System currently contains 119,572,599 malware samples.
| 80d9da42820d7d9f6ee4ed26cd67efa0249b416730f4c3ce0c09011fabebe146 |
| VirusShare info last updated 2026-10-07 00:00:01 UTC |
|
|
| MD5 | 7626f1da9a0ccb04c59454fa99a632b8 |
| SHA1 | be77af72e1bf0acafe75e1ca08d3533c7d2b1d3a |
| SHA256 | 80d9da42820d7d9f6ee4ed26cd67efa0249b416730f4c3ce0c09011fabebe146 |
| SSDeep | 3072:Qg9DO2NPxFoWHPys8qWNL+HTLt02dzuBBAEj+CCtJREVpETHVzmcUkTHVzmcUkTn:Qg5fBN8QHX628B5Cq6 |
| Authentihash | b55933d69e300ef01cf91d6beda03587f7775ad417000030f9d05e80a509ba98 |
| Size | 246,224 bytes |
| File Type | PE32 executable (GUI) Intel 80386, for MS Windows |
| Mime Type | application/x-dosexec |
| Extension | exe |
| TrID | Win32 Dynamic Link Library (generic) (21.3%) Win64 Executable (generic) (21.1%) Win16 NE executable (generic) (16.3%) Win32 Executable (generic) (14.6%) Win16/32 Executable Delphi generic (6.7%)
|
Detections (38/71) | | ALYac | Gen:Variant.Jatif.12049 | | APEX | Malicious | | AVG | Win32:Malware-gen | | AhnLab-V3 | Malware/Win32.Generic.C2494783 | | Arcabit | Trojan.Jatif.D2F11 | | Avast | Win32:Malware-gen | | BitDefender | Gen:Variant.Jatif.12049 | | Bkav | W32.Malware.92532E76 | | CTX | exe.unknown.jatif | | CrowdStrike | win/malicious_confidence_90% (D) | | Cylance | Unsafe | | Cynet | Malicious (score: 100) | | DeepInstinct | MALICIOUS | | DrWeb | BackDoor.Anunak.110 | | ESET-NOD32 | Win32/GenCBL.AIZ trojan | | Elastic | malicious (high confidence) | | Emsisoft | Gen:Variant.Jatif.12049 (B) | | Fortinet | W32/Troldesh.71B6!tr.ransom | | GData | Gen:Variant.Jatif.12049 | | Jiangmin | Trojan.Pakes.bkx | | Kaspersky | Trojan.Win32.Pakes.atqo | | Kingsoft | malware.kb.a.1000 | | Malwarebytes | Malware.AI.1025291112 | | MaxSecure | Trojan.Malware.300983.susgen | | McAfeeD | ti!80D9DA42820D | | MicroWorld-eScan | Gen:Variant.Jatif.12049 | | Microsoft | Trojan:Win32/CobaltStrike!rfn | | Rising | Trojan.Carbanak!8.E5C2 (TFE:4:eVtI5XZUYpP) | | Sangfor | Suspicious.Win32.Save.a | | SentinelOne | Static AI - Malicious PE | | Sophos | ML/PE-A | | Symantec | Trojan.Carberp.B | | VBA32 | Trojan.Pakes | | VIPRE | Gen:Variant.Jatif.12049 | | VirIT | Trojan.Win32.Genus.YFL | | Zillya | Trojan.AgentCRTD.Win32.9166 | | huorong | Trojan/Injector.xz | | tehtris | Generic.Malware | | VirusTotal Report submitted 2026-09-30 12:18:06 UTC |
|
| ExIF Data | | CharacterSet | Windows, Latin1 | | CodeSize | 2048 | | Comments | Annotation | | Companyname | Definitively | | EntryPoint | 0x1000 | | FileFlags | (none) | | FileFlagsMask | 0x0000 | | FileOS | Win32 | | FileSize | 240 kB | | FileSubtype | 0 | | FileType | Win32 EXE | | FileTypeExtension | exe | | FileVersionNumber | 10.51.9.3809 | | Filedescription | Denaturing | | Fileversion | 59.88.48.975 | | ImageFileCharacteristics | No relocs, Executable, No line numbers, No symbols, 32-bit | | ImageVersion | 0 | | InitializedDataSize | 239104 | | Internalname | Repossessions Commensurations | | LanguageCode | English (U.S.) | | Legalcopyright | Explorer | | Legaltrademarks | Deveined | | LinkerVersion | 2.5 | | MIMEType | application/octet-stream | | MachineType | Intel 386 or later, and compatibles | | OSVersion | 4 | | ObjectFileType | Executable application | | Originalfilename | Laryngotracheal | | PEType | PE32 | | ProductVersionNumber | 48.59.80.68 | | Productname | Consumed Pronounceable | | Subsystem | Windows GUI | | SubsystemVersion | 4 | | TimeStamp | 2016:07:06 12:47:24+00:00 | | UninitializedDataSize | 0 |
|