VirusShare.com - Because Sharing is Caring

Home • Hashes • Research • About • Swag Shop

Account: Login

Please login to search and download.

System currently contains 112,739,878 malware samples.

Report for a sample recently added to the system:
42de5ec1ad32b9a95a424f613319b40d3e3d028ac8958a49328988356f024fa9
VirusShare info last updated 2026-05-19 00:00:02 UTC
Detected by 47 engines  
MD558f9f18e6d7efe8e29c809e0c5926a15
SHA182cb4a8517691506174b4aee00059e1f7166d5ba
SHA25642de5ec1ad32b9a95a424f613319b40d3e3d028ac8958a49328988356f024fa9
SSDeep49152:OLbYI4I0bVKBUhx8CRSrzQ8vbeKgSRpXxmDYeQeaUx7qEaY3YPKEnSG:GYZkBU6ZvCK/phm8eQN8PYPKES
Authentihash262f69aea9d4336150063ee2b63b370f269cc014cbffee8665cdf8192eb8db9f
Size2,083,328 bytes
File TypePE32+ executable (GUI) x86-64, for MS Windows
Mime Typeapplication/x-dosexec
Extensionexe
TrIDWindows Control Panel Item (generic) (58.9%)
Microsoft Visual C++ compiled executable (generic) (16.9%)
Win64 Executable (generic) (10.7%)
Win16 NE executable (generic) (5.1%)
Windows Icons Library (generic) (2.1%)
Detections
(47/61)
ALYacWin64.Expiro.Gen.7
APEXMalicious
Acronissuspicious
AhnLab-V3Virus/Win.Expiro.X2155
Antiy-AVLVirus/Win32.Expiro.x
ArcabitWin64.Expiro.Gen.7
AviraW32/Infector.Gen
BitDefenderWin64.Expiro.Gen.7
BkavW64.AIDetectMalware
CAT-QuickHealW32.Expiro.R3
CTXexe.unknown.expiro
CrowdStrikewin/malicious_confidence_100% (D)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
DrWebWin32.Expiro.153
ESET-NOD32Win64/Expiro.CY virus
Elasticmalicious (high confidence)
EmsisoftWin64.Expiro.Gen.7 (B)
F-SecureMalware.W32/Infector.Gen
FortinetW64/Expiro.CV
GDataWin64.Expiro.Gen.7
GoogleDetected
GridinsoftTrojan.Win64.Wacatac.oa!s1
IkarusVirus.Win64.Expiro
K7AntiVirusVirus ( 005a9e7d1 )
K7GWVirus ( 005a9e7d1 )
MalwarebytesVirus.M0yv
MaxSecureTrojan.Malware.121218.susgen
McAfeeDti!42DE5EC1AD32
MicroWorld-eScanWin64.Expiro.Gen.7
MicrosoftTrojan:Win32/Phonzy.B!ml
RisingVirus.Expiro!1.A140 (CLASSIC)
SangforTrojan.Win32.Save.a
SentinelOneStatic AI - Malicious PE
SophosW64/Moiva-B
SymantecW64.Xpiro.J!dam
TACHYONVirus/W64.Movia
Trapminemalicious.moderate.ml.score
TrendMicroVirus.Win64.EXPIRO.SMAJC
TrendMicro-HouseCallVirus.Win64.EXPIRO.SMAJC
VIPREWin64.Expiro.Gen.7
VaristW64/ARisk.AS
VirITWin64.Expiro.AJ
WebrootW32.Virus.Win64.Moiva
ZoneAlarmW64/Moiva-B
huorongVirus/W64.Expiro.r
VirusTotal Report submitted 2026-05-04 21:44:32 UTC
ExIF Data
CharacterSetUnicode
CodeSize1456128
CompanyNameMicrosoft Corporation
EntryPoint0x14e448
FileDescriptionMicrosoft® Block Level Backup Engine Service EXE
FileFlags(none)
FileFlagsMask0x003f
FileOSWindows NT 32-bit
FileSize2034 kB
FileSubtype0
FileTypeWin64 EXE
FileTypeExtensionexe
FileVersion6.1.7601.17514 (win7sp1_rtm.101119-1850)
FileVersionNumber6.1.7601.17514
ImageFileCharacteristicsExecutable, Large address aware
ImageVersion6.1
InitializedDataSize54784
InternalNamewbengine.exe
LanguageCodeEnglish (U.S.)
LegalCopyright© Microsoft Corporation. All rights reserved.
LinkerVersion9
MIMETypeapplication/octet-stream
MachineTypeAMD AMD64
OSVersion6.1
ObjectFileTypeExecutable application
OriginalFileNamewbengine.exe
PETypePE32+
ProductNameMicrosoft® Windows® Operating System
ProductVersion6.1.7601.17514
ProductVersionNumber6.1.7601.17514
SubsystemWindows GUI
SubsystemVersion6.1
TimeStamp2010:11:20 09:48:01+00:00
UninitializedDataSize0