 3.59 8ec8e8f60d8cc2351dcac63d91b7ae9d<BR>.reloc 0x3a000 0x309e 0x4000 5.56 629ff7753bff5017922ef948029ebbaf<BR><BR>( 9 imports ) <BR>> VERSION.dll: GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW<BR>> KERNEL32.dll: lstrcmpiW, GlobalFlags, GetPrivateProfileIntW, GetPrivateProfileStringW, WritePrivateProfileStringW, GetCurrentDirectoryW, SetFilePointer, FlushFileBuffers, LockFile, UnlockFile, SetEndOfFile, MoveFileW, DeleteFileW, FindClose, FindFirstFileW, GetVolumeInformationW, GetFullPathNameW, GetStringTypeExW, GetThreadLocale, GetShortPathNameW, GetFileAttributesW, GetFileSize, GetFileTime, LocalFileTimeToFileTime, SystemTimeToFileTime, SetFileTime, SetFileAttributesW, FileTimeToSystemTime, FileTimeToLocalFileTime, RtlUnwind, RaiseException, GetCommandLineA, HeapAlloc, HeapFree, CreateThread, ExitThread, ExitProcess, TerminateProcess, HeapSize, HeapReAlloc, GetTimeZoneInformation, GetSystemTime, GetLocalTime, SetUnhandledExceptionFilter, FatalAppExitA, GetProcessVersion, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, LCMapStringA, LCMapStringW, VirtualAlloc, IsBadWritePtr, UnhandledExceptionFilter, IsBadReadPtr, IsBadCodePtr, GetCPInfo, IsValidLocale, IsValidCodePage, GetLocaleInfoA, EnumSystemLocalesA, GetUserDefaultLCID, GetACP, GetOEMCP, GetStringTypeA, GetStringTypeW, SetConsoleCtrlHandler, SetStdHandle, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, LoadLibraryA, InterlockedDecrement, InterlockedIncrement, InitializeCriticalSection, DeleteCriticalSection, CloseHandle, DeviceIoControl, FindResourceW, LoadResource, LockResource, GlobalAddAtomW, GlobalFindAtomW, GetModuleHandleW, MulDiv, GetModuleHandleA, SetLastError, GetVersion, lstrcpynW, lstrcpyW, lstrcatW, SetErrorMode, TlsGetValue, LocalReAlloc, SetEvent, TlsSetValue, GlobalReAlloc, TlsFree, GlobalHandle, GlobalUnlock, GlobalFree, TlsAlloc, LocalAlloc, GlobalLock, lstrcmpW, GlobalAlloc, GlobalDeleteAtom, lstrcmpA, lstrcmpiA, GetCurrentThread, SuspendThread, GetCurrentThreadId, SetThreadPriority, FormatMessageW, LocalFree, CreateEventW, CreateMutexW, ReleaseSemaphore, CreateSemaphoreW, MultiByteToWideChar, WideCharToMultiByte, lstrlenA, lstrlenW, GetSystemDirectoryW, LoadLibraryW, GetProcAddress, FreeLibrary, GetVersionExW, WaitForSingleObject, GetCurrentProcess, DuplicateHandle, ResumeThread, CreateFileW, GetModuleFileNameW, LeaveCriticalSection, EnterCriticalSection, WriteFile, ReadFile, GetOverlappedResult, CancelIo, WaitForMultipleObjects, ReleaseMutex, GetLastError, Sleep, ResetEvent<BR>> USER32.dll: RegisterClassW, GetClassInfoW, wsprintfW, WinHelpW, GetCapture, IsChild, GetTopWindow, SetScrollPos, GetScrollPos, SetScrollRange, GetScrollRange, ShowScrollBar, SetScrollInfo, GetScrollInfo, ScrollWindow, EndDeferWindowPos, CopyRect, BeginDeferWindowPos, GetClientRect, DeferWindowPos, EqualRect, AdjustWindowRectEx, SetFocus, IsWindow, SetActiveWindow, GetSysColor, MapWindowPoints, SendDlgItemMessageA, SendDlgItemMessageW, UpdateWindow, LoadIconW, CheckDlgButton, CheckRadioButton, GetDlgItemInt, GetDlgItemTextW, SetDlgItemInt, SetDlgItemTextW, IsDlgButtonChecked, ScrollWindowEx, IsDialogMessageW, SetWindowTextW, MoveWindow, ShowWindow, LoadCursorW, GetSysColorBrush, GetClassNameW, PtInRect, GetDesktopWindow, InsertMenuW, DeleteMenu, GetMenuStringW, DestroyMenu, CharUpperW, GetMenu, GetMenuItemCount, GetSubMenu, GetMenuItemID, TrackPopupMenu, SetWindowPlacement, GetDlgItem, GetWindowTextLengthW, GetWindowTextW, GetDlgCtrlID, DefWindowProcW, DestroyWindow, CreateWindowExW, SetPropW, GetPropW, CallWindowProcW, RemovePropW, GetMessageTime, GetMessagePos, GetForegroundWindow, SetForegroundWindow, GetWindow, SetWindowLongW, SetWindowPos, RegisterWindowMessageW, OffsetRect, IntersectRect, SystemParametersInfoW, IsIconic, GetWindowPlacement, GetWindowRect, GetSystemMetrics, GrayStringW, DrawTextW, TabbedTextOutW, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, GetDC, ClientToScreen, ScreenToClient, LoadStringW, UnregisterClassW, UnhookWindowsHookEx, GetMenuCheckMarkDimensions, LoadBitmapW, GetMenuState, SetMenuItemBitmaps, CheckMenuItem, EnableMenuItem, GetFocus, GetParent, GetLastActivePopup, IsWindowEnabled, GetWindowLongW, MessageBoxW, EnableWindow, SetCursor, ShowOwnedPopups, PostMessageW, PostQuitMessage, GetMessageW, TranslateMessage, DispatchMessageW, GetActiveWindow, SendMessageW, GetKeyState, CallNextHookEx, ValidateRect, IsWindowVisible, PeekMessageW, GetCursorPos, SetWindowsHookExW, MsgWaitForMultipleObjects, ModifyMenuW, GetNextDlgTabItem<BR>> GDI32.dll: CreateBitmap, SelectObject, GetStockObject, SelectPalette, SetBkColor, SetBkMode, SetPolyFillMode, SetROP2, SetStretchBltMode, SetTextColor, SetMapMode, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowOrgEx, OffsetWindowOrgEx, SetWindowExtEx, ScaleWindowExtEx, GetClipBox, SelectClipRgn, ExcludeClipRect, IntersectClipRect, OffsetClipRgn, MoveToEx, LineTo, SetTextAlign, SetTextJustification, SetTextCharacterExtra, SetMapperFlags, GetCurrentPositionEx, ArcTo, SetArcDirection, PolyDraw, PolylineTo, SetColorAdjustment, PolyBezierTo, DeleteObject, GetClipRgn, CreateRectRgn, SelectClipPath, ExtSelectClipRgn, PlayMetaFileRecord, GetObjectType, SaveDC, EnumMetaFile, PlayMetaFile, GetDeviceCaps, GetViewportExtEx, GetWindowExtEx, CreatePen, ExtCreatePen, CreateSolidBrush, CreateHatchBrush, CreatePatternBrush, CreateDIBPatternBrushPt, PtVisible, RectVisible, TextOutW, ExtTextOutW, Escape, GetDCOrgEx, GetObjectW, StartDocW, DeleteDC, RestoreDC<BR>> comdlg32.dll: GetFileTitleW<BR>> WINSPOOL.DRV: ClosePrinter, DocumentPropertiesW, OpenPrinterW<BR>> ADVAPI32.dll: RegQueryValueExW, RegOpenKeyW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW<BR>> SHELL32.dll: SHGetFileInfoW, DragAcceptFiles<BR>> COMCTL32.dll: -<BR><BR>( 1 exports ) <BR>CreateImdMain<BR>
Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 237636 bytes
MD5...: 83ab8f284222998a31875d81b633aa47
SHA1..: 24e526aedf7e1abc1ae2c04ec38c7895b18b6d44
SHA256: 843a1ce24051c67851e245e25027c12b3f552136dae9afe197bb86b6050cdc86
SHA512: 27ad3b91231e8aa761b1b241105ac8d34bf01e04cbb0dbb367b07ca0cfee9915<BR>c637ca7f2f4ba9d44e197e228e68d41620eda41d4942f14b2a3530b268d6ef2d
