password : virus
este es el reporte de virustotal:
Motor antivirus Versión Última actualización Resultado
a-squared 4.5.0.24 2009.09.02 Riskware.Win32.CeeInject!IK
AhnLab-V3 5.0.0.2 2009.09.02 Win-Trojan/Agent.93234
AntiVir 7.9.1.7 2009.09.02 TR/Dropper.Gen
Antiy-AVL 2.0.3.7 2009.09.02 Backdoor/Win32.IRCBot.gen
Authentium 5.1.2.4 2009.09.02 -
Avast 4.8.1335.0 2009.09.01 Win32:Trojan-gen {Other}
AVG 8.5.0.409 2009.09.02 Crypt.AQF
BitDefender 7.2 2009.09.02 Backdoor.IrcBot.ACNL
CAT-QuickHeal 10.00 2009.09.02 -
ClamAV 0.94.1 2009.09.02 Trojan.Buzus-4784
Comodo 2178 2009.09.02 TrojWare.Win32.TrojanSpy.Bzub.~FKE
DrWeb 5.0.0.12182 2009.09.02 BackDoor.IRC.Sdbot.3762
eSafe 7.0.17.0 2009.09.02 -
eTrust-Vet 31.6.6716 2009.09.02 Win32/CInject!generic
F-Prot 4.5.1.85 2009.09.01 -
F-Secure 8.0.14470.0 2009.09.02 -
Fortinet 3.120.0.0 2009.09.02 -
GData 19 2009.09.02 Backdoor.IrcBot.ACNL
Ikarus T3.1.1.68.0 2009.09.02 VirTool.Win32.CeeInject
Jiangmin 11.0.800 2009.09.02 Backdoor/IRCBot.esc
K7AntiVirus 7.10.834 2009.09.02 Trojan.Win32.Malware
Kaspersky 7.0.0.125 2009.09.02 -
McAfee 5727 2009.09.01 -
McAfee+Artemis 5727 2009.09.01 -
McAfee-GW-Edition 6.8.5 2009.09.02 Trojan.Dropper.Gen
Microsoft 1.5005 2009.09.02 VirTool:Win32/CeeInject.gen!A
NOD32 4389 2009.09.02 a variant of Win32/Injector.EN
Norman 2009.09.01 W32/Obfuscated.A3!genr
nProtect 2009.1.8.0 2009.09.02 Backdoor/W32.Agent.93234
Panda 10.0.2.2 2009.09.02 Suspicious file
PCTools 4.4.2.0 2009.09.02 -
Prevx 3.0 2009.09.02 Medium Risk Malware Downloader
Rising 21.45.14.00 2009.09.01 -
Sophos 4.45.0 2009.09.02 W32/Inject-DE
Sunbelt 3.2.1858.2 2009.09.01 Trojan.Win32.Generic!BT
Symantec 1.4.4.12 2009.09.02 Downloader
TheHacker 6.3.4.3.395 2009.09.02 Backdoor/Agent.aenu
TrendMicro 8.950.0.1094 2009.09.02 -
VBA32 3.12.10.10 2009.09.01 Trojan.Win32.Buzus.bohe
ViRobot 2009.9.2.1914 2009.09.02 Backdoor.Win32.IRCBot.291458
VirusBuster 4.6.5.0 2009.09.02 Trojan.DR.Agent.Gen.15
Información adicional
Tamano archivo: 93234 bytes
MD5...: 3b87bca303dc7915e8e493b5d966d58c
SHA1..: 47efce009420f806dc26291e21dd3c9d4caec327
SHA256: 78cb0149d62be1b4103065c26bcedb673829c7b06f2e311ec349660fb4930905
ssdeep: 1536:qJp94fTg/kP5wGe/QETbaIryEGWcwy6cGBS7Xle544IEQBPtIPE/1cvc:t7
gMPGGe/hapbz6BS7Aq4PQBFH
PEiD..: -
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x1a16
timedatestamp.....: 0x49135d24 (Thu Nov 06 21:09:56 2008)
machinetype.......: 0x14c (I386)
( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xb9c 0x1000 4.70 97c87626adc69add226259515d7239c6
.rdata 0x2000 0x36e 0x1000 1.41 806c09ad7e28621d9382f948ef3fa992
.data 0x3000 0x114 0x1000 0.45 7ceaf52c83c3a41915f68de2e6008e7b
.rsrc 0x4000 0xd60 0x1000 4.51 51d9be57c9f0168b913ac8647a1ae967
( 3 imports )
> KERNEL32.dll: GetProcAddress, GetModuleHandleA, CreateFileA, ExitProcess, GetModuleFileNameA, GetFileSize, ReadFile, Sleep, CloseHandle, GetStartupInfoA
> ADVAPI32.dll: RegQueryValueExA, RegCloseKey, RegOpenKeyA
> MSVCRT.dll: malloc, strlen, free, strcpy, memset, _except_handler3, _exit, _XcptFilter, exit, _acmdln, __getmainargs, _initterm, __setusermatherr, _adjust_fdiv, __p__commode, __p__fmode, __set_app_type, _controlfp, realloc
( 0 exports )
RDS...: NSRL Reference Data Set
-
pdfid.: -
packers (Antiy-AVL): Armadillo 1.71
trid..: Win32 Executable Generic (42.3%)
Win32 Dynamic Link Library (generic) (37.6%)
Generic Win/DOS Executable (9.9%)
DOS Executable Generic (9.9%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%)