此软件说是能够检测你是否为你的好友的好友。
经本人测试,此软件运行后会在C:\WINDOWS\生成F_Server.exe
F_Server.exe在Virustotal扫描的结果是
26杀软认为是病毒,很多都显示是灰鸽子。
请各位牛人帮着确认下这软件是否安全吧
扫描结果:
复制内容到剪贴板
代码:
Antivirus Version Last Update Result
AhnLab-V3 2008.5.22.1 2008.05.23 Win-Trojan/Hupigon.Gen
AntiVir 7.8.0.19 2008.05.24 BDS/Hupigon.bppo.13
Authentium 5.1.0.4 2008.05.23 W32/Downloader.C.gen!Eldorado
Avast 4.8.1195.0 2008.05.24 -
AVG 7.5.0.516 2008.05.24 BackDoor.Generic9.AHBS
BitDefender 7.2 2008.05.25 Backdoor.Delf.HOA
CAT-QuickHeal 9.50 2008.05.24 Backdoor.Hupigon.bppo
ClamAV 0.92.1 2008.05.25 Trojan.Hupigon-11254
DrWeb 4.44.0.09170 2008.05.25 BackDoor.Beizhu.1042
eSafe 7.0.15.0 2008.05.22 Win32.Hupigon.bppo
eTrust-Vet 31.4.5817 2008.05.23 -
Ewido 4.0 2008.05.24 -
F-Prot 4.4.4.56 2008.05.23 W32/Downloader.C.gen!Eldorado
F-Secure 6.70.13260.0 2008.05.23 Backdoor.Win32.Hupigon.bppo
Fortinet 3.14.0.0 2008.05.25 -
GData 2.0.7306.1023 2008.05.23 Backdoor.Win32.Hupigon.bppo
Ikarus T3.1.1.26.0 2008.05.25 Virus.Win32.Hupigon.AMD
Kaspersky 7.0.0.125 2008.05.25 Backdoor.Win32.Hupigon.bppo
McAfee 5302 2008.05.23 BackDoor-AWQ
Microsoft 1.3520 2008.05.25 Backdoor:Win32/Hupigon.RA
NOD32v2 3128 2008.05.23 probably a variant of Win32/GreyBird
Norman 5.80.02 2008.05.23 W32/Hupigon.DDHP
Panda 9.0.0.4 2008.05.24 Suspicious file
Prevx1 V2 2008.05.25 System Back Door
Rising 20.45.42.00 2008.05.23 Backdoor.Win32.Gpigeon2007.mrj
Sophos 4.29.0 2008.05.25 Mal/Behav-058
Sunbelt 3.0.1123.1 2008.05.17 Backdoor.Delf.HOA
Symantec 10 2008.05.25 -
TheHacker 6.2.92.318 2008.05.23 -
VBA32 3.12.6.6 2008.05.24 Backdoor.Win32.Hupigon.bppo
VirusBuster 4.3.26:9 2008.05.24 Backdoor.Hupigon.BJID
Webwasher-Gateway 6.6.2 2008.05.25 Trojan.Backdoor.Hupigon.bppo.13
Additional information
File size: 289792 bytes
MD5...: 193d6000e226e860cb0cc8b1356abbe8
SHA1..: 647ef4b0cd11adfcdde94c356a97df4a8f7453b0
SHA256: ca70c55bb243881c63fa73760c3b715bae2ebddbab753a9a6107f69c0c6f36b5
SHA512: 2ea8c9ea169a616abe69abe1e0e684a0b44e5c1651f562a83dedb7e79d414a96<BR>8109da894a7f8a483db992306307a0bbbed22b3145ec9f8666db89bebed9a58a
PEiD..: -
PEInfo: PE Structure information<BR><BR>( base data )<BR>entrypointaddress.: 0x4b82f0<BR>timedatestamp.....: 0x2a425e19 (Fri Jun 19 22:22:17 1992)<BR>machinetype.......: 0x14c (I386)<BR><BR>( 3 sections )<BR>name viradd virsiz rawdsiz ntrpy md5<BR>UPX0 0x1000 0x73000 0x0 0.00 d41d8cd98f00b204e9800998ecf8427e<BR>UPX1 0x74000 0x45000 0x44600 7.93 db843672b66ceb3fe1fc5d8487625868<BR>.rsrc 0xb9000 0x3000 0x2200 4.06 01ddaa4164ad5f13d5b5d11e04f04cd0<BR><BR>( 12 imports ) <BR>> KERNEL32.DLL: LoadLibraryA, GetProcAddress, VirtualProtect, VirtualAlloc, VirtualFree, ExitProcess<BR>> advapi32.dll: RegFlushKey<BR>> AVICAP32.dll: capCreateCaptureWindowA<BR>> comctl32.dll: ImageList_Add<BR>> gdi32.dll: SaveDC<BR>> MSVFW32.DLL: DrawDibDraw<BR>> oleaut32.dll: VariantCopy<BR>> shell32.dll: ShellExecuteA<BR>> URLMON.DLL: URLDownloadToFileA<BR>> user32.dll: GetDC<BR>> version.dll: VerQueryValueA<BR>> winmm.dll: waveInOpen<BR><BR>( 0 exports ) <BR>
Prevx info: http://info.prevx.com/aboutprogramtext.asp?PX5=90F85FF7002F23E76C8704D0DB5AB200D5018B6F
packers (Authentium): UPX
packers (Kaspersky): PE_Patch.UPX, UPX
packers (F-Prot): UPX