ssdeep: 3072:yQ55Pa+wFMaC81BlwJLH5QP2qTFY1ub027yVrddeqRIU1O5c3NFxhSAIIR:<BR>yQ58l1BCJtQP2GGVr9FdP<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Windows OCX File (63.5%)<BR>Win32 Executable MS Visual C++ (generic) (19.3%)<BR>Windows Screen Saver (6.7%)<BR>Win32 Executable Generic (4.3%)<BR>Win32 Dynamic Link Library (generic) (3.8%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x10007848<BR>timedatestamp.....: 0x44efb89e (Sat Aug 26 02:57:34 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x23e0e 0x24000 6.60 e6f825f551257ca4a65d0f7babc63110<BR>.rdata 0x25000 0x803a 0x9000 4.58 6e7b4f7855b9e099a6f1102cc6f60dfd<BR>.data 0x2e000 0x8732 0x5000 2.64 c55815c11c8573e977be765c7bec737e<BR>.rsrc 0x37000 0x29f8 0x3000 3.59 8ec8e8f60d8cc2351dcac63d91b7ae9d<BR>.reloc 0x3a000 0x309e 0x4000 5.56 629ff7753bff5017922ef948029ebbaf<BR><BR>( 9 imports ) <BR>> VERSION.dll: GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW<BR>> KERNEL32.dll: lstrcmpiW, GlobalFlags, GetPrivateProfileIntW, GetPrivateProfileStringW, WritePrivateProfileStringW, GetCurrentDirectoryW, SetFilePointer, FlushFileBuffers, LockFile, UnlockFile, SetEndOfFile, MoveFileW, DeleteFileW, FindClose, FindFirstFileW, GetVolumeInformationW, GetFullPathNameW, GetStringTypeExW, GetThreadLocale, GetShortPathNameW, GetFileAttributesW, GetFileSize, GetFileTime, LocalFileTimeToFileTime, SystemTimeToFileTime, SetFileTime, SetFileAttributesW, FileTimeToSystemTime, FileTimeToLocalFileTime, RtlUnwind, RaiseException, GetCommandLineA, HeapAlloc, HeapFree, CreateThread, ExitThread, ExitProcess, TerminateProcess, HeapSize, HeapReAlloc, GetTimeZoneInformation, GetSystemTime, GetLocalTime, SetUnhandledExceptionFilter, FatalAppExitA, GetProcessVersion, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, LCMapStringA, LCMapStringW, VirtualAlloc, IsBadWritePtr, UnhandledExceptionFilter, IsBadReadPtr, IsBadCodePtr, GetCPInfo, IsValidLocale, IsValidCodePage, GetLocaleInfoA, EnumSystemLocalesA, GetUserDefaultLCID, GetACP, GetOEMCP, GetStringTypeA, GetStringTypeW, SetConsoleCtrlHandler, SetStdHandle, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, LoadLibraryA, InterlockedDecrement, InterlockedIncrement, InitializeCriticalSection, DeleteCriticalSection, CloseHandle, DeviceIoControl, FindResourceW, LoadResource, LockResource, GlobalAddAtomW, GlobalFindAtomW, GetModuleHandleW, MulDiv, GetModuleHandleA, SetLastError, GetVersion, lstrcpynW, lstrcpyW, lstrcatW, SetErrorMode, TlsGetValue, LocalReAlloc, SetEvent, TlsSetValue, GlobalReAlloc, TlsFree, GlobalHandle, GlobalUnlock, GlobalFree, TlsAlloc, LocalAlloc, GlobalLock, lstrcmpW, GlobalAlloc, GlobalDeleteAtom, lstrcmpA, lstrcmpiA, GetCurrentThread, SuspendThread, GetCurrentThreadId, SetThreadPriority, FormatMessageW, LocalFree, CreateEventW, CreateMutexW, ReleaseSemaphore, CreateSemaphoreW, MultiByteToWideChar, WideCharToMultiByte, lstrlenA, lstrlenW, GetSystemDirectoryW, LoadLibraryW, GetProcAddress, FreeLibrary, GetVersionExW, WaitForSingleObject, GetCurrentProcess, DuplicateHandle, ResumeThread, CreateFileW, GetModuleFileNameW, LeaveCriticalSection, EnterCriticalSection, WriteFile, ReadFile, GetOverlappedResult, CancelIo, WaitForMultipleObjects, ReleaseMutex, GetLastError, Sleep, ResetEvent<BR>> USER32.dll: RegisterClassW, GetClassInfoW, wsprintfW, WinHelpW, GetCapture, IsChild, GetTopWindow, SetScrollPos, GetScrollPos, SetScrollRange, GetScrollRange, ShowScrollBar, SetScrollInfo, GetScrollInfo, ScrollWindow, EndDeferWindowPos, CopyRect, BeginDeferWindowPos, GetClientRect, DeferWindowPos, EqualRect, AdjustWindowRectEx, SetFocus, IsWindow, SetActiveWindow, GetSysColor, MapWindowPoints, SendDlgItemMessageA, SendDlgItemMessageW, UpdateWindow, LoadIconW, CheckDlgButton, CheckRadioButton, GetDlgItemInt, GetDlgItemTextW, SetDlgItemInt, SetDlgItemTextW, IsDlgButtonChecked, ScrollWindowEx, IsDialogMessageW, SetWindowTextW, MoveWindow, ShowWindow, LoadCursorW, GetSysColorBrush, GetClassNameW, PtInRect, GetDesktopWindow, InsertMenuW, DeleteMenu, GetMenuStringW, DestroyMenu, CharUpperW, GetMenu, GetMenuItemCount, GetSubMenu, GetMenuItemID, TrackPopupMenu, SetWindowPlacement, GetDlgItem, GetWindowTextLengthW, GetWindowTextW, GetDlgCtrlID, DefWindowProcW, DestroyWindow, CreateWindowExW, SetPropW, GetPropW, CallWindowProcW, RemovePropW, GetMessageTime, GetMessagePos, GetForegroundWindow, SetForegroundWindow, GetWindow, SetWindowLongW, SetWindowPos, RegisterWindowMessageW, OffsetRect, IntersectRect, SystemParametersInfoW, IsIconic, GetWindowPlacement, GetWindowRect, GetSystemMetrics, GrayStringW, DrawTextW, TabbedTextOutW, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, GetDC, ClientToScreen, ScreenToClient, LoadStringW, UnregisterClassW, UnhookWindowsHookEx, GetMenuCheckMarkDimensions, LoadBitmapW, GetMenuState, SetMenuItemBitmaps, CheckMenuItem, EnableMenuItem, GetFocus, GetParent, GetLastActivePopup, IsWindowEnabled, GetWindowLongW, MessageBoxW, EnableWindow, SetCursor, ShowOwnedPopups, PostMessageW, PostQuitMessage, GetMessageW, TranslateMessage, DispatchMessageW, GetActiveWindow, SendMessageW, GetKeyState, CallNextHookEx, ValidateRect, IsWindowVisible, PeekMessageW, GetCursorPos, SetWindowsHookExW, MsgWaitForMultipleObjects, ModifyMenuW, GetNextDlgTabItem<BR>> GDI32.dll: CreateBitmap, SelectObject, GetStockObject, SelectPalette, SetBkColor, SetBkMode, SetPolyFillMode, SetROP2, SetStretchBltMode, SetTextColor, SetMapMode, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowOrgEx, OffsetWindowOrgEx, SetWindowExtEx, ScaleWindowExtEx, GetClipBox, SelectClipRgn, ExcludeClipRect, IntersectClipRect, OffsetClipRgn, MoveToEx, LineTo, SetTextAlign, SetTextJustification, SetTextCharacterExtra, SetMapperFlags, GetCurrentPositionEx, ArcTo, SetArcDirection, PolyDraw, PolylineTo, SetColorAdjustment, PolyBezierTo, DeleteObject, GetClipRgn, CreateRectRgn, SelectClipPath, ExtSelectClipRgn, PlayMetaFileRecord, GetObjectType, SaveDC, EnumMetaFile, PlayMetaFile, GetDeviceCaps, GetViewportExtEx, GetWindowExtEx, CreatePen, ExtCreatePen, CreateSolidBrush, CreateHatchBrush, CreatePatternBrush, CreateDIBPatternBrushPt, PtVisible, RectVisible, TextOutW, ExtTextOutW, Escape, GetDCOrgEx, GetObjectW, StartDocW, DeleteDC, RestoreDC<BR>> comdlg32.dll: GetFileTitleW<BR>> WINSPOOL.DRV: ClosePrinter, DocumentPropertiesW, OpenPrinterW<BR>> ADVAPI32.dll: RegQueryValueExW, RegOpenKeyW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW<BR>> SHELL32.dll: SHGetFileInfoW, DragAcceptFiles<BR>> COMCTL32.dll: -<BR><BR>( 1 exports ) <BR>CreateImdMain<BR> Répondre à bigjal |
| Fichier wsimd.dll reçu le 2009.02.19 00:56:13 (CET)Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 237636 bytes
MD5...: 83ab8f284222998a31875d81b633aa47
SHA1..: 24e526aedf7e1abc1ae2c04ec38c7895b18b6d44
SHA256: 843a1ce24051c67851e245e25027c12b3f552136dae9afe197bb86b6050cdc86
SHA512: 27ad3b91231e8aa761b1b241105ac8d34bf01e04cbb0dbb367b07ca0cfee9915<BR>c637ca7f2f4ba9d44e197e228e68d41620eda41d4942f14b2a3530b268d6ef2d
