PE Compile Time

2012-01-19 06:28:47

PE Imphash

f68ddef5f29b66bbd543e947c8743bb0

Sections

Name Virtual Address Virtual Size Size of Raw Data Entropy
.MPRESS1 0x00001000 0x0000c000 0x0000b600 5.03570984875
.MPRESS2 0x0000d000 0x00001000 0x00000400 5.97174031675
.imports 0x0000e000 0x00001000 0x00000600 3.60484395691

Imports

Library ADVAPI32.dll:
0x405000 RegSetValueExA
0x405004 RegQueryValueExA
0x405008 RegOpenKeyExA
0x40500c RegCreateKeyA
0x405010 RegOpenKeyA
0x405014 RegCloseKey
Library KERNEL32.dll:
0x40501c GetStringTypeA
0x405020 LCMapStringW
0x405024 WaitForSingleObject
0x405028 CreateThread
0x40502c HeapFree
0x405030 DeleteFileA
0x405034 ExitProcess
0x405038 lstrcmpiA
0x40503c lstrcatA
0x405044 HeapAlloc
0x405048 GetProcessHeap
0x40504c Sleep
0x405050 GetModuleFileNameA
0x405054 CloseHandle
0x405058 GetLastError
0x40505c CreateMutexA
0x405060 GetProcAddress
0x405064 LoadLibraryA
0x405068 HeapReAlloc
0x40506c GetTickCount
0x405070 FindClose
0x405074 FindFirstFileA
0x405078 TerminateProcess
0x40507c CreateProcessA
0x405080 CreateFileA
0x405084 ReadFile
0x405088 WriteFile
0x40508c FlushFileBuffers
0x405090 GetFileSize
0x405094 LCMapStringA
0x405098 GetStringTypeW
0x40509c MultiByteToWideChar
0x4050a0 GetOEMCP
0x4050a4 GetACP
0x4050a8 GetCPInfo
0x4050ac RtlUnwind
0x4050b4 IsBadReadPtr
0x4050b8 IsBadWritePtr
0x4050bc IsBadCodePtr
0x4050c0 GetCurrentProcess
0x4050c4 GetStdHandle
0x4050c8 WideCharToMultiByte
Library USER32.dll:
0x4050d0 wsprintfA
Library WININET.dll:
0x4050d8 InternetOpenA
0x4050e0 InternetOpenUrlA
0x4050e4 InternetCloseHandle
0x4050e8 InternetReadFile
Library iphlpapi.dll:
0x4050f0 GetAdaptersInfo

!Win32 .EXE.
.MPRESS1
.MPRESS2
.imports
D$8h\a@
D$,X`@
D$8X`@
T$\PQj
D$(RVWP
QQSVWd
t.;t$$t(
sO;>|C;~
VC20XC00U
YYh(`@
HHtYHHtF
tPhtT@
runtime error
TLOSS error
SING error
DOMAIN error
- unable to initialize heap
- not enough space for lowio initialization
- not enough space for stdio initialization
- pure virtual function call
- not enough space for _onexit/atexit table
- unable to open console device
- unexpected heap error
- unexpected multithread lock error
- not enough space for thread data
abnormal program termination
- not enough space for environment
- not enough space for arguments
- floating point not loaded
Microsoft Visual C++ Runtime Library
Runtime Error!
Program:
<program name unknown>
GetLastActivePopup
GetActiveWindow
MessageBoxA
user32.dll
%s?mac=%02X-%02X-%02X-%02X-%02X-%02X
Accept: */*
Content-Type: application/x-www-form-urlencoded
Accept-Language: zh-cn
Connection: Keep-Alive
Mozilla/4.0 (compatible; MSIE 7.0; Windows NT 5.1; Trident/4.0; CIBA; .NET CLR 2.0.50727; .NET CLR 3.0.04506.648; .NET CLR 3.5.21022)
pomdfghrt
\microsofthelp.exe
WindowsHookExON
HidePlugin.dll
microsofthelp
Software\Microsoft\Windows\CurrentVersion\Run
C:\Program Files\Internet Explorer
iexplore.exe
Shell32.dll
ShellExecuteExA
Software\motherFucker
kernel32.dll
LoadLibraryA
GetProcAddress
VirtualAlloc
VirtualFree
_dmIspH
6.1{>G
yNv.*|3
gK &O?z
c7tC0'
\uI9(V
V_YZ-y
bIhgJ.
