Voila
Virustotal est un service qui analyse les fichiers suspects et facilite la détection rapide des virus, vers, chevaux de Troie et toutes sortes de malwares détectés par les moteurs antivirus. Plus d'informations...
Fichier BHO.dll reçu le 2009.10.06 16:41:41 (UTC)
Situation actuelle: terminé
Résultat: 7/41 (17.07%)
Formaté Impression des résultats Antivirus Version Dernière mise à jour Résultat
a-squared 4.5.0.24 2009.10.06 -
AhnLab-V3 5.0.0.2 2009.10.06 -
AntiVir 7.9.1.33 2009.10.06 -
Antiy-AVL 2.0.3.7 2009.10.05 -
Authentium 5.1.2.4 2009.10.06 -
Avast 4.8.1351.0 2009.10.06 -
AVG 8.5.0.420 2009.10.04 -
BitDefender 7.2 2009.10.06 -
CAT-QuickHeal 10.00 2009.10.06 AdWare.BHO.ifr (Not a Virus)
ClamAV 0.94.1 2009.10.05 -
Comodo 2524 2009.10.06 -
DrWeb 5.0.0.12182 2009.10.06 -
eSafe 7.0.17.0 2009.10.06 -
eTrust-Vet 35.1.7053 2009.10.06 -
F-Prot 4.5.1.85 2009.10.06 -
F-Secure 8.0.14470.0 2009.10.06 -
Fortinet 3.120.0.0 2009.10.06 Adware/BHO
GData 19 2009.10.06 -
Ikarus T3.1.1.72.0 2009.10.06 -
Jiangmin 11.0.800 2009.10.06 -
K7AntiVirus 7.10.863 2009.10.06 not-a-virus:AdWare.Win32.BHO.ifr
Kaspersky 7.0.0.125 2009.10.06 -
McAfee 5763 2009.10.06 -
McAfee+Artemis 5763 2009.10.06 Artemis!AC6C8E14913A
McAfee-GW-Edition 6.8.5 2009.10.06 -
Microsoft 1.5101 2009.10.06 -
NOD32 4484 2009.10.06 -
Norman 6.01.09 2009.10.06 -
nProtect 2009.1.8.0 2009.10.06 Trojan-Clicker/W32.BHO.732672
Panda 10.0.2.2 2009.10.05 -
PCTools 4.4.2.0 2009.10.06 -
Prevx 3.0 2009.10.06 -
Rising 21.49.22.00 2009.09.30 -
Sophos 4.45.0 2009.10.06 -
Sunbelt 3.2.1858.2 2009.10.05 -
Symantec 1.4.4.12 2009.10.06 -
TheHacker 6.5.0.2.031 2009.10.05 -
TrendMicro 8.950.0.1094 2009.10.06 -
VBA32 3.12.10.11 2009.10.05 AdWare.Win32.BHO.ifr
ViRobot 2009.10.6.1972 2009.10.06 -
VirusBuster 4.6.5.0 2009.10.06 Adware.BHO.YFO
Information additionnelle
File size: 732672 bytes
MD5 : ac6c8e14913a6736ff66d8f8de024408
SHA1 : d8806a1b52fd4f6c5a3bee54b1baae42b56a0e7c
SHA256: e8a6c3b25c779a3576359147b83a3186ad82fc5ae0c443b9778327412435097e
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x42AE1
timedatestamp.....: 0x4A5614D4 (Thu Jul 9 18:03:32 2009)
machinetype.......: 0x14C (Intel I386)
( 7 sections )
name viradd virsiz rawdsiz ntrpy md5
.textbss 0x1000 0x4094A 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
.text 0x42000 0x89179 0x89200 5.56 eafb506c70d00020bb6cec7c54e0249b
.rdata 0xCC000 0x1D989 0x1DA00 3.94 ef29c8985885467bfa4bd7b223157d2e
.data 0xEA000 0x49CC 0x2400 3.66 c6287f4f3a9086c24765bd42f7a6d4ae
.idata 0xEF000 0x1758 0x1800 4.70 261b75fe02ce11461ca964e43a99824a
.rsrc 0xF1000 0x1F4C 0x2000 3.10 d96c0f544c348964fe78e8bc5cad9479
.reloc 0xF3000 0x6001 0x6200 6.18 7d81d6893e8853a1a7ba6fe62344108f
( 6 imports )
> advapi32.dll: RevertToSelf, SetThreadToken, RegQueryValueExW, RegQueryInfoKeyW, RegSetValueExW, RegEnumKeyExW, RegOpenKeyExW, RegCreateKeyExW, RegCloseKey, RegDeleteValueW, RegDeleteKeyW, OpenThreadToken
