Virusign
Info

Details for d602c9f56454bad48ba95b956b433d9d642929dbfd452053f4df5cf531967406

Namemoh79.exe
Date (Y-m-d)2014-03-14
Size (Bytes)2394624 (2.28MB)
FilePE32 executable (GUI) Intel 80386 Mono/.Net assembly, for MS Windows
TrID45.1% (.EXE) Generic CIL Executable (.NET, Mono, etc.) (73294/58/13)
19.2% (.EXE) Win32 Executable MS Visual C++ (generic) (31206/45/13)
17.0% (.EXE) Win64 Executable (generic) (27653/43/4)
8.0% (.SCR) Windows Screen Saver (13102/52/3)
4.0% (.DLL) Win32 Dynamic Link Library (generic) (6578/25/2)
CRC32e52d2cf1
MD545abd2417b14ff9f645f6855ce2cc5fb
SHA1a408804d8c588b647ced9e838bd2874bc8f3377a
SHA256d602c9f56454bad48ba95b956b433d9d642929dbfd452053f4df5cf531967406
ImpHashf34d5f2d4577ed6d9ceec516c1f5a744
ImpFuzzy3:rGsLdAIEK:tf
SSDeep24576:WAb/QFC6yUfXFfwBDxX2xDgR9DoazSh8C/6jZUC9TO+PAqhJ2oTrnogSRc1S:WCQFQ2ilX6gRpoa+h8CDQOQfqoT3ic1
Online Analysis 1http://www.threatexpert.com/report.aspx?md5=45abd2417b14ff9f645f6855ce2cc5fb
Online Analysis 2http://anubis.iseclab.org/?action=result&task_id=160d9a5736fb793a4c96c615ddc44bc08
Online Analysis 3http://sarvam.ece.ucsb.edu/analysis/45abd2417b14ff9f645f6855ce2cc5fb
AV1 (ClamAV) StatusNo detection
AV2 AV3 AV4 AV5 StatusDetected on 2015-08-03
AV1 DetectionOK
AV1 Virus Signatures VersionClamAV 0.100.3/25455/Mon May 20 08:03:11 2019 (2019-05-20)
AV2 DetectionTrojan.CoinMiner
AV2 Virus Signatures VersionVDB: 04.08.2015 03:48:58 (Build: 92853) (2015-08-03)
AV3 DetectionOK
AV3 Virus Signatures Version201706201756 (2017-06-20)
AV4 DetectionMal/Generic-S
AV4 Virus Signatures Version5.40 30 May 2017 (2017-06-22)
AV5 DetectionGen:Variant.Kazy.344463(DB)
AV5 Virus Signatures Version7.72913 (2017-08-25)