+%(JVx!cK
9X,[<;PCd
Z(}1B,
>(I>@}
cX}C:$
ecqoX,
HXp,`{
{Z4*eXS
z7B'!Z
=MVXf)C
NR30*wU
8uN4a
ADVAPI32.dll
RegSetValueExA
RegQueryValueExA
RegOpenKeyExA
RegCreateKeyA
RegOpenKeyA
RegCloseKey
iphlpapi.dll
GetAdaptersInfo
KERNEL32.dll
GetStringTypeA
LCMapStringW
WaitForSingleObject
CreateThread
HeapFree
DeleteFileA
ExitProcess
lstrcmpiA
lstrcatA
GetWindowsDirectoryA
HeapAlloc
GetProcessHeap
GetModuleFileNameA
CloseHandle
GetLastError
CreateMutexA
GetProcAddress
LoadLibraryA
HeapReAlloc
GetTickCount
FindClose
FindFirstFileA
TerminateProcess
CreateProcessA
CreateFileA
ReadFile
WriteFile
FlushFileBuffers
GetFileSize
LCMapStringA
GetStringTypeW
MultiByteToWideChar
GetOEMCP
GetACP
GetCPInfo
RtlUnwind
SetUnhandledExceptionFilter
IsBadReadPtr
IsBadWritePtr
IsBadCodePtr
GetCurrentProcess
GetStdHandle
WideCharToMultiByte
WININET.dll
InternetOpenA
InternetSetOptionExA
InternetOpenUrlA
InternetCloseHandle
InternetReadFile
USER32.dll
wsprintfA
KERNEL32
VirtualProtect
G(XPTPjxW
GetModuleHandleA
GetProcAddress
KERNEL32.DLL
ADVAPI32.dll
RegOpenKeyA
iphlpapi.dll
GetAdaptersInfo
WININET.dll
InternetOpenA
USER32.dll
wsprintfA
t7Kt'Kt
ADVAPI32.dll
RegSetValueExA
RegQueryValueExA
RegOpenKeyExA
RegCreateKeyA
RegOpenKeyA
RegCloseKey
KERNEL32.dll
GetStringTypeA
LCMapStringW
WaitForSingleObject
CreateThread
HeapFree
DeleteFileA
ExitProcess
lstrcmpiA
lstrcatA
GetWindowsDirectoryA
HeapAlloc
GetProcessHeap
GetModuleFileNameA
CloseHandle
GetLastError
CreateMutexA
GetProcAddress
LoadLibraryA
HeapReAlloc
GetTickCount
FindClose
FindFirstFileA
TerminateProcess
CreateProcessA
CreateFileA
ReadFile
WriteFile
FlushFileBuffers
GetFileSize
LCMapStringA
GetStringTypeW
MultiByteToWideChar
GetOEMCP
GetACP
GetCPInfo
RtlUnwind
SetUnhandledExceptionFilter
IsBadReadPtr
IsBadWritePtr
IsBadCodePtr
GetCurrentProcess
GetStdHandle
WideCharToMultiByte
USER32.dll
wsprintfA
WININET.dll
InternetOpenA
InternetSetOptionExA
InternetOpenUrlA
InternetCloseHandle
InternetReadFile
iphlpapi.dll
GetAdaptersInfo
C:\Users\azure\Downloads\9731e3ef363e0446b8da34763f5d2706638b9b65dda7cba4db3f729622b2cede.exe
C:\Users\Janet Van Dyne\Desktop\rqJILtol.exe
C:\Users\john\AppData\Local\Temp\9DDB6FD077A614547F59A2DCA534C9D8.exe
C:\Users\Frank\Desktop\mreppGje.exe
C:\WINDOWS\STUB.exe
C:\eTHUQxVX.exe
C:\Users\Janet Van Dyne\Desktop\TEqOUCGG.exe
C:\l9rBlorZ.exe
C:\Users\azure\Downloads\4d9329da8672d4001a972d4d138b468a.exe
C:\Users\Frank\Desktop\uCbQaBhm.exe
C:\Users\george\Desktop\program.exe
C:\Users\Janet Van Dyne\Desktop\zSgTqjJN.exe
C:\Users\george\Desktop\file.exe
C:\Users\Frank\Desktop\JjNmKffs.exe
C:\Users\Bruno\Desktop\program.exe
C:\Users\Lisa\Desktop\cZJMLesO.exe
C:\Users\azure\Downloads\5306821828321ba6e921daf0924ee8ce8367829c8a6a5036d0360a5110678948.exe
C:\Users\Lisa\Desktop\uECCdisy.exe
C:\Users\george\Desktop\file.exe
C:\Users\Frank\Desktop\bECTChTZ.exe
C:\Users\Bruno\Desktop\software.exe
C:\Users\Frank\Desktop\PDWzsaJA.exe
C:\Users\george\Desktop\software.exe
C:\Users\Frank\Desktop\pHUrgPNX.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Frank\Desktop\LOvqcXXC.exe
C:\Users\azure\Downloads\228c978a5bf39f2d2e4a38c5f82d23fcae0bb81ffa0e965316fad383e8126ed9.exe
C:\Users\Frank\Desktop\pvSJlYWh.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Janet Van Dyne\Desktop\GExPKXJx.exe
C:\Users\george\Desktop\software.exe
C:\Users\Frank\Desktop\XdtUQQvP.exe
