Rapport virustotal à lire

el-vega Messages postés 22 Statut Membre -  
 fred -
Bonjour,je cherche quel qu'un pour m'interpréter ce rapport de virustotal, que je ne serais interprété moi même.merci pour votre générosité.



Fichier pop.exe reçu le 2009.07.02 11:09:08 (UTC)
Situation actuelle: terminé
Résultat: 0/41 (0.00%)
Formaté Formaté
Impression des résultats Impression des résultats
Antivirus Version Dernière mise à jour Résultat
a-squared 4.5.0.18 2009.07.02 -
AhnLab-V3 5.0.0.2 2009.07.01 -
AntiVir 7.9.0.199 2009.07.02 -
Antiy-AVL 2.0.3.1 2009.07.02 -
Authentium 5.1.2.4 2009.07.01 -
Avast 4.8.1335.0 2009.07.01 -
AVG 8.5.0.386 2009.07.02 -
BitDefender 7.2 2009.07.02 -
CAT-QuickHeal 10.00 2009.07.02 -
ClamAV 0.94.1 2009.07.02 -
Comodo 1538 2009.07.02 -
DrWeb 5.0.0.12182 2009.07.02 -
eSafe 7.0.17.0 2009.06.29 -
eTrust-Vet 31.6.6593 2009.07.02 -
F-Prot 4.4.4.56 2009.07.01 -
F-Secure 8.0.14470.0 2009.07.02 -
Fortinet 3.117.0.0 2009.07.02 -
GData 19 2009.07.02 -
Ikarus T3.1.1.64.0 2009.07.02 -
Jiangmin 11.0.706 2009.07.02 -
K7AntiVirus 7.10.768 2009.06.19 -
Kaspersky 7.0.0.125 2009.07.02 -
McAfee 5663 2009.07.01 -
McAfee+Artemis 5663 2009.07.01 -
McAfee-GW-Edition 6.8.5 2009.07.02 -
Microsoft 1.4803 2009.07.02 -
NOD32 4209 2009.07.02 -
Norman 6.01.09 2009.07.02 -
nProtect 2009.1.8.0 2009.07.02 -
Panda 10.0.0.14 2009.07.02 -
PCTools 4.4.2.0 2009.07.01 -
Prevx 3.0 2009.07.02 -
Rising 21.36.32.00 2009.07.02 -
Sophos 4.43.0 2009.07.02 -
Sunbelt 3.2.1858.2 2009.07.01 -
Symantec 1.4.4.12 2009.07.02 -
TheHacker 6.3.4.3.359 2009.07.02 -
TrendMicro 8.950.0.1094 2009.07.02 -
VBA32 3.12.10.7 2009.07.02 -
ViRobot 2009.7.2.1815 2009.07.02 -
VirusBuster 4.6.5.0 2009.07.01 -
Information additionnelle
File size: 4280320 bytes
MD5 : 4117ec50fe5af44a05d43e69a4170507
SHA1 : 260684ca6cde8150fffb2226156a419199d88b4b
SHA256: 5d1c38db652103978b0890a7753d785e4d06467b15709b12345ba610d3600d18
PEInfo: PE Structure information

( base data )
entrypointaddress.: 0x328559
timedatestamp.....: 0x504D6947 (Mon Sep 10 06:15:03 2012)
machinetype.......: 0x14C (Intel I386)

( 4 sections )
name viradd virsiz rawdsiz ntrpy md5
.text 0x1000 0x3A4000 0x3A4000 6.61 713e3753e22f2098f251f1c6395317f3
.rdata 0x3A5000 0x4B000 0x4B000 5.76 ee115e93f0ec3201445669ded36b69f7
.data 0x3F0000 0x340000 0x1C000 5.14 19d522c1c7bbe50ceca6be2290770dc2
.rsrc 0x730000 0x9000 0x9000 5.18 deb8e974cc2203af5d0dc6bebc5dec7e

( 10 imports )

