HBInject.exe,在线扫描 结果: 4/36 (11.12%)
附件:
您所在的用户组无法下载或查看附件解压密码:virus
O4 - HKLM\..\Run: [HBService]
C:\WINDOWS\system32\HBInject.exe 文件 537eb9dd599a5ebf44e99d4f086797ba- 接收于 2008.08.07 16:49:45 (CET)
反病毒引擎 | 版本 | 最后更新 | 扫描结果 |
AhnLab-V3 | 2008.8.8.0 | 2008.08.07 | - |
AntiVir | 7.8.1.19 | 2008.08.07 | - |
Authentium | 5.1.0.4 | 2008.08.07 | - |
Avast | 4.8.1195.0 | 2008.08.07 | - |
AVG | 8.0.0.156 | 2008.08.07 | - |
BitDefender | 7.2 | 2008.08.07 | - |
CAT-QuickHeal | 9.50 | 2008.08.07 | - |
ClamAV | 0.93.1 | 2008.08.07 | - |
DrWeb | 4.44.0.09170 | 2008.08.07 | - |
eSafe | 7.0.17.0 | 2008.08.07 | - |
eTrust-Vet | 31.6.6016 | 2008.08.06 | - |
Ewido | 4.0 | 2008.08.07 | - |
F-Prot | 4.4.4.56 | 2008.08.06 | - |
F-Secure | 7.60.13501.0 | 2008.08.07 | - |
Fortinet | 3.14.0.0 | 2008.08.07 | Spy/ONLINEG |
GData | 2.0.7306.1023 | 2008.08.07 | - |
Ikarus | T3.1.1.34.0 | 2008.08.07 | - |
K7AntiVirus | 7.10.407 | 2008.08.07 | - |
Kaspersky | 7.0.0.125 | 2008.08.07 | - |
McAfee | 5355 | 2008.08.06 | - |
Microsoft | 1.3807 | 2008.08.07 | - |
NOD32v2 | 3336 | 2008.08.07 | - |
Norman | 5.80.02 | 2008.08.06 | - |
Panda | 9.0.0.4 | 2008.08.06 | - |
PCTools | 4.4.2.0 | 2008.08.07 | - |
Prevx1 | V2 | 2008.08.07 | Suspicious |
Rising | 20.56.32.00 | 2008.08.07 | - |
Sophos | 4.31.0 | 2008.08.07 | - |
Sunbelt | 3.1.1537.1 | 2008.08.07 | - |
Symantec | 10 | 2008.08.07 | Infostealer.Gampass |
TheHacker | 6.2.96.393 | 2008.08.04 | - |
TrendMicro | 8.700.0.1004 | 2008.08.07 | TSPY_ONLINEG.CRJ |
VBA32 | 3.12.8.2 | 2008.08.06 | - |
ViRobot | 2008.8.7.1328 | 2008.08.07 | - |
VirusBuster | 4.5.11.0 | 2008.08.07 | - |
Webwasher-Gateway | 6.6.2 | 2008.08.07 | - |
|
附加信息 |
File size: 2560 bytes |
MD5...: 537eb9dd599a5ebf44e99d4f086797ba |
SHA1..: f38a1ee9d9ec4019a4b836832c95dbbb005902aa |
SHA256: 6b76f0c74838692509cf495a0cee4f1228b35b82da4bef13695f70260ca06865 |
SHA512: 39b60ead0c3648ff1ffd8e3b335886f563c0619de2eb8ec2ccc611f05a8f4c19<BR>821c760bf4222948de3c963112510496f5142581a28fecfeffd64bb6bdde6aa2 |
PEiD..: - |
PEInfo: PE Structure information
( base data )
entrypointaddress.: 0x40107c
timedatestamp.....: 0x4897f352 (Tue Aug 05 06:29:38 2008)
machinetype.......: 0x14c (I386)
( 3 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0xd2 0x200 2.37 ebd9ed049de6326e2678e981307e305e
.rdata 0x2000 0x13a 0x200 2.78 28ea8eb1921796b65ad6c2d62f3ad599
.rsrc 0x3000 0xa8 0x200 0.79 2709d5efd0796263d6d288d90d1fed9e
( 3 imports )
> KERNEL32.dll: GetModuleHandleA, ExitProcess
> USER32.dll: EndDialog, DialogBoxParamA, SetWindowPlacement
> HBmhly.dll: StartService, StopService
( 0 exports )
用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.0; Maxthon; .NET CLR 1.1.4322; .NET CLR 2.0.50727)