39df865a386eacd882b64d82ae4d74c9---kpscc.sys


 附件: 您所在的用户组无法下载或查看附件

O23 - 服务: DMusic (Microsoft Kernel DLS Syntheiszer) - C:\WINDOWS\system32\drivers\kpscc.sys | 2011-1-21 17:48:31(手动)

文件说明符 : C:\WINDOWS\system32\drivers\kpscc.sys
属性 : ASH-
数字签名:否
PE文件:是
获取文件版本信息大小失败!
创建时间 : 2011-1-21 17:48:31
修改时间 : 2011-1-21 17:48:31
大小 : 2112 字节 2.64 KB
MD5 : 39df865a386eacd882b64d82ae4d74c9
SHA1: 334FD37696CF23AAF847564689F4DB4A81087C21
CRC32: 503b4008

http://www.virustotal.com/file-scan/report.html?id=6249de12afe3bd4af3b713874e087831302bfbd48a2a17ee141fa7fb8a9c4235-1295758047
AhnLab-V32011.01.18.002011.01.17Trojan/Win32.Agent
AntiVir7.11.1.2162011.01.21TR/Agent.fygn
Antiy-AVL2.0.3.72011.01.18Trojan/Win32.Agent.gen
Avast4.8.1351.02011.01.22Win32:Malware-gen
Avast55.0.677.02011.01.22Win32:Malware-gen
AVG10.0.0.11902011.01.22Agent2.BTQJ
BitDefender7.22011.01.22Trojan.Generic.5225404
CAT-QuickHeal11.002011.01.22Trojan.Agent.gjxb
ClamAV0.96.4.02011.01.22-
Commtouch5.2.11.52011.01.22W32/MalwareF.UIQD
Comodo74682011.01.22UnclassifiedMalware
DrWeb5.0.2.033002011.01.22Trojan.Siggen2.11657
Emsisoft5.1.0.12011.01.22Trojan.Win32.Agent!IK
eSafe7.0.17.02011.01.20Win32.TRAgent.Fygn
eTrust-Vet36.1.81152011.01.21Win32/Agent.SN
F-Prot4.6.2.1172011.01.21W32/MalwareF.UIQD
F-Secure9.0.16160.02011.01.22Trojan.Generic.5225404
Fortinet4.2.254.02011.01.22W32/Agent.GJXB!tr
GData212011.01.22Trojan.Generic.5225404
IkarusT3.1.1.97.02011.01.22Trojan.Win32.Agent
Jiangmin13.0.9002011.01.22Trojan/Agent.emqw
K7AntiVirus9.77.36182011.01.22Trojan
Kaspersky7.0.0.1252011.01.22Trojan.Win32.Agent.gjxb
McAfee5.400.0.11582011.01.22Generic.dx!vgh
McAfee-GW-Edition2010.1C2011.01.22Generic.dx!vgh
Microsoft1.65022011.01.22Trojan:Win32/Trufip!rts
NOD3258082011.01.22Win32/Delf.PTN
Norman6.06.122011.01.22W32/Suspicious_Gen2.FBIJC
nProtect2011-01-18.012011.01.18Trojan/W32.Agent.2112.D
Panda10.0.2.72011.01.22Generic Trojan
PCTools7.0.3.52011.01.22Trojan.Gen
Prevx3.02011.01.23-
Rising23.41.05.032011.01.22-
Sophos4.61.02011.01.22Mal/Generic-L
SUPERAntiSpyware4.40.0.10062011.01.22-
Symantec20101.3.0.1032011.01.22Trojan.Gen
TheHacker6.7.0.1.1182011.01.21Trojan/Agent.fygn
TrendMicro9.120.0.10042011.01.22TROJ_AGENT.AWPP
TrendMicro-HouseCall9.120.0.10042011.01.22TROJ_AGENT.AWPP
VBA323.12.14.32011.01.21Trojan.Agent.gjxb
VIPRE81552011.01.22Trojan.Win32.Generic!BT
ViRobot2011.1.22.42692011.01.22-
VirusBuster13.6.159.22011.01.22Trojan.Agent!ngqrSxVKa7A

Additional information

Show all
MD5  : 39df865a386eacd882b64d82ae4d74c9
SHA1  : 334fd37696cf23aaf847564689f4db4a81087c21
SHA256: 6249de12afe3bd4af3b713874e087831302bfbd48a2a17ee141fa7fb8a9c4235
ssdeep: 24:eFGSlNEYCmK9wlsOLkijNGZCUNFfTWxDHjDg0+2quTgLswR9trVg:ilybmK9wqjnQUNFfTWV
HHgw9TgbRPV
File size : 2112 bytes
First seen: 2010-12-18 01:50:22
Last seen : 2011-01-23 04:47:27
TrID:
Generic Win/DOS Executable (49.9%)
DOS Executable Generic (49.8%)
Autodesk FLIC Image File (extensions: flc, fli, cel) (0.1%)
sigcheck:
publisher....: n/a
copyright....: n/a
product......: n/a
description..: n/a
original name: n/a
internal name: n/a
file version.: n/a
comments.....: n/a
signers......: -
signing date.: -
verified.....: Unsigned
PEInfo: PE structure information

[[ basic data ]]
entrypointaddress: 0x3E8
timedatestamp....: 0x4D076CD6 (Tue Dec 14 13:10:46 2010)
machinetype......: 0x14c (I386)

[[ 7 section(s) ]]
name, viradd, virsiz, rawdsiz, ntropy, md5
.text, 0x2E0, 0x22E, 0x240, 5.56, 4ffbf2d62a356c033e452d5e02b46250
.rdata, 0x520, 0x24, 0x40, 1.44, 18b9d582a65d04e9b7bfb077d06dd53b
.data, 0x560, 0x120, 0x120, 0.00, 4556165d7fe41c7700cbe455a5767d40
_INIT_, 0x680, 0x18, 0x20, 0.54, 2a636ae56e32953ad842589262c7710c
_EXIT_, 0x6A0, 0x18, 0x20, 0.54, 2a636ae56e32953ad842589262c7710c
INIT, 0x6C0, 0x106, 0x120, 4.37, 02b93393d411b5895ae4e8bc30a3c091
.reloc, 0x7E0, 0x48, 0x60, 2.89, a0dc1f891dcbe7dfcf307100a4e6485c

[[ 1 import(s) ]]
NTOSKRNL.EXE: PsLookupProcessByProcessId, RtlInitUnicodeString, IoDeleteDevice, IoCreateSymbolicLink, IoCreateDevice, DbgPrint, IoDeleteSymbolicLink, IofCompleteRequest


用户系统信息:Mozilla/4.0 (compatible; MSIE 6.0; Windows NT 5.1; SV1; Maxthon)
http://blog.csdn.net/purpleendurer

宠辱不惊,笑看堂前花开花落; 去留无意,漫随天外云卷云舒。