ssdeep: 3072:yQ55Pa+wFMaC81BlwJLH5QP2qTFY1ub027yVrddeqRIU1O5c3NFxhSAIIR:<BR>yQ58l1BCJtQP2GGVr9FdP<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Windows OCX File (63.5%)<BR>Win32 Executable MS Visual C++ (generic) (19.3%)<BR>Windows Screen Saver (6.7%)<BR>Win32 Executable Generic (4.3%)<BR>Win32 Dynamic Link Library (generic) (3.8%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x10007848<BR>timedatestamp.....: 0x44efb89e (Sat Aug 26 02:57:34 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x23e0e 0x24000 6.60 e6f825f551257ca4a65d0f7babc63110<BR>.rdata 0x25000 0x803a 0x9000 4.58 6e7b4f7855b9e099a6f1102cc6f60dfd<BR>.data 0x2e000 0x8732 0x5000 2.64 c55815c11c8573e977be765c7bec737e<BR>.rsrc 0x37000 0x29f8 0x3000 3.59 8ec8e8f60d8cc2351dcac63d91b7ae9d<BR>.reloc 0x3a000 0x309e 0x4000 5.56 629ff7753bff5017922ef948029ebbaf<BR><BR>( 9 imports ) <BR>> VERSION.dll: GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW<BR>> KERNEL32.dll: lstrcmpiW, GlobalFlags, GetPrivateProfileIntW, GetPrivateProfileStringW, WritePrivateProfileStringW, GetCurrentDirectoryW, SetFilePointer, FlushFileBuffers, LockFile, UnlockFile, SetEndOfFile, MoveFileW, DeleteFileW, FindClose, FindFirstFileW, GetVolumeInformationW, GetFullPathNameW, GetStringTypeExW, GetThreadLocale, GetShortPathNameW, GetFileAttributesW, GetFileSize, GetFileTime, LocalFileTimeToFileTime, SystemTimeToFileTime, SetFileTime, SetFileAttributesW, FileTimeToSystemTime, FileTimeToLocalFileTime, RtlUnwind, RaiseException, GetCommandLineA, HeapAlloc, HeapFree, CreateThread, ExitThread, ExitProcess, TerminateProcess, HeapSize, HeapReAlloc, GetTimeZoneInformation, GetSystemTime, GetLocalTime, SetUnhandledExceptionFilter, FatalAppExitA, GetProcessVersion, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, LCMapStringA, LCMapStringW, VirtualAlloc, IsBadWritePtr, UnhandledExceptionFilter, IsBadReadPtr, IsBadCodePtr, GetCPInfo, IsValidLocale, IsValidCodePage, GetLocaleInfoA, EnumSystemLocalesA, GetUserDefaultLCID, GetACP, GetOEMCP, GetStringTypeA, GetStringTypeW, SetConsoleCtrlHandler, SetStdHandle, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, LoadLibraryA, InterlockedDecrement, InterlockedIncrement, InitializeCriticalSection, DeleteCriticalSection, CloseHandle, DeviceIoControl, FindResourceW, LoadResource, LockResource, GlobalAddAtomW, GlobalFindAtomW, GetModuleHandleW, MulDiv, GetModuleHandleA, SetLastError, GetVersion, lstrcpynW, lstrcpyW, lstrcatW, SetErrorMode, TlsGetValue, LocalReAlloc, SetEvent, TlsSetValue, GlobalReAlloc, TlsFree, GlobalHandle, GlobalUnlock, GlobalFree, TlsAlloc, LocalAlloc, GlobalLock, lstrcmpW, GlobalAlloc, GlobalDeleteAtom, lstrcmpA, lstrcmpiA, GetCurrentThread, SuspendThread, GetCurrentThreadId, SetThreadPriority, FormatMessageW, LocalFree, CreateEventW, CreateMutexW, ReleaseSemaphore, CreateSemaphoreW, MultiByteToWideChar, WideCharToMultiByte, lstrlenA, lstrlenW, GetSystemDirectoryW, LoadLibraryW, GetProcAddress, FreeLibrary, GetVersionExW, WaitForSingleObject, GetCurrentProcess, DuplicateHandle, ResumeThread, CreateFileW, GetModuleFileNameW, LeaveCriticalSection, EnterCriticalSection, WriteFile, ReadFile, GetOverlappedResult, CancelIo, WaitForMultipleObjects, ReleaseMutex, GetLastError, Sleep, ResetEvent<BR>> USER32.dll: RegisterClassW, GetClassInfoW, wsprintfW, WinHelpW, GetCapture, IsChild, GetTopWindow, SetScrollPos, GetScrollPos, SetScrollRange, GetScrollRange, ShowScrollBar, SetScrollInfo, GetScrollInfo, ScrollWindow, EndDeferWindowPos, CopyRect, BeginDeferWindowPos, GetClientRect, DeferWindowPos, EqualRect, AdjustWindowRectEx, SetFocus, IsWindow, SetActiveWindow, GetSysColor, MapWindowPoints, SendDlgItemMessageA, SendDlgItemMessageW, UpdateWindow, LoadIconW, CheckDlgButton, CheckRadioButton, GetDlgItemInt, GetDlgItemTextW, SetDlgItemInt, SetDlgItemTextW, IsDlgButtonChecked, ScrollWindowEx, IsDialogMessageW, SetWindowTextW, MoveWindow, ShowWindow, LoadCursorW, GetSysColorBrush, GetClassNameW, PtInRect, GetDesktopWindow, InsertMenuW, DeleteMenu, GetMenuStringW, DestroyMenu, CharUpperW, GetMenu, GetMenuItemCount, GetSubMenu, GetMenuItemID, TrackPopupMenu, SetWindowPlacement, GetDlgItem, GetWindowTextLengthW, GetWindowTextW, GetDlgCtrlID, DefWindowProcW, DestroyWindow, CreateWindowExW, SetPropW, GetPropW, CallWindowProcW, RemovePropW, GetMessageTime, GetMessagePos, GetForegroundWindow, SetForegroundWindow, GetWindow, SetWindowLongW, SetWindowPos, RegisterWindowMessageW, OffsetRect, IntersectRect, SystemParametersInfoW, IsIconic, GetWindowPlacement, GetWindowRect, GetSystemMetrics, GrayStringW, DrawTextW, TabbedTextOutW, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, GetDC, ClientToScreen, ScreenToClient, LoadStringW, UnregisterClassW, UnhookWindowsHookEx, GetMenuCheckMarkDimensions, LoadBitmapW, GetMenuState, SetMenuItemBitmaps, CheckMenuItem, EnableMenuItem, GetFocus, GetParent, GetLastActivePopup, IsWindowEnabled, GetWindowLongW, MessageBoxW, EnableWindow, SetCursor, ShowOwnedPopups, PostMessageW, PostQuitMessage, GetMessageW, TranslateMessage, DispatchMessageW, GetActiveWindow, SendMessageW, GetKeyState, CallNextHookEx, ValidateRect, IsWindowVisible, PeekMessageW, GetCursorPos, SetWindowsHookExW, MsgWaitForMultipleObjects, ModifyMenuW, GetNextDlgTabItem<BR>> GDI32.dll: CreateBitmap, SelectObject, GetStockObject, SelectPalette, SetBkColor, SetBkMode, SetPolyFillMode, SetROP2, SetStretchBltMode, SetTextColor, SetMapMode, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowOrgEx, OffsetWindowOrgEx, SetWindowExtEx, ScaleWindowExtEx, GetClipBox, SelectClipRgn, ExcludeClipRect, IntersectClipRect, OffsetClipRgn, MoveToEx, LineTo, SetTextAlign, SetTextJustification, SetTextCharacterExtra, SetMapperFlags, GetCurrentPositionEx, ArcTo, SetArcDirection, PolyDraw, PolylineTo, SetColorAdjustment, PolyBezierTo, DeleteObject, GetClipRgn, CreateRectRgn, SelectClipPath, ExtSelectClipRgn, PlayMetaFileRecord, GetObjectType, SaveDC, EnumMetaFile, PlayMetaFile, GetDeviceCaps, GetViewportExtEx, GetWindowExtEx, CreatePen, ExtCreatePen, CreateSolidBrush, CreateHatchBrush, CreatePatternBrush, CreateDIBPatternBrushPt, PtVisible, RectVisible, TextOutW, ExtTextOutW, Escape, GetDCOrgEx, GetObjectW, StartDocW, DeleteDC, RestoreDC<BR>> comdlg32.dll: GetFileTitleW<BR>> WINSPOOL.DRV: ClosePrinter, DocumentPropertiesW, OpenPrinterW<BR>> ADVAPI32.dll: RegQueryValueExW, RegOpenKeyW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW<BR>> SHELL32.dll: SHGetFileInfoW, DragAcceptFiles<BR>> COMCTL32.dll: -<BR><BR>( 1 exports ) <BR>CreateImdMain<BR>
Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 237636 bytes
MD5...: 83ab8f284222998a31875d81b633aa47
SHA1..: 24e526aedf7e1abc1ae2c04ec38c7895b18b6d44
SHA256: 843a1ce24051c67851e245e25027c12b3f552136dae9afe197bb86b6050cdc86
SHA512: 27ad3b91231e8aa761b1b241105ac8d34bf01e04cbb0dbb367b07ca0cfee9915<BR>c637ca7f2f4ba9d44e197e228e68d41620eda41d4942f14b2a3530b268d6ef2d