C:\Users\azure\Downloads\0d6df67c380eea7ec03f5c0611451ea286cd843bde84f0cdfaf679f5c5935bfa.exe
C:\Users\Janet Van Dyne\Desktop\usQegtgm.exe
C:\Users\george\Desktop\program.exe
C:\Users\Frank\Desktop\OjZrsJow.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Frank\Desktop\dymHECVC.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Janet Van Dyne\Desktop\GKWskdKN.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\LcOpVyMY.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\ymbelIaO.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\BKNAOPgI.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\GXzlyazc.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\MKxrOsak.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\uDQSsyRf.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\BaAIvvXW.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\yjyHNhsq.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\UAgnblTk.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\CGfaNkft.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\zDgcQALD.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\BvGpMlBI.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\VbSTVHTd.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Frank\Desktop\LwVpOQDy.exe
C:\Users\Bruno\Desktop\software.exe
C:\Users\Janet Van Dyne\Desktop\YWdoXMSY.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\aCEYZhIX.exe
C:\Users\george\Desktop\program.exe
C:\Users\Frank\Desktop\HjcigGin.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\ElIgQIwI.exe
C:\WINDOWS\STUB.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Lisa\Desktop\GhlIjsvv.exe
C:\WINDOWS\STUB.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Janet Van Dyne\Desktop\GvcJwDOC.exe
C:\Users\azure\Downloads\29c16cc9c4f91785fe90274001a7246c19912a879345c5340aa26c5f3184ae17.exe
C:\Users\Janet Van Dyne\Desktop\WKVoOvkO.exe
C:\WINDOWS\STUB.exe
C:\Users\Bruno\Desktop\software.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\VHPxVuLH.exe
C:\Users\azure\Downloads\3139c4ebdb7799a478d38ca2e015bc4687539431ec73f9809ef352dca420854c.exe
C:\Users\Frank\Desktop\NgkUwaAt.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\bjQxdgnt.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\uOocRuRH.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\zacCajLi.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\tMtYxfpX.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\ulwpjJsm.exe
c:\users\walker\appdata\local\temp\7K4AQBTRB752EP4L.exe
C:\Users\Frank\Desktop\TDyFAiQB.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\oRknsjBA.exe
C:\Users\azure\Downloads\d43cb8af283774f6ae1dd20c21b7b00662488ffa19e0500a53f51fce8d3cb0d1.exe
C:\Users\Janet Van Dyne\Desktop\wJpwmCWj.exe
C:\Users\george\Desktop\software.exe
C:\Users\Frank\Desktop\nCtBlAVw.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Frank\Desktop\hnbnHCqT.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Lisa\Desktop\alEBnKnU.exe
C:\Users\george\Desktop\program.exe
C:\Users\Janet Van Dyne\Desktop\QdpIyGHB.exe
C:\Users\Admin\AppData\Local\Temp\5377695a86796d38e4dde6db6a06be54604e4cf95214799c7f234f86f801f859.exe
C:\Users\Frank\Desktop\njUMjSPU.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\HNGwzIVo.exe
C:\Users\Admin\AppData\Local\Temp\166eecc14a9ecb4b5a3c034c54dea9eec5ad45da6189fb9c9a99da545d1e568d.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\nZaVDIOW.exe
C:\Users\george\Desktop\program.exe
