瑞星把Teracopy判断为病毒?
瑞星杀毒结果,判断Teracopy.exe为 “可疑:Packer.Win32.UnkPacker.d”
这个软件我用得好好的,为什么呢?我的瑞星版本为2010版 22.00.02.96
附上Virustotal 的结果,6款软件判断有问题:
File TeraCopy.exe received on 2010.02.02 16:34:12 (UTC)
Current status: finished
Result:
6/40 (15.00%)
Compact
Print results
Antivirus | Version | Last Update | Result |
a-squared | 4.5.0.50 | 2010.02.02 | - |
AhnLab-V3 | 5.0.0.2 | 2010.02.01 | - |
AntiVir | 7.9.1.156 | 2010.02.02 | - |
Antiy-AVL | 2.0.3.7 | 2010.02.02 | - |
Authentium | 5.2.0.5 | 2010.02.02 | W32/Heuristic-210!Eldorado |
Avast | 4.8.1351.0 | 2010.02.02 | - |
AVG | 9.0.0.730 | 2010.02.02 | - |
BitDefender | 7.2 | 2010.02.02 | - |
CAT-QuickHeal | 10.00 | 2010.02.02 | (Suspicious) - DNAScan |
ClamAV | 0.96.0.0-git | 2010.02.02 | - |
Comodo | 3794 | 2010.02.02 | - |
DrWeb | 5.0.1.12222 | 2010.02.02 | - |
eSafe | 7.0.17.0 | 2010.02.02 | - |
eTrust-Vet | 35.2.7276 | 2010.02.02 | - |
F-Prot | 4.5.1.85 | 2010.02.01 | W32/Heuristic-210!Eldorado |
F-Secure | 9.0.15370.0 | 2010.02.02 | - |
Fortinet | 4.0.14.0 | 2010.02.02 | - |
GData | 19 | 2010.02.02 | - |
Ikarus | T3.1.1.80.0 | 2010.02.02 | - |
Jiangmin | 13.0.900 | 2010.02.02 | - |
K7AntiVirus | 7.10.963 | 2010.02.02 | - |
Kaspersky | 7.0.0.125 | 2010.02.02 | - |
McAfee | 5879 | 2010.02.01 | - |
McAfee+Artemis | 5879 | 2010.02.01 | Artemis!65C4771ACC2E |
McAfee-GW-Edition | 6.8.5 | 2010.02.02 | Heuristic.LooksLike.Win32.Suspicious.K!89 |
Microsoft | 1.5406 | 2010.02.02 | - |
NOD32 | 4828 | 2010.02.02 | - |
Norman | 6.04.03 | 2010.02.02 | - |
nProtect | 2009.1.8.0 | 2010.02.02 | - |
Panda | 10.0.2.2 | 2010.02.02 | - |
PCTools | 7.0.3.5 | 2010.02.02 | - |
Prevx | 3.0 | 2010.02.02 | - |
Rising | 22.33.01.04 | 2010.02.02 | Packer.Win32.UnkPacker.d |
Sophos | 4.50.0 | 2010.02.02 | - |
Sunbelt | 3.2.1858.2 | 2010.02.02 | - |
TheHacker | 6.5.1.0.176 | 2010.02.02 | - |
TrendMicro | 9.120.0.1004 | 2010.02.02 | - |
VBA32 | 3.12.12.1 | 2010.02.02 | - |
ViRobot | 2010.2.2.2168 | 2010.02.02 | - |
VirusBuster | 5.0.21.0 | 2010.02.02 | - |
Additional information |
File size: 957952 bytes |
MD5 : 65c4771acc2e1b4b761d8518596acc10 |
SHA1 : 9f925a384ef9c8a721efc193bbb7911af012522b |
SHA256: 0ebc770faefd76f0b8f44f5e9b6f641e72a6d46af840f7f35a8a5e0783fe8537 |
PEInfo: PE Structure information
( base data ) entrypointaddress.: 0x119000 timedatestamp.....: 0x2A425E19 (Sat Jun 20 00:22:17 1992) machinetype.......: 0x14C (Intel I386)
( 6 sections ) name viradd virsiz rawdsiz ntrpy md5 0x1000 0xE2000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e 0xE3000 0x1000 0x200 2.13 1b6cb2e05ff6f2080e7ff6bd225a89b8 .rsrc 0xE4000 0x33000 0x32300 4.21 d671c7b2ceeeee493e21536561e6feb4 0x117000 0x1000 0x200 0.00 bf619eac0cdf3f68d496ea9344137e8b 0x118000 0x1000 0x18 1.44 0d63af0ace18f890fe7844d79c7fc7cf 0x119000 0xD000 0xC600 7.98 6429d8040c3ed87290030197ab4e6838
( 3 imports )
> comctl32.dll: InitCommonControls > kernel32.dll: ExitProcess > user32.dll: MessageBoxA
( 0 exports )
|
TrID : File type identification Win32 Executable Generic (58.3%) Win16/32 Executable Delphi generic (14.1%) Generic Win/DOS Executable (13.7%) DOS Executable Generic (13.6%) Autodesk FLIC Image File (extensions: flc, fli, cel) (0.0%) |
ssdeep: 24576:gFVe84ggoZpus/gSTUeAOEkLWfiIW/79:YU845sBdE2WfXW |
PEiD : - |
packers (F-Prot): Obsidium |
packers (Authentium): Obsidium |
RDS : NSRL Reference Data Set - |
求真相!!用户系统信息:Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Embedded Web Browser from: http://bsalsa.com/; .NET CLR 2.0.50727; CIBA; 360SE)