> kernel32.dll: GetProcAddress, RaiseException, DeleteCriticalSection, InterlockedIncrement, InterlockedDecrement, InitializeCriticalSection, lstrlenA, EnterCriticalSection, LeaveCriticalSection, OpenFileMappingW, UnmapViewOfFile, MapViewOfFile, CloseHandle, CreateFileMappingW, WaitForSingleObject, CreateMutexW, ReleaseMutex, GetCurrentThreadId, GetVersionExW, WideCharToMultiByte, OutputDebugStringW, GetCurrentProcessId, SetEvent, OpenEventA, OutputDebugStringA, VirtualAlloc, GetSystemInfo, lstrcmpiW, GetCurrentThread, OpenFileMappingA, CompareStringW, CompareStringA, FlushFileBuffers, CreateFileA, GetConsoleOutputCP, WriteConsoleA, SetStdHandle, GetTimeZoneInformation, GetConsoleMode, GetConsoleCP, SetFilePointer, GetLocaleInfoW, InterlockedExchange, GetUserDefaultLCID, EnumSystemLocalesA, IsValidLocale, GetLocaleInfoA, GetDateFormatA, GetTimeFormatA, GetStringTypeW, GetStringTypeA, LCMapStringA, LCMapStringW, GetProcessHeap, LoadLibraryExW, FindResourceW, LoadResource, SizeofResource, MultiByteToWideChar, FreeLibrary, GetLastError, lstrlenW, GetModuleFileNameW, GetModuleHandleW, GetThreadLocale, CreateFileMappingA, SetThreadLocale, InitializeCriticalSectionAndSpinCount, GetTickCount, QueryPerformanceCounter, GetEnvironmentStringsW, FreeEnvironmentStringsW, GetEnvironmentStrings, FreeEnvironmentStringsA, GetStartupInfoA, SetEnvironmentVariableA, SetHandleCount, VirtualFree, HeapCreate, HeapDestroy, HeapFree, HeapReAlloc, HeapSize, HeapAlloc, LoadLibraryW, SetConsoleCtrlHandler, ExitProcess, Sleep, GetFileType, WriteConsoleW, WriteFile, RtlUnwind, HeapValidate, IsBadReadPtr, VirtualProtect, VirtualQuery, GetSystemTimeAsFileTime, GetCommandLineA, GetModuleFileNameA, FatalAppExitA, IsDebuggerPresent, DebugBreak, LoadLibraryA, TerminateProcess, GetCurrentProcess, UnhandledExceptionFilter, SetUnhandledExceptionFilter, GetACP, GetOEMCP, GetCPInfo, IsValidCodePage, TlsGetValue, TlsAlloc, TlsSetValue, TlsFree, SetLastError, GetStdHandle
> ole32.dll: CoTaskMemFree, CoTaskMemAlloc, CoTaskMemRealloc, StringFromGUID2, CoCreateInstance, CoReleaseMarshalData, CoMarshalInterface, CreateStreamOnHGlobal, CoRevokeClassObject, CoRegisterClassObject, CoUnmarshalInterface
> oleaut32.dll: -, -, -, -, -, -, -, -, -
> user32.dll: UnregisterClassA, GetWindowThreadProcessId, CharNextW, UnregisterClassW, FindWindowExW, CharLowerW, wvsprintfW, LoadStringW, CallWindowProcW, SendMessageTimeoutW, GetWindowTextW, SetWindowLongW, CallNextHookEx, UnhookWindowsHookEx, MsgWaitForMultipleObjects, PeekMessageA, IsWindowUnicode, GetMessageW, GetMessageA, TranslateMessage, DispatchMessageW, DispatchMessageA, SetWindowsHookExW
> wininet.dll: InternetCheckConnectionW
( 1 exports )
> DllCanUnloadNow, DllGetClassObject, DllInstall, DllRegisterServer, DllUnregisterServer
TrID : File type identification
Windows OCX File (85.9%)
Win32 Executable Generic (5.9%)
Win32 Dynamic Link Library (generic) (5.2%)
Generic Win/DOS Executable (1.3%)
DOS Executable Generic (1.3%)
ssdeep: 12288:s6oe9oxv9W6U+zrpwXi/6J6Yhk/RG9iLkQDf:s6ojA6U+zrpwXw0zE
PEiD : -
RDS : NSRL Reference Data Set
-
ATTENTION: VirusTotal est un service gratuit offert par Hispasec Sistemas. Il n'y a aucune garantie quant à la disponibilité et la continuité de ce service. Bien que le taux de détection permis par l'utilisation de multiples moteurs antivirus soit bien supérieur à celui offert par seulement un produit, ces résultats NE garantissent PAS qu'un fichier est sans danger. Il n'y a actuellement aucune solution qui offre un taux d'efficacité de 100% pour la détection des virus et malwares.