ssdeep: 3072:yQ55Pa+wFMaC81BlwJLH5QP2qTFY1ub027yVrddeqRIU1O5c3NFxhSAIIR:<BR>yQ58l1BCJtQP2GGVr9FdP<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Windows OCX File (63.5%)<BR>Win32 Executable MS Visual C++ (generic) (19.3%)<BR>Windows Screen Saver (6.7%)<BR>Win32 Executable Generic (4.3%)<BR>Win32 Dynamic Link Library (generic) (3.8%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x10007848<BR>timedatestamp.....: 0x44efb89e (Sat Aug 26 02:57:34 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x23e0e 0x24000 6.60 e6f825f551257ca4a65d0f7babc63110<BR>.rdata 0x25000 0x803a 0x9000 4.58 6e7b4f7855b9e099a6f1102cc6f60dfd<BR>.data 0x2e000 0x8732 0x5000 2.64 c55815c11c8573e977be765c7bec737e<BR>.rsrc 0x37000 0x29f8 0x3000 3.59 8ec8e8f60d8cc2351dcac63d91b7ae9d<BR>.reloc 0x3a000 0x309e 0x4000 5.56 629ff7753bff5017922ef948029ebbaf<BR><BR>( 9 imports ) <BR>> VERSION.dll: GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW<BR>> KERNEL32.dll: lstrcmpiW, GlobalFlags, GetPrivateProfileIntW, GetPrivateProfileStringW, WritePrivateProfileStringW, GetCurrentDirectoryW, SetFilePointer, FlushFileBuffers, LockFile, UnlockFile, SetEndOfFile, MoveFileW, DeleteFileW, FindClose, FindFirstFileW, GetVolumeInformationW, GetFullPathNameW, GetStringTypeExW, GetThreadLocale, GetShortPathNameW, GetFileAttributesW, GetFileSize, GetFileTime, LocalFileTimeToFileTime, SystemTimeToFileTime, SetFileTime, SetFileAttributesW, FileTimeToSystemTime, FileTimeToLocalFileTime, RtlUnwind, RaiseException, GetCommandLineA, HeapAlloc, HeapFree, CreateThread, ExitThread, ExitProcess, TerminateProcess, HeapSize, HeapReAlloc, GetTimeZoneInformation, GetSystemTime, GetLocalTime, SetUnhandledExceptionFilter, FatalAppExitA, GetProcessVersion, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, LCMapStringA, LCMapStringW, VirtualAlloc, IsBadWritePtr, UnhandledExceptionFilter, IsBadReadPtr, IsBadCodePtr, GetCPInfo, IsValidLocale, IsValidCodePage, GetLocaleInfoA, EnumSystemLocalesA, GetUserDefaultLCID, GetACP, GetOEMCP, GetStringTypeA, GetStringTypeW, SetConsoleCtrlHandler, SetStdHandle, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, LoadLibraryA, InterlockedDecrement, InterlockedIncrement, InitializeCriticalSection, DeleteCriticalSection, CloseHandle, DeviceIoControl, FindResourceW, LoadResource, LockResource, GlobalAddAtomW, GlobalFindAtomW, GetModuleHandleW, MulDiv, GetModuleHandleA, SetLastError, GetVersion, lstrcpynW, lstrcpyW, lstrcatW, SetErrorMode, TlsGetValue, LocalReAlloc, SetEvent, TlsSetValue, GlobalReAlloc, TlsFree, GlobalHandle, GlobalUnlock, GlobalFree, TlsAlloc, LocalAlloc, GlobalLock, lstrcmpW, GlobalAlloc, GlobalDeleteAtom, lstrcmpA, lstrcmpiA, GetCurrentThread, SuspendThread, GetCurrentThreadId, SetThreadPriority, FormatMessageW, LocalFree, CreateEventW, CreateMutexW, ReleaseSemaphore, CreateSemaphoreW, MultiByteToWideChar, WideCharToMultiByte, lstrlenA, lstrlenW, GetSystemDirectoryW, LoadLibraryW, GetProcAddress, FreeLibrary, GetVersionExW, WaitForSingleObject, GetCurrentProcess, DuplicateHandle, ResumeThread, CreateFileW, GetModuleFileNameW, LeaveCriticalSection, EnterCriticalSection, WriteFile, ReadFile, GetOverlappedResult, CancelIo, WaitForMultipleObjects, ReleaseMutex, GetLastError, Sleep, ResetEvent<BR>> USER32.dll: RegisterClassW, GetClassInfoW, wsprintfW, WinHelpW, GetCapture, IsChild, GetTopWindow, SetScrollPos, GetScrollPos, SetScrollRange, GetScrollRange, ShowScrollBar, SetScrollInfo, GetScrollInfo, ScrollWindow, EndDeferWindowPos, CopyRect, BeginDeferWindowPos, GetClientRect, DeferWindowPos, EqualRect, AdjustWindowRectEx, SetFocus, IsWindow, SetActiveWindow, GetSysColor, MapWindowPoints, SendDlgItemMessageA, SendDlgItemMessageW, UpdateWindow, LoadIconW, CheckDlgButton, CheckRadioButton, GetDlgItemInt, GetDlgItemTextW, SetDlgItemInt, SetDlgItemTextW, IsDlgButtonChecked, ScrollWindowEx, IsDialogMessageW, SetWindowTextW, MoveWindow, ShowWindow, LoadCursorW, GetSysColorBrush, GetClassNameW, PtInRect, GetDesktopWindow, InsertMenuW, DeleteMenu, GetMenuStringW, DestroyMenu, CharUpperW, GetMenu, GetMenuItemCount, GetSubMenu, GetMenuItemID, TrackPopupMenu, SetWindowPlacement, GetDlgItem, GetWindowTextLengthW, GetWindowTextW, GetDlgCtrlID, DefWindowProcW, DestroyWindow, CreateWindowExW, SetPropW, GetPropW, CallWindowProcW, RemovePropW, GetMessageTime, GetMessagePos, GetForegroundWindow, SetForegroundWindow, GetWindow, SetWindowLongW, SetWindowPos, RegisterWindowMessageW, OffsetRect, IntersectRect, SystemParametersInfoW, IsIconic, GetWindowPlacement, GetWindowRect, GetSystemMetrics, GrayStringW, DrawTextW, TabbedTextOutW, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, GetDC, ClientToScreen, ScreenToClient, LoadStringW, UnregisterClassW, UnhookWindowsHookEx, GetMenuCheckMarkDimensions, LoadBitmapW, GetMenuState, SetMenuItemBitmaps, CheckMenuItem, EnableMenuItem, GetFocus, GetParent, GetLastActivePopup, IsWindowEnabled, GetWindowLongW, MessageBoxW, EnableWindow, SetCursor, ShowOwnedPopups, PostMessageW, PostQuitMessage, GetMessageW, TranslateMessage, DispatchMessageW, GetActiveWindow, SendMessageW, GetKeyState, CallNextHookEx, ValidateRect, IsWindowVisible, PeekMessageW, GetCursorPos, SetWindowsHookExW, MsgWaitForMultipleObjects, ModifyMenuW, GetNextDlgTabItem<BR>> GDI32.dll: CreateBitmap, SelectObject, GetStockObject, SelectPalette, SetBkColor, SetBkMode, SetPolyFillMode, SetROP2, SetStretchBltMode, SetTextColor, SetMapMode, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowOrgEx, OffsetWindowOrgEx, SetWindowExtEx, ScaleWindowExtEx, GetClipBox, SelectClipRgn, ExcludeClipRect, IntersectClipRect, OffsetClipRgn, MoveToEx, LineTo, SetTextAlign, SetTextJustification, SetTextCharacterExtra, SetMapperFlags, GetCurrentPositionEx, ArcTo, SetArcDirection, PolyDraw, PolylineTo, SetColorAdjustment, PolyBezierTo, DeleteObject, GetClipRgn, CreateRectRgn, SelectClipPath, ExtSelectClipRgn, PlayMetaFileRecord, GetObjectType, SaveDC, EnumMetaFile, PlayMetaFile, GetDeviceCaps, GetViewportExtEx, GetWindowExtEx, CreatePen, ExtCreatePen, CreateSolidBrush, CreateHatchBrush, CreatePatternBrush, CreateDIBPatternBrushPt, PtVisible, RectVisible, TextOutW, ExtTextOutW, Escape, GetDCOrgEx, GetObjectW, StartDocW, DeleteDC, RestoreDC<BR>> comdlg32.dll: GetFileTitleW<BR>> WINSPOOL.DRV: ClosePrinter, DocumentPropertiesW, OpenPrinterW<BR>> ADVAPI32.dll: RegQueryValueExW, RegOpenKeyW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegSetValueExW, RegDeleteValueW, RegDeleteKeyW<BR>> SHELL32.dll: SHGetFileInfoW, DragAcceptFiles<BR>> COMCTL32.dll: -<BR><BR>( 1 exports ) <BR>CreateImdMain<BR> Répondre à bigjal |
| Fichier wsfwDS.dll reçu le 2009.02.19 01:02:05 (CET)Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 245830 bytes
MD5...: c4f8eeeeb80c56abd9a81984f525d696
SHA1..: f17dbd1844edab12e0c5c5b72a4312c2a079c871
SHA256: 229132ca74b5721f2b1b6baccbc8ea635d0d25ac0a627d486c88e2ad8c271996
SHA512: 212618ef171e943613ee5af39e66901582005834ee05da8d7a2e24c4aef6a1b4<BR>d6804cae7cb78aa21f7f3080339af18351ceb8fd2189b9fb3af637b36e174f42
