1992-06-20 01:22:17
8679c8c71268858668c3b616f436e78f
Name | Virtual Address | Virtual Size | Size of Raw Data | Entropy |
---|---|---|---|---|
CODE | 0x00001000 | 0x00009e90 | 0x0000a000 | 6.30968641945 |
DATA | 0x0000b000 | 0x000001a0 | 0x00000200 | 3.73713080722 |
BSS | 0x0000c000 | 0x0000118d | 0x00000000 | 0.0 |
.idata | 0x0000e000 | 0x0000091c | 0x00000a00 | 4.26796097461 |
.tls | 0x0000f000 | 0x00000008 | 0x00000000 | 0.0 |
.rdata | 0x00010000 | 0x00000018 | 0x00000200 | 0.186582516435 |
.reloc | 0x00011000 | 0x0000095c | 0x00000a00 | 6.47441976485 |
.rsrc | 0x00012000 | 0x00000600 | 0x00000600 | 3.78054784262 |
Name | Offset | Size | Language | Sub-language | File type |
---|---|---|---|---|---|
RT_ICON | 0x00012150 | 0x000002e8 | LANG_ENGLISH | SUBLANG_ENGLISH_PHILIPPINES | Device independent bitmap graphic, 32 x 64 x 4, image size 512 |
RT_RCDATA | 0x00012448 | 0x000000a8 | LANG_NEUTRAL | SUBLANG_NEUTRAL | data |
RT_RCDATA | 0x00012448 | 0x000000a8 | LANG_NEUTRAL | SUBLANG_NEUTRAL | data |
RT_GROUP_ICON | 0x000124f0 | 0x00000014 | LANG_ENGLISH | SUBLANG_ENGLISH_PHILIPPINES | data |
IRMA | Signature |
---|---|
Trend Micro SProtect (Linux) | TROJ_DELF.SMUA |
Avast Core Security (Linux) | Win32:IRCBot-EXE [Trj] |
C4S ClamAV (Linux) | Win.Trojan.Delf-6717398-0 |
Trellix (Linux) | Generic BackDoor.ww trojan |
Sophos Anti-Virus (Linux) | Troj/Luiha-BN |
Bitdefender Antivirus (Linux) | Dropped:Generic.Malware.S!dld!.C425D330 |
G Data Antivirus (Windows) | Virus: Dropped:Generic.Malware.S!dld!.C425D330 (Engine A), Win32.Worm.MyDoom.B (Engine B) |
WithSecure (Linux) | Worm.WORM/Rbot.Gen |
ESET Security (Windows) | a variant of Win32/LunaStorm.D worm |
DrWeb Antivirus (Linux) | Trojan.Siggen3.61286 |
ClamAV (Linux) | Win.Trojan.Delf-6717398-0 |
eScan Antivirus (Linux) | Dropped:Generic.Malware.S!dld!.C425D330(DB) |
Emsisoft Commandline Scanner (Windows) | Dropped:Generic.Malware.S!dld!.C425D330 (B) |