Virusign
Info

Details for 055c225f792439ece1b48eb8e450438c63d6317d2eab327f32b5f1d56c776ef3

NameSystemNT.exe
Date (Y-m-d)2018-01-24
Size (Bytes)1009664 (986KB)
FilePE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows
TrID48.1% (.EXE) InstallShield setup (43053/19/16)
34.9% (.EXE) Win32 Executable MS Visual C++ (generic) (31206/45/13)
7.3% (.DLL) Win32 Dynamic Link Library (generic) (6578/25/2)
5.0% (.EXE) Win32 Executable (generic) (4508/7/1)
2.2% (.EXE) Generic Win/DOS Executable (2002/3)
CRC3269f08545
MD5ec27eb46feed650185da28c2c48e0daf
SHA1f5fefdaffe9f345128656948b3f19585be6295cb
SHA256055c225f792439ece1b48eb8e450438c63d6317d2eab327f32b5f1d56c776ef3
ImpHash48017632850f50aa49b391cfe38412f1
ImpFuzzy96:4BhD+Ee9H+lWA+nmFidpsQ4Jxef023zXTXiX1PRjb4xDzJGq2gow85amdwl+KqgG:+D+ESpAFfc0QjSFF4xDgKoheEgUOm
SSDeep24576:yvJTthITulMbAaLbkGZr+fRRuJ9l9OxEr2Q2YkzS1wCjgdP:yvJDMkGZ8RRuJ9l9ihYkz
Online Analysis 1x
Online Analysis 2x
Online Analysis 3http://sarvam.ece.ucsb.edu/analysis/ec27eb46feed650185da28c2c48e0daf
AV1 (ClamAV) StatusDetected on 2018-02-17
AV2 AV3 AV4 AV5 AV6 AV7 StatusDetected on 2018-01-24
AV1 DetectionWin.Trojan.CryptocoinMiner-6448864-0
AV1 Virus Signatures VersionClamAV 0.99.3/24321/Fri Feb 16 17:23:16 2018 (2018-02-17)
AV2 DetectionPUA.CoinMiner
AV2 Virus Signatures VersionVDB: 10.12.2017 19:08:45 (Build: 99992) (2017-12-11)
AV3 DetectionWin32:Malware-gen
AV3 Virus Signatures Version18012700 (2018-01-28)
AV4 DetectionTrojan horse CoinMiner.PEZ
AV4 Virus Signatures Version4793/15342 Wed, 24 Jan 2018 09:00:00 +0000 (2018-01-24)
AV5 DetectionW32/CoinMiner.J.gen!Eldorado
AV5 Virus Signatures Version201801241032 (2018-01-24)
AV6 DetectionXMRig Miner
AV6 Virus Signatures Version5.47 09 January 2018 (2018-01-24)
AV7 DetectionGeneric.Application.CoinMiner.1.2A94C051(DB)
AV7 Virus Signatures Version7.74741 (2018-01-24)