VirusShare.com - Because Sharing is Caring

Home • Hashes • Research • About • Swag Shop

Account: Login

Please login to search and download.

System currently contains 110,794,454 malware samples.

Report for a sample recently added to the system:
80f11cbccf9b92e6f565d1eecd7a71298f0de4805f23be18eed7901e77f02437
VirusShare info last updated 2026-03-18 00:00:01 UTC
Detected by 21 engines  
MD539ff6c0f67cfccfa121af31d475ba849
SHA11ac2be2615c20d7a91c8149da1c76809e9ca802f
SHA25680f11cbccf9b92e6f565d1eecd7a71298f0de4805f23be18eed7901e77f02437
SSDeep49152:gDtoZUM84pvydB3IisNBk9/fw2BwfmM0fP8xmN3Aek03noj45wlDT:XnfvWCisNi9XwgwfoXeUJF3noxD
Authentihash33cf7c4e4c665b360352a03176a3136baf68aee537ca1f52dcaf2483e5668ce0
Size2,690,795 bytes
File TypePE32 executable (GUI) Intel 80386, for MS Windows
Mime Typeapplication/x-dosexec
Extensionexe
TrIDWindows Control Panel Item (generic) (53.9%)
Microsoft Visual C++ compiled executable (generic) (15.4%)
Win64 Executable (generic) (9.8%)
Win32 Dynamic Link Library (generic) (6.1%)
Win16 NE executable (generic) (4.7%)
Detections
(21/69)
APEXMalicious
Antiy-AVLTrojan/Win32.Ursu
ClamAVWin.Malware.Bulz-9859378-0
CrowdStrikewin/grayware_confidence_100% (W)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
Elasticmalicious (high confidence)
FortinetW32/Ipamor.F33A!tr
GDataWin32.Trojan.PSE.1YR40NX
GoogleDetected
GridinsoftRansom.Win32.AI.oa!s1
JiangminTrojan.MSILHeracles.i
McAfeeDTrojan:Win/Wacatac.EHA
MicrosoftPUA:Win32/Puwaders.C!ml
SangforTrojan.Win32.Save.a
SentinelOneStatic AI - Malicious PE
SophosGeneric ML PUA (PUA)
VBA32Trojan.Wacatac
VaristW32/Ipamor.AQ.gen!Eldorado
ZillyaTrojan.Sdum.Win32.6508
VirusTotal Report submitted 2026-03-16 20:14:25 UTC
ExIF Data
CharacterSetWindows, Latin1
CodeSize70144
CompanyNameMicrosoft Corporation
EntryPoint0x44f0
FileDescriptionOffice Licensing Admin Access Provider
FileFlagsPre-release, Special build
FileFlagsMask0x003f
FileOSWindows NT 32-bit
FileSize2.6 MB
FileSubtype0
FileTypeWin32 EXE
FileTypeExtensionexe
FileVersion16.0.6701.1029
FileVersionNumber16.0.6701.1029
ImageFileCharacteristicsExecutable, 32-bit
ImageVersion0
InitializedDataSize283136
InternalNameliclua.exe
LanguageCodeNeutral
LegalTrademarks1Microsoft® is a registered trademark of Microsoft Corporation.
LegalTrademarks2Windows® is a registered trademark of Microsoft Corporation.
LinkerVersion14
MIMETypeapplication/octet-stream
MOSEVersionBETA
MachineTypeIntel 386 or later, and compatibles
OSVersion6.1
ObjectFileTypeExecutable application
OriginalFileNameliclua.exe
PETypePE32
ProductNameOffice Licensing Admin Access Provider
ProductVersion16.0.6701.1029
ProductVersionNumber16.0.6701.0
SubsystemWindows GUI
SubsystemVersion6.1
TimeStamp2016:06:04 12:39:52+00:00
UninitializedDataSize0