ssdeep: 3072:lmMox4eQPPgd7iPEPAYS/p+N9h+a2JWm+3FKLeEqI35O97cHB+XLfI26En:<BR>lCqeUgxqE7S/JJ63Fowy+Xb<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Windows OCX File (63.5%)<BR>Win32 Executable MS Visual C++ (generic) (19.3%)<BR>Windows Screen Saver (6.7%)<BR>Win32 Executable Generic (4.3%)<BR>Win32 Dynamic Link Library (generic) (3.8%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x100086d6<BR>timedatestamp.....: 0x44efb899 (Sat Aug 26 02:57:29 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x24676 0x25000 6.57 711bf991c72f10a25187cbc616404c29<BR>.rdata 0x26000 0x872c 0x9000 4.72 e4dd94d95e878c508aac9143ee12cc16<BR>.data 0x2f000 0x8a90 0x6000 2.46 f6b73c9f6457ba8ce874392d9228c7dd<BR>.rsrc 0x38000 0x2a10 0x3000 3.60 43f88ec253a8202600afc515577df15d<BR>.reloc 0x3b000 0x3272 0x4000 5.68 9e91bf9490e9cc1756558271bea373fa<BR><BR>( 11 imports ) <BR>> wsimd.dll: CreateImdMain<BR>> VERSION.dll: GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW<BR>> DSA.dll: DsaCreateShim<BR>> KERNEL32.dll: DuplicateHandle, GetCurrentProcess, CreateFileW, ReadFile, WriteFile, SetFilePointer, FlushFileBuffers, LockFile, UnlockFile, SetEndOfFile, MoveFileW, DeleteFileW, FindClose, FindFirstFileW, GetVolumeInformationW, GetFullPathNameW, GetStringTypeExW, GetThreadLocale, GetShortPathNameW, GetFileAttributesW, GetFileSize, GetFileTime, LocalFileTimeToFileTime, SystemTimeToFileTime, SetFileTime, SetFileAttributesW, FileTimeToSystemTime, FileTimeToLocalFileTime, RtlUnwind, IsBadReadPtr, GetCommandLineA, HeapAlloc, HeapFree, ExitProcess, TerminateProcess, CreateThread, ExitThread, RaiseException, HeapSize, HeapReAlloc, GetTimeZoneInformation, GetSystemTime, GetProcessVersion, FatalAppExitA, Sleep, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, IsBadWritePtr, LCMapStringA, LCMapStringW, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsBadCodePtr, GetCPInfo, IsValidLocale, IsValidCodePage, GetLocaleInfoA, EnumSystemLocalesA, GetUserDefaultLCID, GetACP, GetOEMCP, GetStringTypeA, GetStringTypeW, SetConsoleCtrlHandler, SetStdHandle, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, LoadLibraryA, FindResourceW, LoadResource, LockResource, InitializeCriticalSection, DeleteCriticalSection, GlobalAddAtomW, GlobalFindAtomW, GetModuleHandleW, GetCurrentDirectoryW, WritePrivateProfileStringW, GetPrivateProfileStringW, GetPrivateProfileIntW, GlobalFlags, lstrcmpiW, GetLastError, MulDiv, GetModuleHandleA, SetLastError, GetVersion, lstrcpynW, InterlockedIncrement, lstrcpyW, lstrcatW, SetErrorMode, TlsGetValue, LocalReAlloc, TlsSetValue, GlobalReAlloc, TlsFree, GlobalHandle, GlobalUnlock, GlobalFree, TlsAlloc, LocalAlloc, SuspendThread, SetThreadPriority, ResumeThread, GlobalLock, lstrcmpW, GlobalAlloc, GlobalDeleteAtom, lstrcmpA, lstrcmpiA, GetCurrentThread, GetCurrentThreadId, FormatMessageW, LocalFree, MultiByteToWideChar, WideCharToMultiByte, lstrlenA, lstrlenW, WaitForMultipleObjects, CreateEventW, ReleaseMutex, CreateMutexW, ReleaseSemaphore, CreateSemaphoreW, WaitForSingleObject, CloseHandle, LoadLibraryW, GetProcAddress, FreeLibrary, GetVersionExW, GetSystemDirectoryW, GetModuleFileNameW, LeaveCriticalSection, EnterCriticalSection, SetEvent, ResetEvent, GetLocalTime, InterlockedDecrement<BR>> USER32.dll: GetSystemMetrics, GetWindowPlacement, IsIconic, SystemParametersInfoW, IntersectRect, OffsetRect, RegisterWindowMessageW, SetForegroundWindow, GetForegroundWindow, GetMessagePos, GetMessageTime, RemovePropW, CallWindowProcW, GetPropW, SetPropW, CreateWindowExW, DestroyWindow, DefWindowProcW, SetWindowPlacement, TrackPopupMenu, GetMenuItemID, GetSubMenu, GetMenu, RegisterClassW, GetClassInfoW, WinHelpW, GetCapture, IsChild, GetTopWindow, SetScrollPos, GetScrollPos, SetScrollRange, GetScrollRange, ShowScrollBar, SetScrollInfo, GetScrollInfo, ScrollWindow, EndDeferWindowPos, CopyRect, BeginDeferWindowPos, GetClientRect, DeferWindowPos, EqualRect, AdjustWindowRectEx, IsWindow, SetActiveWindow, GetSysColor, MapWindowPoints, SendDlgItemMessageA, UpdateWindow, LoadIconW, LoadCursorW, GetSysColorBrush, CharUpperW, DestroyMenu, SetFocus, ShowWindow, SetWindowPos, MoveWindow, SetWindowLongW, GetWindowTextLengthW, IsDialogMessageW, ScrollWindowEx, IsDlgButtonChecked, SetDlgItemTextW, SetDlgItemInt, SendDlgItemMessageW, GetDlgItemTextW, GetDlgItemInt, GetDlgItem, CheckRadioButton, CheckDlgButton, GetMenuStringW, DeleteMenu, InsertMenuW, GetMenuItemCount, wsprintfW, GetDesktopWindow, GetWindowTextW, SetWindowTextW, GetWindow, GetDlgCtrlID, GetWindowRect, PtInRect, GetClassNameW, LoadStringW, GrayStringW, DrawTextW, TabbedTextOutW, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, GetDC, ClientToScreen, ScreenToClient, UnregisterClassW, UnhookWindowsHookEx, GetMenuCheckMarkDimensions, LoadBitmapW, GetMenuState, ModifyMenuW, SetMenuItemBitmaps, EnableMenuItem, GetFocus, GetNextDlgTabItem, GetMessageW, DispatchMessageW, GetActiveWindow, GetKeyState, CallNextHookEx, ValidateRect, IsWindowVisible, PeekMessageW, GetCursorPos, SetWindowsHookExW, GetParent, GetLastActivePopup, IsWindowEnabled, GetWindowLongW, MessageBoxW, EnableWindow, SetCursor, ShowOwnedPopups, SendMessageW, PostMessageW, PostQuitMessage, MsgWaitForMultipleObjects, CheckMenuItem, TranslateMessage<BR>> GDI32.dll: GetStockObject, SelectPalette, SetBkColor, SetBkMode, SetPolyFillMode, SetROP2, SetStretchBltMode, SetTextColor, SetMapMode, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowOrgEx, OffsetWindowOrgEx, SetWindowExtEx, ScaleWindowExtEx, GetClipBox, SelectClipRgn, ExcludeClipRect, IntersectClipRect, OffsetClipRgn, MoveToEx, LineTo, SetTextAlign, SetTextJustification, SetTextCharacterExtra, SetMapperFlags, GetCurrentPositionEx, ArcTo, SelectObject, PolyDraw, PolylineTo, SetColorAdjustment, PolyBezierTo, DeleteObject, GetClipRgn, CreateRectRgn, SelectClipPath, ExtSelectClipRgn, PlayMetaFileRecord, GetObjectType, SaveDC, EnumMetaFile, PlayMetaFile, GetDeviceCaps, GetViewportExtEx, GetWindowExtEx, CreatePen, ExtCreatePen, CreateSolidBrush, CreateHatchBrush, CreatePatternBrush, CreateDIBPatternBrushPt, PtVisible, RectVisible, TextOutW, ExtTextOutW, Escape, GetDCOrgEx, GetObjectW, SetArcDirection, CreateBitmap, StartDocW, DeleteDC, RestoreDC<BR>> comdlg32.dll: GetFileTitleW<BR>> WINSPOOL.DRV: ClosePrinter, DocumentPropertiesW, OpenPrinterW<BR>> ADVAPI32.dll: RegCreateKeyExW, RegDeleteKeyW, RegCloseKey, RegOpenKeyExW, RegQueryValueExW, RegSetValueExW, RegDeleteValueW, RegOpenKeyW<BR>> SHELL32.dll: SHGetFileInfoW, DragAcceptFiles<BR>> COMCTL32.dll: -<BR><BR>( 1 exports ) <BR>CreateWsfwMain<BR>
Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 245830 bytes
MD5...: c4f8eeeeb80c56abd9a81984f525d696
SHA1..: f17dbd1844edab12e0c5c5b72a4312c2a079c871
SHA256: 229132ca74b5721f2b1b6baccbc8ea635d0d25ac0a627d486c88e2ad8c271996
SHA512: 212618ef171e943613ee5af39e66901582005834ee05da8d7a2e24c4aef6a1b4<BR>d6804cae7cb78aa21f7f3080339af18351ceb8fd2189b9fb3af637b36e174f42