> advapi32.dll: RegOpenKeyA, RegQueryValueExA, RegCloseKey
> binkw32.dll: _BinkWait@4, _BinkClose@4, _BinkDoFrame@4, _BinkSetSoundTrack@8, _BinkSetSoundSystem@8, _BinkOpenDirectSound@4, _BinkCopyToBuffer@28, _BinkNextFrame@4, _BinkSetVolume@12, _BinkOpen@8
> d3d9.dll: Direct3DCreate9
> dinput8.dll: DirectInput8Create
> dsound.dll: -
> eax.dll: -
> gdi32.dll: DeleteObject, GetStockObject
> kernel32.dll: GetCurrentThreadId, GlobalMemoryStatus, Module32Next, Module32First, CreateToolhelp32Snapshot, GetCurrentProcessId, GetCurrentThread, CreateFileA, EnterCriticalSection, GetProcAddress, LoadLibraryA, InitializeCriticalSection, DeleteFileA, GetLastError, CreateMutexA, CreateEventA, SetEvent, WaitForSingleObject, ResetEvent, ReadFile, SetFilePointer, GetFileSize, Sleep, ExitThread, GetLocalTime, CreateThread, GetVolumeInformationA, CloseHandle, GetLogicalDrives, GetPrivateProfileIntA, GetPrivateProfileStringA, GetCurrentDirectoryA, GetCommandLineA, SetCurrentDirectoryA, FreeLibrary, LeaveCriticalSection, GetModuleHandleA, GetProcessHeap, lstrcmpiA, IsProcessorFeaturePresent, UnmapViewOfFile, CreateFileW, CreateFileMappingA, MapViewOfFile, WriteFile, GetModuleFileNameA, SetThreadPriority, SetUnhandledExceptionFilter, SetEnvironmentVariableA, CompareStringW, CompareStringA, GetLocaleInfoW, GetStringTypeW, GetStringTypeA, IsValidCodePage, IsValidLocale, EnumSystemLocalesA, DeleteCriticalSection, GetCurrentProcess, TerminateProcess, GetDriveTypeA, GetLocaleInfoA, GetUserDefaultLCID, IsBadCodePtr, OutputDebugStringA, CreateDirectoryA, FindClose, FindNextFileA, FindFirstFileA, RemoveDirectoryA, MoveFileA, QueryPerformanceCounter, SetPriorityClass, GetThreadPriority, GetPriorityClass, QueryPerformanceFrequency, GetSystemInfo, VirtualAlloc, VirtualFree, SetEndOfFile, WaitForMultipleObjects, CreateSemaphoreA, ReleaseSemaphore, DebugBreak, ReleaseMutex, WritePrivateProfileStringA, GetVersionExA, ExitProcess, FileTimeToSystemTime, FileTimeToLocalFileTime, RtlUnwind, MultiByteToWideChar, RaiseException, WideCharToMultiByte, GetStartupInfoA, HeapFree, HeapAlloc, SetFileAttributesA, GetFileAttributesA, GetSystemTimeAsFileTime, HeapReAlloc, GetTickCount, GetFullPathNameA, TlsAlloc, SetLastError, TlsFree, TlsSetValue, TlsGetValue, HeapSize, SetHandleCount, GetStdHandle, GetFileType, UnhandledExceptionFilter, FreeEnvironmentStringsA, GetEnvironmentStrings, FreeEnvironmentStringsW, GetEnvironmentStringsW, HeapDestroy, HeapCreate, FlushFileBuffers, IsBadWritePtr, GetTimeZoneInformation, SetStdHandle, InterlockedExchange, VirtualQuery, VirtualProtect, LCMapStringA, LCMapStringW, GetACP, GetOEMCP, GetCPInfo, IsBadReadPtr
> user32.dll: CreateWindowExA, SetCursor, DefWindowProcA, RegisterWindowMessageA, GetMessageA, PostThreadMessageA, PeekMessageA, DispatchMessageA, TranslateMessage, SetWindowLongA, GetSystemMetrics, ClientToScreen, GetClientRect, KillTimer, DestroyWindow, MessageBoxA, SetTimer, LoadIconA, RegisterClassA, AdjustWindowRect, GetAsyncKeyState, ShowWindow, UpdateWindow, BeginPaint, EndPaint, wsprintfA
> winmm.dll: waveOutGetDevCapsA, timeSetEvent

( 1 exports )

