Virusign
Info

Details for 023717afa409ef2ec2f67c604bb02f6b997771da3eb90d75387cfd9fec952c42

NameServerandrei.exe
Date (Y-m-d)2017-12-29
Size (Bytes)44032 (43KB)
FilePE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
TrID56.7% (.EXE) Generic CIL Executable (.NET, Mono, etc.) (73294/58/13)
21.3% (.EXE) Win64 Executable (generic) (27625/18/4)
10.1% (.SCR) Windows screen saver (13101/52/3)
5.0% (.DLL) Win32 Dynamic Link Library (generic) (6578/25/2)
3.4% (.EXE) Win32 Executable (generic) (4508/7/1)
CRC320a6f83f6
MD582b5cc6aa4cc0a45ac7df422ad85bb49
SHA1ad945113abf5bd0097a33567e17451538aeea682
SHA256023717afa409ef2ec2f67c604bb02f6b997771da3eb90d75387cfd9fec952c42
ImpHashf34d5f2d4577ed6d9ceec516c1f5a744
ImpFuzzy3:rGsLdAIEK:tf
SSDeep384:xZysIYz/wpa9GP4Uy2vXy2m2EUSlhqzIIij+ZsNO3PlpJKkkjh/TzF7pWn8P9gra:jjIKR4gh2vyV2SwuXQ/olPN+L
Online Analysis 1x
Online Analysis 2x
Online Analysis 3http://sarvam.ece.ucsb.edu/analysis/82b5cc6aa4cc0a45ac7df422ad85bb49
AV1 (ClamAV) StatusDetected on 2018-01-14
AV2 AV3 AV4 AV5 AV6 AV7 StatusDetected on 2017-12-29
AV1 DetectionWin.Trojan.Generic-6417450-0
AV1 Virus Signatures VersionClamAV 0.99.2/24219/Sat Jan 13 21:16:09 2018 (2018-01-14)
AV2 DetectionTrojan.MSIL.Bladabindi
AV2 Virus Signatures VersionVDB: 10.12.2017 19:08:45 (Build: 99992) (2017-12-11)
AV3 DetectionWin32:Rootkit-gen [Rtk]
AV3 Virus Signatures Version17122900 (2017-12-29)
AV4 DetectionTrojan horse ILCrypt
AV4 Virus Signatures Version4767/15267 Fri, 29 Dec 2017 09:00:00 +0000 (2017-12-29)
AV5 DetectionW32/MSIL Bladabindi.A.gen!Eldorado
AV5 Virus Signatures Version201712291044 (2017-12-29)
AV6 DetectionTroj/Bladabi-DR
AV6 Virus Signatures Version5.46 28 November 2017 (2017-12-29)
AV7 DetectionGen:Heur.MSIL.Krypt.3(DB)
AV7 Virus Signatures Version7.74367 (2017-12-29)