Virusign
Info

Details for 6b00ae52016e50cdc91a3120a682e308b66be04ab0e8084371626a3871ed629f

Namekszbkk.exe
Date (Y-m-d)2017-10-28
Size (Bytes)758784 (741KB)
FilePE32 executable (GUI) Intel 80386, for MS Windows
TrID37.4% (.EXE) Win32 Executable Delphi generic (14182/79/4)
34.5% (.SCR) Windows screen saver (13101/52/3)
11.9% (.EXE) Win32 Executable (generic) (4508/7/1)
5.4% (.EXE) Win16/32 Executable Delphi generic (2072/23)
5.2% (.EXE) Generic Win/DOS Executable (2002/3)
CRC32c9da48ca
MD53ec8d5d472beb7abeb2c4005916bf63e
SHA171d9bcd97ecfde9c87ec6be4487eed664cf572dc
SHA2566b00ae52016e50cdc91a3120a682e308b66be04ab0e8084371626a3871ed629f
ImpHashf57b5b52c4321ee5a7744853ad3cd583
ImpFuzzy192:f3OF9xG1aPbuuArSUvK9aqo1qEFPPOQwk:f3g+1yAA9oRPOQ9
SSDeep12288:GNJDFeCW6hJZ8HgTtiJmvJtQAgyPT1pDuH3MjE/cGQ2DeORDHBKNA6:GDs0Z8H+4AJtSKTTqcjEEF0zBIp
Online Analysis 1x
Online Analysis 2x
Online Analysis 3http://sarvam.ece.ucsb.edu/analysis/3ec8d5d472beb7abeb2c4005916bf63e
AV1 (ClamAV) StatusNo detection
AV2 AV3 AV4 AV5 AV6 AV7 StatusDetected on 2017-10-28
AV1 DetectionOK
AV1 Virus Signatures VersionClamAV 0.99.2/24055/Sun Nov 19 17:06:03 2017 (2017-11-20)
AV2 DetectionTrojan.Win32.Injector
AV2 Virus Signatures VersionVDB: 31.10.2017 08:41:14 (Build: 99867) (2017-10-31)
AV3 DetectionWin32:Malware-gen
AV3 Virus Signatures Version17102800 (2017-10-28)
AV4 DetectionTrojan horse Generic38.CCYP
AV4 Virus Signatures Version4767/15076 Sat, 28 Oct 2017 01:02:00 +0000 (2017-10-28)
AV5 DetectionW32/Fareit.BO.gen!Eldorado
AV5 Virus Signatures Version201710281035 (2017-10-28)
AV6 DetectionMal/Fareit-N
AV6 Virus Signatures Version5.44 19 September 2017 (2017-10-28)
AV7 DetectionTrojan.Agent.COZO(DB)
AV7 Virus Signatures Version7.73610 (2017-10-28)