2019-01-20 02:32:00
aeeec5fe0b1c733ee2773f1d1cb370d3
Name | Virtual Address | Virtual Size | Size of Raw Data | Entropy |
---|---|---|---|---|
.text | 0x00001000 | 0x0002a5c4 | 0x0002b000 | 7.57134770361 |
.data | 0x0002c000 | 0x00000a20 | 0x00001000 | 0.0 |
.rsrc | 0x0002d000 | 0x000479f8 | 0x00048000 | 2.45992893886 |
Name | Offset | Size | Language | Sub-language | File type |
---|---|---|---|---|---|
RT_ICON | 0x0002d0e8 | 0x000476c8 | LANG_NEUTRAL | SUBLANG_NEUTRAL | Device independent bitmap graphic, 256 x 554 x 32, image size 283648 |
RT_GROUP_ICON | 0x000747b0 | 0x00000014 | LANG_NEUTRAL | SUBLANG_NEUTRAL | data |
RT_VERSION | 0x000747c4 | 0x00000234 | LANG_CHINESE | SUBLANG_CHINESE_SIMPLIFIED | data |
Antivirus | Signature |
---|---|
Bkav | Clean |
Lionic | Clean |
Elastic | malicious (high confidence) |
ClamAV | Win.Trojan.Barys-10005825-0 |
CMC | Clean |
CAT-QuickHeal | Clean |
Skyhigh | BehavesLike.Win32.Generic.gt |
ALYac | Generic.Dacic.94CCEEA9.A.EFB87E45 |
Cylance | Unsafe |
Zillya | Trojan.VBGen.Win32.1 |
Sangfor | Trojan.Win32.Save.a |
CrowdStrike | win/malicious_confidence_100% (W) |
Alibaba | Clean |
K7GW | Trojan ( 005690671 ) |
K7AntiVirus | Trojan ( 005690671 ) |
huorong | Trojan/VBClone.f |
Baidu | Clean |
VirIT | Trojan.Win32.VBUnicorn.AA |
Paloalto | Clean |
Symantec | Trojan.Dropper |
tehtris | Clean |
ESET-NOD32 | Win32/VBClone.K |
APEX | Malicious |
Avast | Win32:Evo-gen [Trj] |
Cynet | Malicious (score: 100) |
Kaspersky | Trojan.Win32.VB.dosq |
BitDefender | Generic.Dacic.94CCEEA9.A.EFB87E45 |
NANO-Antivirus | Trojan.Win32.Fragtor.kqdbox |
ViRobot | Clean |
MicroWorld-eScan | Generic.Dacic.94CCEEA9.A.EFB87E45 |
Tencent | Trojan.Win32.Vbclone.cc |
Sophos | Troj/VB-KCP |
F-Secure | Trojan.TR/Crypt.XPACK.Gen |
DrWeb | Trojan.MulDrop20.3145 |
VIPRE | Generic.Dacic.94CCEEA9.A.EFB87E45 |
TrendMicro | Trojan.Win32.FAREIT.SME |
McAfeeD | ti!B52FC5FE077F |
Trapmine | Clean |
CTX | exe.unknown.dacic |
Emsisoft | Generic.Dacic.94CCEEA9.A.EFB87E45 (B) |
Ikarus | Trojan.Win32.VBClone |
FireEye | Generic.mg.19a78d414511e85c |
Jiangmin | Worm.WBNA.roep |
Webroot | W32.Trojan.Gen |
Varist | W32/VB.AED.gen!Eldorado |
Avira | TR/Crypt.XPACK.Gen |
Fortinet | W32/VBClone.D!tr |
Antiy-AVL | Trojan/Win32.VBClone.e |
Kingsoft | Clean |
Gridinsoft | Clean |
Xcitium | Clean |
Arcabit | Generic.Dacic.94CCEEA9.A.EFB87E45 |
SUPERAntiSpyware | Trojan.Agent/Gen-Tedy |
ZoneAlarm | Troj/VB-KCP |
Microsoft | Trojan:Win32/Fareit.VB!MTB |
Detected | |
AhnLab-V3 | Trojan/Win.Fareit.R665861 |
Acronis | Clean |
McAfee | GenericRXWO-KC!19A78D414511 |
TACHYON | Trojan/W32.VB-Agent.479253.D |
VBA32 | SScope.Trojan.VB |
Malwarebytes | Generic.Malware.AI.DDS |
Panda | Trj/Genetic.gen |
Zoner | Clean |
TrendMicro-HouseCall | Trojan.Win32.FAREIT.SME |
Rising | Trojan.VBClone!1.1072E (CLASSIC) |
Yandex | Trojan.VB!esqNFVrPQ1Q |
SentinelOne | Static AI - Malicious PE |
MaxSecure | Clean |
GData | Win32.Trojan.PSE.12JP8BN |
AVG | Win32:Evo-gen [Trj] |
DeepInstinct | MALICIOUS |
alibabacloud | Trojan:Win/Muldrop.B |
IRMA | Signature |
---|---|
ESET Security (Windows) | Win32/VBClone.K trojan |
Avast Core Security (Linux) | Win32:Evo-gen [Trj] |
C4S ClamAV (Linux) | Win.Trojan.Barys-10005825-0 |
F-Secure Antivirus (Linux) | Trojan.TR/Crypt.XPACK.Gen [Aquarius] |
McAfee CLI scanner (Linux) | Clean |
Bitdefender Antivirus (Linux) | Generic.Dacic.94CCEEA9.A.EFB87E45 |
G Data Antivirus (Windows) | Virus: Generic.Dacic.94CCEEA9.A.EFB87E45 (Engine A), Win32.Trojan.PSE.1FY1FUT (Engine B) |
Sophos Anti-Virus (Linux) | Troj/VB-KCP |
DrWeb Antivirus (Linux) | Trojan.MulDrop20.3145 |
Trend Micro SProtect (Linux) | Trojan.Win32.FAREIT.SME |
WithSecure (Linux) | Trojan.TR/Crypt.XPACK.Gen |
ClamAV (Linux) | Win.Trojan.Barys-10005825-0 |
eScan Antivirus (Linux) | Generic.Dacic.94CCEEA9.A.EFB87E45(DB) |
Kaspersky Standard (Windows) | Trojan.Win32.VB.dosq |
Emsisoft Commandline Scanner (Windows) | Generic.Dacic.94CCEEA9.A.EFB87E45 (B) |