C:\Users\Janet Van Dyne\Desktop\otccmCgS.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Frank\Desktop\FBoeeZAO.exe
C:\Users\george\Desktop\software.exe
C:\Users\Janet Van Dyne\Desktop\MjEGUVjn.exe
C:\Users\george\Desktop\file.exe
C:\Users\azure\Downloads\microsofthelp.exe
C:\Users\Frank\Desktop\jPVbCpyR.exe
C:\WINDOWS\STUB.exe
C:\Users\azure\Downloads\61c6e7b11a861b9b19bae21f32d43f48e8320487f1ff82b48d88dab49a014b60.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\LvcDMLYH.exe
C:\Users\george\Desktop\executable.exe
C:\Users\Frank\Desktop\ZnUwbnpO.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\jHWgdUfR.exe
C:\WINDOWS\STUB.exe
C:\Users\george\Desktop\software.exe
C:\Users\Janet Van Dyne\Desktop\WjpdDGBn.exe
C:\Users\Janet Van Dyne\Desktop\WGenVuXS.exe
C:\j0sd4rD2.exe
C:\Users\azure\Downloads\394eeb8490e3a77f6c129fcd7a77df46.exe
C:\WINDOWS\STUB.exe
C:\Users\george\Desktop\program.exe
C:\Users\azure\Downloads\0edb8fda8401e60aa764701dfa86275280711aacd73b88d7cfa72053d0981309.exe
C:\Users\Janet Van Dyne\Desktop\cQKMZPLU.exe
C:\WINDOWS\STUB.exe
C:\Users\Admin\AppData\Local\Temp\3a5a57f032ca0bd541db78982516a520e72ee858f5e1d0764baae656639a2153.exe
C:\Users\Lisa\Desktop\WqVkCxFU.exe
C:\WINDOWS\STUB.exe
C:\Users\Admin\AppData\Local\Temp\216441c4395e8a7fd779c4f01cd7301a3a3c028c54e206aca139844823c359f5.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\HFuvRFgX.exe
C:\Users\Admin\AppData\Local\Temp\6243f7e93a592dbf1fd4292d9ff0fc1d0b05ccadc1144aa9c92900aeb038ba15.exe
C:\WINDOWS\STUB.exe
C:\Users\Admin\AppData\Local\Temp\f0074ab5c5de7881e1e2e5e40a0586e91f73a5556e03263d0a4a10bee1bf5a72.exe
C:\WINDOWS\STUB.exe
C:\Users\Admin\AppData\Local\Temp\6b28b97c2e5e2136580198a587ee2c52e9f739bd21d04f35f03e58e709acc0c8.exe
C:\Users\george\Desktop\file.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\KpGcGUzt.exe
C:\WINDOWS\STUB.exe
C:\Users\Lisa\Desktop\rhfhsPEx.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\xRdzlEsC.exe
C:\WINDOWS\STUB.exe
C:\Users\george\Desktop\5cd5ced88c7640282abce4e59759dbb7317ea70eb6d3efb5e5757f3N.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\czlpslPO.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\ygprUbdo.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\wtjTUzVd.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\cEUFhbKt.exe
C:\Users\Admin\AppData\Local\Temp\f8955422ef014acd589e129eb9f6e9bc9beacd54052b7baaa90ffcf5028b8ab3.exe
C:\Users\Janet Van Dyne\Desktop\KRYypGXu.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\RaRYGtbg.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\rGQxAyWt.exe
C:\Users\Admin\AppData\Local\Temp\18622ec9745e67f0ec4fae140504974bd55fcc8675ccd50b0301aed0750a07dd.exe
C:\Users\Lisa\Desktop\aAEAFOsH.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\zLMoSaHx.exe
C:\WINDOWS\STUB.exe
C:\Users\Frank\Desktop\KDweOrkI.exe
This program must be run under Win32
Boolean
Integer
X'Word
TObject
IUnknown
hZ]_hp
;2w;;t
&8(0]V
ydVH4\i
B&tZ
g[; |Sk
+<#/93
u0NHJ%N=A
OVPjs\
+tf$xtaXt\
OFTWAR
E\Borland\Delphi\RTL
FPUMaskValu
t)S|S}
AOO:Xa
;DRVb2
9GqNZTUWVS
w%=HtN
ytpQou
Portions Copyright (c) 1983<
,99 aM
N$6h%~BA
]G_-Rf;`
0N|*x}&
8~*PRf
]2x,;$5
Ol|"Gf
okernel32.dll
LongPathNameA'O
Softwarewb4
K{=L0D|
e*Hh7j@
A999i^CCCC
0,($999
'ouseZ
w(_.SCK_LINES/
Excepd`
wEHeap]
EOutOfMemjy
EDivByZero
~Range
Inverflow(s
v0idOp
EStack
+?Win32,yg,
ThreadA
<SmwAZ
i.8H61
NTc#t.
