Ci joint le rapport
Fichier frmwrk32.exe reçu le 2008.11.27 13:32:30 (CET)Antivirus Version Dernière mise à jour Résultat
AhnLab-V3 2008.11.27.4 2008.11.27 -
AntiVir 7.9.0.35 2008.11.27 -
Authentium 5.1.0.4 2008.11.27 -
Avast 4.8.1281.0 2008.11.27 -
AVG 8.0.0.199 2008.11.27 SHeur2.EHP
BitDefender 7.2 2008.11.27 -
CAT-QuickHeal 10.00 2008.11.27 -
ClamAV 0.94.1 2008.11.27 -
DrWeb 4.44.0.09170 2008.11.27 -
eSafe 7.0.17.0 2008.11.27 Suspicious File
eTrust-Vet 31.6.6233 2008.11.27 -
Ewido 4.0 2008.11.26 -
F-Prot 4.4.4.56 2008.11.26 -
F-Secure 8.0.14332.0 2008.11.27 -
Fortinet 3.117.0.0 2008.11.27 -
GData 19 2008.11.27 -
Ikarus T3.1.1.45.0 2008.11.27 -
K7AntiVirus 7.10.534 2008.11.26 -
Kaspersky 7.0.0.125 2008.11.27 -
McAfee 5446 2008.11.26 -
McAfee+Artemis 5446 2008.11.26 -
Microsoft 1.4104 2008.11.27 -
NOD32 3645 2008.11.27 -
Norman 5.80.02 2008.11.26 -
Panda 9.0.0.4 2008.11.27 -
PCTools 4.4.2.0 2008.11.27 -
Prevx1 V2 2008.11.27 -
Rising 21.05.32.00 2008.11.27 -
SecureWeb-Gateway 6.7.6 2008.11.27 -
Sophos 4.35.0 2008.11.27 -
Sunbelt 3.1.1832.2 2008.11.27 -
Symantec 10 2008.11.27 -
TheHacker 6.3.1.1.164 2008.11.27 -
TrendMicro 8.700.0.1004 2008.11.27 -
VBA32 3.12.8.9 2008.11.26 -
ViRobot 2008.11.27.1489 2008.11.27 -
VirusBuster 4.5.11.0 2008.11.26 -
Information additionnelle
File size: 32256 bytes
MD5...: dc045b88b13f453e8693d46d5ad352dd
SHA1..: 4dba6ceb1a2c44826e9b697ee33ac6dc8701cf46
SHA256: ae34dce1adb09f31c428338e37da492cc94bbe0926e5a7ba297be72e56dfa9ef
SHA512: 97366f864a59e5c592667d111031739f0d607bd333254bca26de64105ad09e92<BR>c849aa2c8bc58d0ed4b37f07b0e174117cb52ce5e272f4cb37ef239bb7347cf5<BR>
ssdeep: 768:JI+1TPBcb7OcaTve0gyBaxtg9tMg5LmiBKB:JIz7kVgyBB4gkUKB<BR>
PEiD..: -
TrID..: File type identification<BR>Win64 Executable Generic (88.0%)<BR>Win32 Dynamic Link Library (generic) (7.8%)<BR>Generic Win/DOS Executable (2.0%)<BR>DOS Executable Generic (2.0%)<BR>Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x406e45<BR>timedatestamp.....: 0x47d0000f (Thu Mar 06 14:30:39 2008)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 3 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>.text 0x1000 0x68e7 0x6a00 7.85 fc4d2b55005f1135878cb4f32da2e735<BR>.data 0x8000 0xfb1 0xc00 4.74 f6eec9f6e0706d404c5a3b9426c0bc26<BR>.rsrc 0x9000 0x3d8 0x400 3.27 16fc0a706f3edc15ef42bf2055ee46b1<BR><BR>( 3 imports ) <BR>> MSVCRT.dll: _wtoi, malloc, strchr, wcscpy, wcscat, __mb_cur_max, wcscmp, strtoul, sprintf, wcschr, realloc, fclose, atoi, wcsncat, exit, memcpy, _wfullpath<BR>> ADVAPI32.dll: QueryServiceConfigA, LookupPrivilegeValueW, CloseServiceHandle, StartServiceA, MapGenericMask, GetSidIdentifierAuthority, AddAce, RegConnectRegistryA, QueryServiceObjectSecurity, AdjustTokenPrivileges, RegEnumValueA, GetKernelObjectSecurity, RegQueryValueExA, SetTokenInformation, AddAccessAllowedAce, RegOpenKeyExA, QueryServiceStatus, ControlService<BR>> KERNEL32.dll: RaiseException, GetFileAttributesA, SizeofResource, MulDiv, GetSystemInfo, EnterCriticalSection, RtlUnwind, CloseHandle, UnhandledExceptionFilter, GetCurrentThreadId, FreeEnvironmentStringsA, GetStringTypeA, TlsAlloc, GetTickCount, GetUserDefaultLCID, HeapCreate, DeleteFileA, LoadLibraryA, SetUnhandledExceptionFilter, FindClose, GetTimeFormatA<BR><BR>( 0 exports ) <BR>