Virusign
Info

Details for 48108e65148d5aed96dd24fc1764fb4ee4da47da76f5d0eb2bda8bec3a4a4955

NameSh.exe
Date (Y-m-d)2020-02-03
Size (Bytes)601600 (587.5KB)
FilePE32 executable (GUI) Intel 80386, for MS Windows
TrID35.5% (.EXE) Win32 Executable Delphi generic (14182/79/4)
32.8% (.SCR) Windows screen saver (13101/52/3)
11.2% (.EXE) Win32 Executable (generic) (4508/7/1)
5.1% (.EXE) Win16/32 Executable Delphi generic (2072/23)
5.0% (.EXE) OS/2 Executable (generic) (2029/13)
CRC322cfb15f2
MD5281faa7ace424fe7c9f29702ad28080a
SHA13567a41dacb13b8131a69c15a1be65f2adad42c4
SHA25648108e65148d5aed96dd24fc1764fb4ee4da47da76f5d0eb2bda8bec3a4a4955
ImpHashba1964105c70c45da47d59695297b179
ImpFuzzy96:8cfpHYU3O0MJ4eXhpVU8zS10+Ylbuu2RrSUvK9LVqo1Gq/6nDwPOQw8v:f3OJk1QlbuuArSUvK9Rqooq/6EPOQwk
SSDeep12288:qcHgyL6D9Ud63tkMIPpEKUAH3Kqii7U7kKnSp:rdU9ASkJyKvIc+nI
Online Analysis 1x
Online Analysis 2x
Online Analysis 3http://sarvam.ece.ucsb.edu/analysis/281faa7ace424fe7c9f29702ad28080a
AV1 (ClamAV) StatusDetected on 2020-02-03
AV2 AV3 AV4 AV5 StatusDetected on 2020-01-30
AV1 DetectionPUA.Win.Adware.Slugin-6803969-0
AV1 Virus Signatures VersionClamAV 0.101.4/25715/Mon Feb 3 11:37:20 2020 (2020-02-03)
AV2 DetectionTrojan-Spy.LokiBot
AV2 Virus Signatures VersionVDB: 05.02.2020 08:50:07 (Build: 102367) (2020-02-05)
AV3 DetectionW32/Trojan2.QBFK
AV3 Virus Signatures Version202002052210 (2020-02-06)
AV4 DetectionMal/Fareit-V
AV4 Virus Signatures Version5.71 07 January 2020 (2020-02-03)
AV5 DetectionOK
AV5 Virus Signatures Version7.83645 (2020-01-30)