ssdeep: 3072:lmMox4eQPPgd7iPEPAYS/p+N9h+a2JWm+3FKLeEqI35O97cHB+XLfI26En:<BR>lCqeUgxqE7S/JJ63Fowy+Xb<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Windows OCX File (63.5%)<BR>Win32 Executable MS Visual C++ (generic) (19.3%)<BR>Windows Screen Saver (6.7%)<BR>Win32 Executable Generic (4.3%)<BR>Win32 Dynamic Link Library (generic) (3.8%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x100086d6<BR>timedatestamp.....: 0x44efb899 (Sat Aug 26 02:57:29 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x24676 0x25000 6.57 711bf991c72f10a25187cbc616404c29<BR>.rdata 0x26000 0x872c 0x9000 4.72 e4dd94d95e878c508aac9143ee12cc16<BR>.data 0x2f000 0x8a90 0x6000 2.46 f6b73c9f6457ba8ce874392d9228c7dd<BR>.rsrc 0x38000 0x2a10 0x3000 3.60 43f88ec253a8202600afc515577df15d<BR>.reloc 0x3b000 0x3272 0x4000 5.68 9e91bf9490e9cc1756558271bea373fa<BR><BR>( 11 imports ) <BR>> wsimd.dll: CreateImdMain<BR>> VERSION.dll: GetFileVersionInfoSizeW, GetFileVersionInfoW, VerQueryValueW<BR>> DSA.dll: DsaCreateShim<BR>> KERNEL32.dll: DuplicateHandle, GetCurrentProcess, CreateFileW, ReadFile, WriteFile, SetFilePointer, FlushFileBuffers, LockFile, UnlockFile, SetEndOfFile, MoveFileW, DeleteFileW, FindClose, FindFirstFileW, GetVolumeInformationW, GetFullPathNameW, GetStringTypeExW, GetThreadLocale, GetShortPathNameW, GetFileAttributesW, GetFileSize, GetFileTime, LocalFileTimeToFileTime, SystemTimeToFileTime, SetFileTime, SetFileAttributesW, FileTimeToSystemTime, FileTimeToLocalFileTime, RtlUnwind, IsBadReadPtr, GetCommandLineA, HeapAlloc, HeapFree, ExitProcess, TerminateProcess, CreateThread, ExitThread, RaiseException, HeapSize, HeapReAlloc, GetTimeZoneInformation, GetSystemTime, GetProcessVersion, FatalAppExitA, Sleep, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, GetModuleFileNameA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, IsBadWritePtr, LCMapStringA, LCMapStringW, UnhandledExceptionFilter, SetUnhandledExceptionFilter, IsBadCodePtr, GetCPInfo, IsValidLocale, IsValidCodePage, GetLocaleInfoA, EnumSystemLocalesA, GetUserDefaultLCID, GetACP, GetOEMCP, GetStringTypeA, GetStringTypeW, SetConsoleCtrlHandler, SetStdHandle, GetLocaleInfoW, CompareStringA, CompareStringW, SetEnvironmentVariableA, LoadLibraryA, FindResourceW, LoadResource, LockResource, InitializeCriticalSection, DeleteCriticalSection, GlobalAddAtomW, GlobalFindAtomW, GetModuleHandleW, GetCurrentDirectoryW, WritePrivateProfileStringW, GetPrivateProfileStringW, GetPrivateProfileIntW, GlobalFlags, lstrcmpiW, GetLastError, MulDiv, GetModuleHandleA, SetLastError, GetVersion, lstrcpynW, InterlockedIncrement, lstrcpyW, lstrcatW, SetErrorMode, TlsGetValue, LocalReAlloc, TlsSetValue, GlobalReAlloc, TlsFree, GlobalHandle, GlobalUnlock, GlobalFree, TlsAlloc, LocalAlloc, SuspendThread, SetThreadPriority, ResumeThread, GlobalLock, lstrcmpW, GlobalAlloc, GlobalDeleteAtom, lstrcmpA, lstrcmpiA, GetCurrentThread, GetCurrentThreadId, FormatMessageW, LocalFree, MultiByteToWideChar, WideCharToMultiByte, lstrlenA, lstrlenW, WaitForMultipleObjects, CreateEventW, ReleaseMutex, CreateMutexW, ReleaseSemaphore, CreateSemaphoreW, WaitForSingleObject, CloseHandle, LoadLibraryW, GetProcAddress, FreeLibrary, GetVersionExW, GetSystemDirectoryW, GetModuleFileNameW, LeaveCriticalSection, EnterCriticalSection, SetEvent, ResetEvent, GetLocalTime, InterlockedDecrement<BR>> USER32.dll: GetSystemMetrics, GetWindowPlacement, IsIconic, SystemParametersInfoW, IntersectRect, OffsetRect, RegisterWindowMessageW, SetForegroundWindow, GetForegroundWindow, GetMessagePos, GetMessageTime, RemovePropW, CallWindowProcW, GetPropW, SetPropW, CreateWindowExW, DestroyWindow, DefWindowProcW, SetWindowPlacement, TrackPopupMenu, GetMenuItemID, GetSubMenu, GetMenu, RegisterClassW, GetClassInfoW, WinHelpW, GetCapture, IsChild, GetTopWindow, SetScrollPos, GetScrollPos, SetScrollRange, GetScrollRange, ShowScrollBar, SetScrollInfo, GetScrollInfo, ScrollWindow, EndDeferWindowPos, CopyRect, BeginDeferWindowPos, GetClientRect, DeferWindowPos, EqualRect, AdjustWindowRectEx, IsWindow, SetActiveWindow, GetSysColor, MapWindowPoints, SendDlgItemMessageA, UpdateWindow, LoadIconW, LoadCursorW, GetSysColorBrush, CharUpperW, DestroyMenu, SetFocus, ShowWindow, SetWindowPos, MoveWindow, SetWindowLongW, GetWindowTextLengthW, IsDialogMessageW, ScrollWindowEx, IsDlgButtonChecked, SetDlgItemTextW, SetDlgItemInt, SendDlgItemMessageW, GetDlgItemTextW, GetDlgItemInt, GetDlgItem, CheckRadioButton, CheckDlgButton, GetMenuStringW, DeleteMenu, InsertMenuW, GetMenuItemCount, wsprintfW, GetDesktopWindow, GetWindowTextW, SetWindowTextW, GetWindow, GetDlgCtrlID, GetWindowRect, PtInRect, GetClassNameW, LoadStringW, GrayStringW, DrawTextW, TabbedTextOutW, EndPaint, BeginPaint, GetWindowDC, ReleaseDC, GetDC, ClientToScreen, ScreenToClient, UnregisterClassW, UnhookWindowsHookEx, GetMenuCheckMarkDimensions, LoadBitmapW, GetMenuState, ModifyMenuW, SetMenuItemBitmaps, EnableMenuItem, GetFocus, GetNextDlgTabItem, GetMessageW, DispatchMessageW, GetActiveWindow, GetKeyState, CallNextHookEx, ValidateRect, IsWindowVisible, PeekMessageW, GetCursorPos, SetWindowsHookExW, GetParent, GetLastActivePopup, IsWindowEnabled, GetWindowLongW, MessageBoxW, EnableWindow, SetCursor, ShowOwnedPopups, SendMessageW, PostMessageW, PostQuitMessage, MsgWaitForMultipleObjects, CheckMenuItem, TranslateMessage<BR>> GDI32.dll: GetStockObject, SelectPalette, SetBkColor, SetBkMode, SetPolyFillMode, SetROP2, SetStretchBltMode, SetTextColor, SetMapMode, SetViewportOrgEx, OffsetViewportOrgEx, SetViewportExtEx, ScaleViewportExtEx, SetWindowOrgEx, OffsetWindowOrgEx, SetWindowExtEx, ScaleWindowExtEx, GetClipBox, SelectClipRgn, ExcludeClipRect, IntersectClipRect, OffsetClipRgn, MoveToEx, LineTo, SetTextAlign, SetTextJustification, SetTextCharacterExtra, SetMapperFlags, GetCurrentPositionEx, ArcTo, SelectObject, PolyDraw, PolylineTo, SetColorAdjustment, PolyBezierTo, DeleteObject, GetClipRgn, CreateRectRgn, SelectClipPath, ExtSelectClipRgn, PlayMetaFileRecord, GetObjectType, SaveDC, EnumMetaFile, PlayMetaFile, GetDeviceCaps, GetViewportExtEx, GetWindowExtEx, CreatePen, ExtCreatePen, CreateSolidBrush, CreateHatchBrush, CreatePatternBrush, CreateDIBPatternBrushPt, PtVisible, RectVisible, TextOutW, ExtTextOutW, Escape, GetDCOrgEx, GetObjectW, SetArcDirection, CreateBitmap, StartDocW, DeleteDC, RestoreDC<BR>> comdlg32.dll: GetFileTitleW<BR>> WINSPOOL.DRV: ClosePrinter, DocumentPropertiesW, OpenPrinterW<BR>> ADVAPI32.dll: RegCreateKeyExW, RegDeleteKeyW, RegCloseKey, RegOpenKeyExW, RegQueryValueExW, RegSetValueExW, RegDeleteValueW, RegOpenKeyW<BR>> SHELL32.dll: SHGetFileInfoW, DragAcceptFiles<BR>> COMCTL32.dll: -<BR><BR>( 1 exports ) <BR>CreateWsfwMain<BR> Répondre à bigjal |
| Fichier dsaNac.dll reçu le 2009.02.19 01:04:18 (CET)Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 53248 bytes
MD5...: 4afb29dc0ed02d830da6849f99cb1325
SHA1..: 0fa4a11258b202f10afd360ddc097d6d5f9d37fa
SHA256: 8d35b08bce18fea9d448c6381ea5324c414dff0cd27bd6fdc70fac47c4357be7
SHA512: 400b65c96d00eade1aa010a0a89efad054f830b07e26959c4495d0590f65a3ce<BR>f0312118705f1befa5b7ea16d64fdaa7c3bec47b8ff051d83bc4fce7f6b0f72f
