Buongiorno, ecco il report di Virus Total:
File 1 ricevuto il 2010.03.17 05:33:45 (UTC)
Stato corrente: finito
Risultato: 2/42 (4.76%)
Formattato Stampa risultati
Antivirus Versione Ultimo aggiornamento Risultato
a-squared 4.5.0.50 2010.03.17 -
AhnLab-V3 5.0.0.2 2010.03.16 -
AntiVir 8.2.1.180 2010.03.16 -
Antiy-AVL 2.0.3.7 2010.03.16 -
Authentium 5.2.0.5 2010.03.17 -
Avast 4.8.1351.0 2010.03.16 -
Avast5 5.0.332.0 2010.03.16 -
AVG 9.0.0.787 2010.03.17 -
BitDefender 7.2 2010.03.17 -
CAT-QuickHeal 10.00 2010.03.17 -
ClamAV 0.96.0.0-git 2010.03.17 -
Comodo 4290 2010.03.17 Heur.Packed.Unknown
DrWeb 5.0.1.12222 2010.03.17 -
eSafe 7.0.17.0 2010.03.16 -
eTrust-Vet 35.2.7368 2010.03.17 -
F-Prot 4.5.1.85 2010.03.17 -
F-Secure 9.0.15370.0 2010.03.17 -
Fortinet 4.0.14.0 2010.03.15 -
GData 19 2010.03.17 -
Ikarus T3.1.1.80.0 2010.03.17 -
Jiangmin 13.0.900 2010.03.16 -
K7AntiVirus 7.10.999 2010.03.16 -
Kaspersky 7.0.0.125 2010.03.17 -
McAfee 5922 2010.03.16 -
McAfee+Artemis 5922 2010.03.16 -
McAfee-GW-Edition 6.8.5 2010.03.16 -
Microsoft 1.5605 2010.03.16 -
NOD32 4950 2010.03.16 -
Norman 6.04.08 2010.03.16 -
nProtect 2009.1.8.0 2010.03.16 -
Panda 10.0.2.6 2010.03.16 -
PCTools 7.0.3.5 2010.03.15 -
Prevx 3.0 2010.03.17 -
Rising 22.39.02.03 2010.03.17 -
Sophos 4.51.0 2010.03.17 -
Sunbelt 5928 2010.03.17 -
Symantec 20091.2.0.41 2010.03.17 -
TheHacker 6.5.2.0.235 2010.03.17 -
TrendMicro 9.120.0.1004 2010.03.16 TSPY_KATES.SMF
VBA32 3.12.12.2 2010.03.16 -
ViRobot 2010.3.17.2231 2010.03.17 -
VirusBuster 5.0.27.0 2010.03.16 -
Informazioni addizionali
File size: 31232 bytes
MD5 : 4f07d71f4489699e9c51b2ee0aac0f4b
SHA1 : f2ab9c2f1f211cc783e79b60255b627f4c080d27
SHA256: 78e1dec7a7bf03f7daf7e76fdef77bdbf6a5f087f516c6b09d 71dea321cd5c6a
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x12F40
timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992)
machinetype.......: 0x14C (Intel I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
UPX0 0x1000 0xB000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e
UPX1 0xC000 0x8000 0x7200 7.74 36c6bcd62c5235405019c3a782a1580b
.rsrc 0x14000 0x1000 0x400 3.06 0cf0274235d3fcef65e44549a1d728e9
( 4 imports )
> advapi32.dll: IsValidSid
> gdi32.dll: FlattenPath
> kernel32.dll: LoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess
> user32.dll: GetSysColor
( 0 exports )
TrID : File type identification
UPX compressed Win32 Executable (38.5%)
Win32 EXE Yoda's Crypter (33.4%)
Win32 Executable Generic (10.7%)
Win32 Dynamic Link Library (generic) (9.5%)
Win16/32 Executable Delphi generic (2.6%)
ssdeep: 384:+3TDUyReuLiDFtgugM98NNRzIPt6aiWHF3h9X2EwwjiGB4 P/iW+t0st4YymsGDH:sTDUKeD8M9SNRepF3h9GEwK4SP7QF
sigcheck: publisher....: n/a
copyright....: n/a
product......: n/a
description..: Icnpighwdbnay
original name: n/a
internal name: n/a
file version.: 1.0.21
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEiD : -
packers (Kaspersky): PE_Patch.UPX, UPX
packers (F-Prot): UPX
RDS : NSRL Reference Data Set
-
********************************************
Comunque per quanto riguarda quel file setup2.exe, molte spesso quando avvio il computer succede che mi esce la finestra che dice che c'è stato un errore, se voglio inviare a microsoft, l'applicazione verrà chiusa, termina adesso ecc..
credo che stanotte quando si è riavviato il compure è proprio successo.
ok rieseguo la scansione da modalità provvisoria.
Dalla modalità provvisoria non vedo l'icona per lanciare il programma system scan.

Rispondi quotando