> CDAPFN0506_SECURE_BASE_0Decode, CDAPFN0506_SECURE_BASE_0Encode, CDAPFN0506_SECURE_BASE_1Decode, CDAPFN0506_SECURE_BASE_1Encode, CDAPFN0506_SECURE_BASE_2Decode, CDAPFN0506_SECURE_BASE_2Encode, CDAPFN0506_SECURE_BASE_3Decode, CDAPFN0506_SECURE_BASE_3Encode, CDAPFN0506_SECURE_BASE_4Decode, CDAPFN0506_SECURE_BASE_4Encode, CDAPFN0506_SECURE_BASE_5Decode, CDAPFN0506_SECURE_BASE_5Encode, CDAPFN0506_SECURE_BASE_6Decode, CDAPFN0506_SECURE_BASE_6Encode, CDAPFN0506_SECURE_BASE_7Decode, CDAPFN0506_SECURE_BASE_7Encode, _EnterCriticalSectionTool_@0, _MouchardThreadTool@8, _QuitCriticalSectionTool@0, _SND_Is_SSE_Supported@0, _SND_fn_bFileNameExist@4, _SND_fn_bGetMasterDirectory@8, _SND_fn_bGetOnePartialDirectory@12, _SND_fn_bGetOptions@16, _SND_fn_bGetRollOffStaticParameter@8, _SND_fn_bGetSoundEventNameFromEditorId@12, _SND_fn_bInitMallocSnd@0, _SND_fn_bInitStreamAsyncSnd@8, _SND_fn_bIsDataDirectory@4, _SND_fn_bIsLastStreamAsyncDoneSnd@4, _SND_fn_bIsScriptModeUsed@0, _SND_fn_bLoadDataInMem@16, _SND_fn_bTestFileExistSnd@4, _SND_fn_bTestSnd_MMX@0, _SND_fn_bTestSnd_Pentium@0, _SND_fn_bTestSnd_Win32@0, _SND_fn_bTestSnd_WinMM@4, _SND_fn_bTestSnd_WinNT4@0, _SND_fn_cGetDirectorySeparator@0, _SND_fn_eSynchStreamAsyncSnd@16, _SND_fn_fGetDolbyLtCoef@4, _SND_fn_fGetDolbyRtCoef@4, _SND_fn_hCreateStreamAsyncSnd@8, _SND_fn_hGetSoundEventHandleFromEditorId@4, _SND_fn_hGetSoundEventHandleFromSectionName@4, _SND_fn_hOpenFileReadSnd@4, _SND_fn_iSoundDriverBusy@4, _SND_fn_lCreateTimer@0, _SND_fn_lGenerateSndTocKey@4, _SND_fn_lSoundAngleToDolbyAngle@8, _SND_fn_lStrLwr@4, _SND_fn_lStriCmp@8, _SND_fn_pGetBinEvent@4, _SND_fn_pGetBinRes@4, _SND_fn_pstGetResFromEdIdSnd@4, _SND_fn_pvMallocSndAligned@8, _SND_fn_pvMallocSnd_Real@8, _SND_fn_pvReAllocSnd@8, _SND_fn_pvReAllocSndAligned@12, _SND_fn_rAbsRealSnd@4, _SND_fn_rDistanceToVolume@4, _SND_fn_rDistanceToVolumeEx@8, _SND_fn_rDivRealRealQuickSnd@8, _SND_fn_rDivRealRealSnd@8, _SND_fn_rDopplerPitch@16, _SND_fn_rGetCurrentTime@4, _SND_fn_rGetDopplerFactor@0, _SND_fn_rGetNormeSxd@4, _SND_fn_rMulRealRealQuickSnd@8, _SND_fn_rMulRealRealSnd@8, _SND_fn_rNormeVectorSnd@4, _SND_fn_rPseudoNormeRealSnd@12, _SND_fn_rPseudoNormeVectorSnd@4, _SND_fn_rPseudoScalaireNormeVectorSnd@8, _SND_fn_rScalaireVectorSnd@8, _SND_fn_rSqrtRealSnd@4, _SND_fn_rtSndRealToSndRealTwin@8, _SND_fn_szGetCurrentLangDirectory@0, _SND_fn_szGetSoftDirectory@0, _SND_fn_ucPositionToDolby@12, _SND_fn_ucPositionToPan@16, _SND_fn_ulGetEditorIdFromSoundEventName@4, _SND_fn_ulGetListOfSoundEventGroupName@8, _SND_fn_ulGetListOfSoundEventNameInGroup@12, _SND_fn_ulGetNumberOfPartialDirectory@0, _SND_fn_ulGetNumberOfSoundEventGroup@0, _SND_fn_ulGetNumberOfSoundEventInGroup@4, _SND_fn_ulReadFileSnd@12, _SND_fn_ulSeekFileSnd@12, _SND_fn_vAbortLastStreamAsyncSnd@4, _SND_fn_vAddPartialDirectory@4, _SND_fn_vBestConvertionForSndParToPrivSndPar@16, _SND_fn_vCloseFileSnd@4, _SND_fn_vDesInitErrorSnd@0, _SND_fn_vDesInitMallocSnd@0, _SND_fn_vDesInitStreamAsyncSnd@0, _SND_fn_vDesInitThreadSnd@0, _SND_fn_vDestroyStreamAsyncSnd@4, _SND_fn_vDestroyTimer@4, _SND_fn_vDisplayError@8, _SND_fn_vDisplayErrorEx@12, _SND_fn_vEnterCriticalSectionThreadSnd_@0, _SND_fn_vFreeSnd@4, _SND_fn_vFreeSndAligned@8, _SND_fn_vGetDefaultRollOff@4, _SND_fn_vGetHModuleDbg@0, _SND_fn_vInitErrorSnd@4, _SND_fn_vInitThreadSnd@0, _SND_fn_vMemCopySnd@12, _SND_fn_vMemMoveSnd@12, _SND_fn_vMemsetSnd@12, _SND_fn_vMouchardThreadsnd@8, _SND_fn_vPauseTimer@4, _SND_fn_vProduitVectorSnd@12, _SND_fn_vPurgeAllDirectories@0, _SND_fn_vQuitCriticalSectionThreadSnd@0, _SND_fn_vRemovePartialDirectory@4, _SND_fn_vResetTimer@4, _SND_fn_vResolveFileName@12, _SND_fn_vResumeTimer@4, _SND_fn_vSetCurrentLangDirectory@4, _SND_fn_vSetCurrentLanguage@4, _SND_fn_vSetDefaultRollOff@4, _SND_fn_vSetDopplerFactor@4, _SND_fn_vSetMasterDirectory@4, _SND_fn_vSetOptions@12, _SND_fn_vSetSoftDirectory@4, _SND_fn_vSndParToPrivSndPar@12, _SND_fn_vSndRealTwinToSndReal@12, _SND_fn_vStartStreamAsyncSnd@12, _SND_fn_vStopBeforeUnLoadResSnd@4, _SND_fn_vStrncpy@12, _SND_fn_vSynchroTimer@0, _SND_fn_vUnLoadResBinarySnd@4, _SND_fn_vVolPanToVolLR@20, __snd_assert@12, __snd_assert_message@16
TrID : File type identification
68.0% (.EXE) Win32 Executable Generic (8527/13/3)
15.9% (.EXE) Generic Win/DOS Executable (2002/3)
15.9% (.EXE) DOS Executable Generic (2000/1)
0.0% (.CEL) Autodesk FLIC Image File (extensions: flc, fli, cel) (7/3)
ssdeep: 49152:1whoKlz0yxyU5wCdF3zSOXVynxAWZBq/Fat3gAyFzJkjqYKnhCBYAzjr:1wz1TxkAB/0tQAyFzJgqYKnsBYAz
PEiD : -
RDS : NSRL Reference Data Set
A voir également:

3 réponses

Utilisateur anonyme
 
lu,

Situation actuelle: terminé
Résultat: 0/41 (0.00%)

fichier saint ou alors virus créer y a 1 minute, d'ou est la source de ce fichier ?
0
el-vega Messages postés 22 Statut Membre
 
comment ça virus créer y a une minute?.

pour le fichier, je fais des expériences T_T
0
fred
 
Bonjour
Ben oui, virustotal permet de comparer le résultat de 40 antivirus sur un seul fichier, à condition que ces antivirus aient déjà rencontré et identifié le virus.
Et il y a chaque heure des virus fabriqués par le monde donc il peut arriver que tu aies un virus très récent détecté par aucun des 40 antivirus.
0