ssdeep: 768:w30Sk5bhGMZ4RjTB3lQNgor22Fr0KP2G3itxs:w3WmjTB3lQNgo1FV2Htx<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Win32 Executable MS Visual C++ (generic) (65.2%)<BR>Win32 Executable Generic (14.7%)<BR>Win32 Dynamic Link Library (generic) (13.1%)<BR>Generic Win/DOS Executable (3.4%)<BR>DOS Executable Generic (3.4%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x1000191f<BR>timedatestamp.....: 0x44ac40b6 (Wed Jul 05 22:44:06 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x58d2 0x6000 6.34 3990ca26047bd734cf45d1acdf4aab5e<BR>.rdata 0x7000 0xc36 0x1000 4.43 26b80e46b6ffdc607bc9e6ad32351f11<BR>.data 0x8000 0x4424 0x3000 0.74 87453b83f2987241b287a0f0c4229f7e<BR>.rsrc 0xd000 0x3c8 0x1000 1.00 10fae5b3a3f3a5286ad3fa22e225fcaa<BR>.reloc 0xe000 0xd5a 0x1000 3.42 193cdfaffef62281eaef025617df025d<BR><BR>( 2 imports ) <BR>> WS2_32.dll: -, -, -, -, -, -, -, -, -, -, -, -<BR>> KERNEL32.dll: TlsGetValue, CloseHandle, FlushFileBuffers, HeapFree, HeapAlloc, GetCommandLineA, GetVersion, GetModuleHandleA, GetModuleFileNameA, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, HeapReAlloc, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, ExitProcess, RtlUnwind, TerminateProcess, GetCurrentProcess, GetCurrentThreadId, TlsSetValue, TlsAlloc, TlsFree, SetLastError, GetLastError, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStrings, GetEnvironmentStringsW, WriteFile, SetFilePointer, InterlockedDecrement, InterlockedIncrement, MultiByteToWideChar, GetStringTypeA, GetStringTypeW, GetCPInfo, GetACP, GetOEMCP, GetProcAddress, LoadLibraryA, SetStdHandle, LCMapStringA, LCMapStringW<BR><BR>( 1 exports ) <BR>AEIEvent<BR>
Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 53248 bytes
MD5...: 4afb29dc0ed02d830da6849f99cb1325
SHA1..: 0fa4a11258b202f10afd360ddc097d6d5f9d37fa
SHA256: 8d35b08bce18fea9d448c6381ea5324c414dff0cd27bd6fdc70fac47c4357be7
SHA512: 400b65c96d00eade1aa010a0a89efad054f830b07e26959c4495d0590f65a3ce<BR>f0312118705f1befa5b7ea16d64fdaa7c3bec47b8ff051d83bc4fce7f6b0f72f
ssdeep: 768:w30Sk5bhGMZ4RjTB3lQNgor22Fr0KP2G3itxs:w3WmjTB3lQNgo1FV2Htx<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Win32 Executable MS Visual C++ (generic) (65.2%)<BR>Win32 Executable Generic (14.7%)<BR>Win32 Dynamic Link Library (generic) (13.1%)<BR>Generic Win/DOS Executable (3.4%)<BR>DOS Executable Generic (3.4%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x1000191f<BR>timedatestamp.....: 0x44ac40b6 (Wed Jul 05 22:44:06 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x58d2 0x6000 6.34 3990ca26047bd734cf45d1acdf4aab5e<BR>.rdata 0x7000 0xc36 0x1000 4.43 26b80e46b6ffdc607bc9e6ad32351f11<BR>.data 0x8000 0x4424 0x3000 0.74 87453b83f2987241b287a0f0c4229f7e<BR>.rsrc 0xd000 0x3c8 0x1000 1.00 10fae5b3a3f3a5286ad3fa22e225fcaa<BR>.reloc 0xe000 0xd5a 0x1000 3.42 193cdfaffef62281eaef025617df025d<BR><BR>( 2 imports ) <BR>> WS2_32.dll: -, -, -, -, -, -, -, -, -, -, -, -<BR>> KERNEL32.dll: TlsGetValue, CloseHandle, FlushFileBuffers, HeapFree, HeapAlloc, GetCommandLineA, GetVersion, GetModuleHandleA, GetModuleFileNameA, GetEnvironmentVariableA, GetVersionExA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, HeapReAlloc, InitializeCriticalSection, DeleteCriticalSection, EnterCriticalSection, LeaveCriticalSection, ExitProcess, RtlUnwind, TerminateProcess, GetCurrentProcess, GetCurrentThreadId, TlsSetValue, TlsAlloc, TlsFree, SetLastError, GetLastError, SetHandleCount, GetStdHandle, GetFileType, GetStartupInfoA, FreeEnvironmentStringsA, FreeEnvironmentStringsW, WideCharToMultiByte, GetEnvironmentStrings, GetEnvironmentStringsW, WriteFile, SetFilePointer, InterlockedDecrement, InterlockedIncrement, MultiByteToWideChar, GetStringTypeA, GetStringTypeW, GetCPInfo, GetACP, GetOEMCP, GetProcAddress, LoadLibraryA, SetStdHandle, LCMapStringA, LCMapStringW<BR><BR>( 1 exports ) <BR>AEIEvent<BR> Répondre à bigjal |
| Fichier dsa.dll reçu le 2009.02.19 01:06:14 (CET)Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 1253432 bytes
MD5...: 010af8a41b4a6748000f4db9058922d1
SHA1..: b35618cc88caf7f805ffeb17ed472787f0793b4e
SHA256: 6c1fd0c1f246e8c73e8ed68b0362247af139eede6ffdafb5b08a5302c0a56a69
SHA512: 4ecdf9c19b378a35102afa5a899714779d34a2094282d330ea777bd44dfbf8e2<BR>c0f184705b7f18b771908a23723ddcd6d727ea3794c3022da8778f2668cfe133
ssdeep: 24576:QE2LTjgEQPQbC8CKJlkhq8O+Bf16p/FTDB9nVJT65:QpQQWBKJlyr6p/FT<BR>DbT65<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Win32 Executable MS Visual C++ (generic) (53.1%)<BR>Windows Screen Saver (18.4%)<BR>Win32 Executable Generic (12.0%)<BR>Win32 Dynamic Link Library (generic) (10.6%)<BR>Generic Win/DOS Executable (2.8%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x100bce41<BR>timedatestamp.....: 0x44ac40c3 (Wed Jul 05 22:44:19 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0xd5ac4 0xd6000 6.61 516241d7429607020018d4475826d464<BR>.rdata 0xd7000 0x245e8 0x25000 5.93 0377bb7a21847a218018854d2a7fd400<BR>.data 0xfc000 0x6c724 0x28000 5.67 3a3943a1b81fda2121b9dd3ab44a2074<BR>.rsrc 0x169000 0x408 0x1000 1.09 36b38781ba0f3e992f2851517eba6764<BR>.reloc 0x16a000 0xc574 0xd000 6.42 1f845abc1128c5b6c5acb23c70bbdd4b<BR><BR>( 9 imports ) <BR>> KERNEL32.dll: WideCharToMultiByte, TlsGetValue, OutputDebugStringA, CreateMutexA, CreateFileA, DeviceIoControl, GetFileSize, FindFirstFileA, FindClose, DeleteCriticalSection, InitializeCriticalSection, GetModuleHandleA, TlsSetValue, SleepEx, WaitForMultipleObjectsEx, GetLastError, TlsAlloc, EnterCriticalSection, LeaveCriticalSection, SetEvent, FileTimeToLocalFileTime, FileTimeToSystemTime, WriteConsoleA, SetEndOfFile, GetNumberOfConsoleInputEvents, PeekConsoleInputA, GetConsoleMode, SetConsoleMode, ReadConsoleInputA, DeleteFileA, GetDriveTypeA, GetFullPathNameA, GetCurrentDirectoryA, CloseHandle, ResetEvent, TlsFree, GetSystemTimeAsFileTime, MultiByteToWideChar, SetLastError, UnmapViewOfFile, FlushViewOfFile, ReleaseMutex, CreateFileMappingA, OpenFileMappingA, CreateEventA, MapViewOfFile, GetLocaleInfoW, ReadFile, SetEnvironmentVariableA, CompareStringW, CompareStringA, CreateThread, SetThreadPriority, Sleep, WaitForSingleObject, GetCurrentThreadId, InterlockedIncrement, InterlockedDecrement, GetModuleFileNameA, GetUserDefaultLangID, GetUserDefaultLCID, EnumSystemLocalesA, GetLocaleInfoA, SetCurrentDirectoryA, IsValidCodePage, IsValidLocale, LocalFree, FormatMessageA, LoadLibraryA, GetProcAddress, FreeLibrary, FindNextFileA, GetVersion, GetFileType, GetStdHandle, GetCurrentProcessId, GlobalMemoryStatus, QueryPerformanceCounter, GetTickCount, GetVersionExA, FlushConsoleInputBuffer, RtlUnwind, HeapAlloc, GetTimeZoneInformation, GetSystemTime, GetLocalTime, HeapFree, GetCommandLineA, HeapReAlloc, SetConsoleCtrlHandler, GetCurrentThread, GetEnvironmentVariableA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, IsBadWritePtr, ExitProcess, FatalAppExitA, SetHandleCount, GetStartupInfoA, TerminateProcess, GetCurrentProcess, HeapSize, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, WriteFile, GetStringTypeA, GetStringTypeW, UnhandledExceptionFilter, SetFilePointer, LCMapStringA, LCMapStringW, FlushFileBuffers, SetStdHandle, SetUnhandledExceptionFilter, IsBadReadPtr, IsBadCodePtr, GetCPInfo, GetACP, GetOEMCP<BR>> ADVAPI32.dll: RegisterEventSourceA, ReportEventA, DeregisterEventSource, CryptReleaseContext, CryptCreateHash, CryptGetHashParam, CryptSetHashParam, CryptSignHashA, CryptDestroyHash, InitializeSecurityDescriptor, SetSecurityDescriptorDacl<BR>> CRYPT32.dll: CertFreeCertificateChain, CertEnumCertificatesInStore, CertGetCertificateChain, CertDuplicateCertificateContext, CertAddCertificateContextToStore, CertCreateCertificateContext, CertOpenStore, CertCloseStore, CertVerifyTimeValidity, CertGetNameStringA, CertFindCertificateInStore, CertFreeCertificateContext, CertOpenSystemStoreA, CryptAcquireCertificatePrivateKey, CertDeleteCertificateFromStore<BR>> WS2_32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -<BR>> WinSCard.dll: SCardConnectA, SCardListReadersA, SCardEstablishContext, SCardReleaseContext, g_rgSCardT1Pci, g_rgSCardT0Pci, SCardTransmit, SCardDisconnect<BR>> VERSION.dll: GetFileVersionInfoA, GetFileVersionInfoSizeA, VerQueryValueA<BR>> SHLWAPI.dll: PathRemoveFileSpecA<BR>> USER32.dll: GetProcessWindowStation, GetDesktopWindow, MessageBoxIndirectA, GetUserObjectInformationW<BR>> GDI32.dll: DeleteDC, GetBitmapBits, BitBlt, GetObjectA, SelectObject, CreateCompatibleBitmap, GetDeviceCaps, CreateCompatibleDC, CreateDCA, DeleteObject<BR><BR>( 1 exports ) <BR>DsaCreateShim<BR>