C?4|yX
r<9w7k
[mCDHRy4Y~
s$K%K|A
HXl,
BxC++
AMPMBy
DiskFreeSpH
N(;F,t
x t|p^
INFNAN
QS<$P<*
* (()@-33w
*-&*$Q
$&-[-o
0()(2)
<'t$<"t *
#t&<C:\WqGdqSvO.exe
C:\Users\Janet Van Dyne\Desktop\ZMdMTFLE.exe
C:\UahYwZ8D.exe
C:\Users\azure\Downloads\4f135f897fa95d2f87aa30381b4296e7.exe
C:\Users\Janet Van Dyne\Desktop\PWeedKmi.exe
C:\Users\Bruno\Desktop\executable.exe
C:\Users\Frank\Desktop\kouGWXta.exe
C:\Users\Admin\AppData\Local\Temp\1c78c71c0bd2068361d6d91a7c85898cbb5365d693f7dceb65276ab2aad62e57.exe
C:\Users\Frank\Desktop\qbnkAuXm.exe
C:\Users\Admin\AppData\Local\Temp\3a0658757ccf4bde5e87426cae65948bb2274a489a998902d463d1fa11002a9b.exe
C:\Users\Janet Van Dyne\Desktop\PfUQIkDq.exe
C:\Users\azure\Downloads\21b16bc75ee02f6513293a82d87e68b911b14004901fe5437aad787919a79a21.exe
C:\Users\Frank\Desktop\fojuXxIe.exe
C:\Users\Admin\AppData\Local\Temp\1b159a34d335b461bc02bcac2acb975a26b1221461f8e7901963db1f1fd589ae.exe
C:\Users\Bruno\Desktop\program.exe
C:\LIKtx3e7.exe
C:\Users\Bruno\Desktop\file.exe
C:\Users\Janet Van Dyne\Desktop\nmwYuBOz.exe
C:\WINDOWS\STUB.exe
C:\Users\Janet Van Dyne\Desktop\cjEwqLTI.exe
C:\Users\azure\Downloads\04ebd54d21794106331761fe476a0fdc0357ad1550f85d42ef9fd89f7f72ed75.exe
C:\Users\Frank\Desktop\oFhIjSyy.exe
C:\Users\Bruno\Desktop\executable.exe
C:\Users\azure\Downloads\microsofthelp.exe
C:\Users\Frank\Desktop\cedFIemS.exe
C:\Users\Admin\AppData\Local\Temp\e3b51eee1ef2e8de1031b1b7806e7de4d6ef75f01c3872169236c2771f57abaa.exe
C:\Users\Janet Van Dyne\Desktop\QFoooBnO.exe
C:\hOzBy0v_.exe
C:\Users\Bruno\Desktop\program.exe
C:\Users\Frank\Desktop\qIVuokTS.exe
C:\WINDOWS\STUB.exe
C:\Users\azure\Downloads\781579fce8cf2911b266104a180072ae086c508f841eeb35d264eaa1e6ac9cf4.exe
C:\8Rfv3GIJ.exe
C:\Users\John Doe\Desktop\z5yt5rrw09.exe
C:\Users\Janet Van Dyne\Desktop\OCXIesNz.exe
jjjjjjj
((((( H
Antivirus Signature
Lionic Clean
Elastic malicious (high confidence)
ClamAV Win.Malware.7cbdf52c-10004103-0
CMC Clean
CAT-QuickHeal Trojan.Msposer.7372
Skyhigh BehavesLike.Win32.Msposer.ct
ALYac Generic.Malware.SF.0970E096
Cylance Unsafe
Zillya Trojan.Agent.Win32.3972007
Sangfor Suspicious.Win32.Save.a
CrowdStrike win/malicious_confidence_100% (D)
Alibaba Clean
K7GW Trojan ( 0052964f1 )
K7AntiVirus Trojan ( 0052964f1 )
huorong TrojanDownloader/Agent.f
Baidu Win32.Trojan.Agent.el
VirIT Trojan.Win32.Genus.WKS