Antivirus Version Dernière mise à jour Résultat
a-squared 4.0.0.93 2009.02.18 -
AhnLab-V3 2009.2.19.0 2009.02.18 -
AntiVir 7.9.0.83 2009.02.18 -
Authentium 5.1.0.4 2009.02.18 -
Avast 4.8.1335.0 2009.02.18 -
AVG 8.0.0.237 2009.02.19 -
BitDefender 7.2 2009.02.19 -
CAT-QuickHeal 10.00 2009.02.18 -
ClamAV 0.94.1 2009.02.18 -
Comodo 983 2009.02.18 -
DrWeb 4.44.0.09170 2009.02.19 -
eSafe 7.0.17.0 2009.02.18 -
eTrust-Vet 31.6.6364 2009.02.19 -
F-Prot 4.4.4.56 2009.02.18 -
F-Secure 8.0.14470.0 2009.02.18 -
Fortinet 3.117.0.0 2009.02.18 -
GData 19 2009.02.19 -
Ikarus T3.1.1.45.0 2009.02.18 -
K7AntiVirus 7.10.630 2009.02.18 -
Kaspersky 7.0.0.125 2009.02.19 -
McAfee 5529 2009.02.17 -
McAfee+Artemis 5529 2009.02.17 -
Microsoft 1.4306 2009.02.18 -
NOD32 3866 2009.02.18 -
Norman 6.00.06 2009.02.18 -
nProtect 2009.1.8.0 2009.02.18 -
Panda 9.4.3.20 2009.02.18 -
PCTools 4.4.2.0 2009.02.18 -
Prevx1 V2 2009.02.19 -
Rising 21.17.22.00 2009.02.18 -
SecureWeb-Gateway 6.7.6 2009.02.18 -
Sophos 4.38.0 2009.02.18 -
Sunbelt 3.2.1855.2 2009.02.17 -
Symantec 10 2009.02.19 -
TheHacker 6.3.2.2.259 2009.02.18 -
TrendMicro 8.700.0.1004 2009.02.18 -
VBA32 3.12.10.0 2009.02.18 -
ViRobot 2009.2.18.1613 2009.02.18 -
VirusBuster 4.5.11.0 2009.02.18 -
Information additionnelle
File size: 1253432 bytes
MD5...: 010af8a41b4a6748000f4db9058922d1
SHA1..: b35618cc88caf7f805ffeb17ed472787f0793b4e
SHA256: 6c1fd0c1f246e8c73e8ed68b0362247af139eede6ffdafb5b08a5302c0a56a69
SHA512: 4ecdf9c19b378a35102afa5a899714779d34a2094282d330ea777bd44dfbf8e2<BR>c0f184705b7f18b771908a23723ddcd6d727ea3794c3022da8778f2668cfe133
ssdeep: 24576:QE2LTjgEQPQbC8CKJlkhq8O+Bf16p/FTDB9nVJT65:QpQQWBKJlyr6p/FT<BR>DbT65<BR>
PEiD..: Armadillo v1.xx - v2.xx
TrID..: File type identification<BR>Win32 Executable MS Visual C++ (generic) (53.1%)<BR>Windows Screen Saver (18.4%)<BR>Win32 Executable Generic (12.0%)<BR>Win32 Dynamic Link Library (generic) (10.6%)<BR>Generic Win/DOS Executable (2.8%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x100bce41<BR>timedatestamp.....: 0x44ac40c3 (Wed Jul 05 22:44:19 2006)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 5 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0xd5ac4 0xd6000 6.61 516241d7429607020018d4475826d464<BR>.rdata 0xd7000 0x245e8 0x25000 5.93 0377bb7a21847a218018854d2a7fd400<BR>.data 0xfc000 0x6c724 0x28000 5.67 3a3943a1b81fda2121b9dd3ab44a2074<BR>.rsrc 0x169000 0x408 0x1000 1.09 36b38781ba0f3e992f2851517eba6764<BR>.reloc 0x16a000 0xc574 0xd000 6.42 1f845abc1128c5b6c5acb23c70bbdd4b<BR><BR>( 9 imports ) <BR>> KERNEL32.dll: WideCharToMultiByte, TlsGetValue, OutputDebugStringA, CreateMutexA, CreateFileA, DeviceIoControl, GetFileSize, FindFirstFileA, FindClose, DeleteCriticalSection, InitializeCriticalSection, GetModuleHandleA, TlsSetValue, SleepEx, WaitForMultipleObjectsEx, GetLastError, TlsAlloc, EnterCriticalSection, LeaveCriticalSection, SetEvent, FileTimeToLocalFileTime, FileTimeToSystemTime, WriteConsoleA, SetEndOfFile, GetNumberOfConsoleInputEvents, PeekConsoleInputA, GetConsoleMode, SetConsoleMode, ReadConsoleInputA, DeleteFileA, GetDriveTypeA, GetFullPathNameA, GetCurrentDirectoryA, CloseHandle, ResetEvent, TlsFree, GetSystemTimeAsFileTime, MultiByteToWideChar, SetLastError, UnmapViewOfFile, FlushViewOfFile, ReleaseMutex, CreateFileMappingA, OpenFileMappingA, CreateEventA, MapViewOfFile, GetLocaleInfoW, ReadFile, SetEnvironmentVariableA, CompareStringW, CompareStringA, CreateThread, SetThreadPriority, Sleep, WaitForSingleObject, GetCurrentThreadId, InterlockedIncrement, InterlockedDecrement, GetModuleFileNameA, GetUserDefaultLangID, GetUserDefaultLCID, EnumSystemLocalesA, GetLocaleInfoA, SetCurrentDirectoryA, IsValidCodePage, IsValidLocale, LocalFree, FormatMessageA, LoadLibraryA, GetProcAddress, FreeLibrary, FindNextFileA, GetVersion, GetFileType, GetStdHandle, GetCurrentProcessId, GlobalMemoryStatus, QueryPerformanceCounter, GetTickCount, GetVersionExA, FlushConsoleInputBuffer, RtlUnwind, HeapAlloc, GetTimeZoneInformation, GetSystemTime, GetLocalTime, HeapFree, GetCommandLineA, HeapReAlloc, SetConsoleCtrlHandler, GetCurrentThread, GetEnvironmentVariableA, HeapDestroy, HeapCreate, VirtualFree, VirtualAlloc, IsBadWritePtr, ExitProcess, FatalAppExitA, SetHandleCount, GetStartupInfoA, TerminateProcess, GetCurrentProcess, HeapSize, FreeEnvironmentStringsA, FreeEnvironmentStringsW, GetEnvironmentStrings, GetEnvironmentStringsW, WriteFile, GetStringTypeA, GetStringTypeW, UnhandledExceptionFilter, SetFilePointer, LCMapStringA, LCMapStringW, FlushFileBuffers, SetStdHandle, SetUnhandledExceptionFilter, IsBadReadPtr, IsBadCodePtr, GetCPInfo, GetACP, GetOEMCP<BR>> ADVAPI32.dll: RegisterEventSourceA, ReportEventA, DeregisterEventSource, CryptReleaseContext, CryptCreateHash, CryptGetHashParam, CryptSetHashParam, CryptSignHashA, CryptDestroyHash, InitializeSecurityDescriptor, SetSecurityDescriptorDacl<BR>> CRYPT32.dll: CertFreeCertificateChain, CertEnumCertificatesInStore, CertGetCertificateChain, CertDuplicateCertificateContext, CertAddCertificateContextToStore, CertCreateCertificateContext, CertOpenStore, CertCloseStore, CertVerifyTimeValidity, CertGetNameStringA, CertFindCertificateInStore, CertFreeCertificateContext, CertOpenSystemStoreA, CryptAcquireCertificatePrivateKey, CertDeleteCertificateFromStore<BR>> WS2_32.dll: -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -, -<BR>> WinSCard.dll: SCardConnectA, SCardListReadersA, SCardEstablishContext, SCardReleaseContext, g_rgSCardT1Pci, g_rgSCardT0Pci, SCardTransmit, SCardDisconnect<BR>> VERSION.dll: GetFileVersionInfoA, GetFileVersionInfoSizeA, VerQueryValueA<BR>> SHLWAPI.dll: PathRemoveFileSpecA<BR>> USER32.dll: GetProcessWindowStation, GetDesktopWindow, MessageBoxIndirectA, GetUserObjectInformationW<BR>> GDI32.dll: DeleteDC, GetBitmapBits, BitBlt, GetObjectA, SelectObject, CreateCompatibleBitmap, GetDeviceCaps, CreateCompatibleDC, CreateDCA, DeleteObject<BR><BR>( 1 exports ) <BR>DsaCreateShim<BR> Répondre à bigjal |
|