Paloalto Clean
Symantec Backdoor.Trojan
tehtris Generic.Malware
ESET-NOD32 a variant of Win32/Agent.TLD
APEX Malicious
Avast Win32:Evo-gen [Trj]
Cynet Malicious (score: 100)
Kaspersky HEUR:Trojan-Dropper.Win32.Daws.gen
BitDefender Generic.Malware.SF.0970E096
NANO-Antivirus Clean
ViRobot Clean
MicroWorld-eScan Generic.Malware.SF.0970E096
Tencent Trojan.Win32.Sisron.weqa
Sophos Troj/Blihan-Gen
F-Secure Trojan.TR/Downloader.Gen
DrWeb Trojan.Siggen7.56291
VIPRE Generic.Malware.SF.0970E096
TrendMicro Clean
McAfeeD Real Protect-LS!642A202E47B7
Trapmine malicious.high.ml.score
CTX exe.unknown.generic
Emsisoft Generic.Malware.SF.0970E096 (B)
Ikarus Trojan.Win32.Blihan
GData Win32.Trojan.Bilhan.C
Jiangmin Trojan/Generic.uqin
Webroot W32.Malware.Gen
Varist W32/Agent.BRN.gen!Eldorado
Avira TR/Downloader.Gen
Antiy-AVL Virus/Win32.Expiro.imp
Kingsoft malware.kb.a.1000
Gridinsoft Trojan.Win32.Agent.oa!s1
Xcitium Clean
Arcabit Generic.Malware.SF.0970E096
SUPERAntiSpyware Clean
ZoneAlarm Troj/Blihan-Gen
Microsoft Trojan:Win32/Blihan!pz
Google Detected
AhnLab-V3 Trojan/Win.Generic.R656866
Acronis suspicious
VBA32 Trojan.Blihan
TACHYON Clean
Malwarebytes Generic.Malware.AI.DDS
Panda Trj/Genetic.gen
Zoner Clean
TrendMicro-HouseCall Trojan.Win32.VSX.PE04C9f
Rising Trojan.Agent!1.DC48 (CLASSIC)
Yandex Trojan.Agent!k8LQvCj3340
TrellixENS Msposer!642A202E47B7
SentinelOne Static AI - Malicious PE
MaxSecure Trojan.Malware.300983.susgen
Fortinet W32/Agent.BRN!tr
AVG Win32:Evo-gen [Trj]
DeepInstinct MALICIOUS
alibabacloud Clean
IRMA Signature
Trend Micro SProtect (Linux) Clean
Avast Core Security (Linux) Win32:Evo-gen [Trj]
C4S ClamAV (Linux) Win.Malware.7cbdf52c-10004103-0
Trellix (Linux) Msposer
Sophos Anti-Virus (Linux) Troj/Blihan-Gen
Bitdefender Antivirus (Linux) Generic.Malware.SF.0970E096
G Data Antivirus (Windows) Virus: Generic.Malware.SF.0970E096 (Engine A)
WithSecure (Linux) Trojan.TR/Downloader.Gen
ESET Security (Windows) a variant of Win32/Agent.TLD trojan
DrWeb Antivirus (Linux) Trojan.Siggen7.56291
ClamAV (Linux) Win.Malware.7cbdf52c-10004103-0
eScan Antivirus (Linux) Generic.Malware.SF.0970E096(DB)
Kaspersky Standard (Windows) HEUR:Trojan-Dropper.Win32.Daws.gen
Emsisoft Commandline Scanner (Windows) Generic.Malware.SF.0970E096 (B)
Cuckoo

We're processing your submission... This could take a few seconds.