| ALYac | Gen:Variant.Application.fragtor.2652 |
| APEX | Malicious |
| AVG | Win32:Malware-gen |
| Acronis | suspicious |
| AhnLab-V3 | Trojan/Win.Generic.R656602 |
| Alibaba | TrojanDropper:Win32/Generic.a176ded8 |
| Antiy-AVL | Trojan[Dropper]/Win32.Daws |
| Arcabit | Trojan.Application.fragtor.DA5C |
| Avast | Win32:Malware-gen |
| Avira | TR/Dropper.Gen |
| Baidu | Win32.Trojan.Agent.el |
| BitDefender | Gen:Variant.Application.fragtor.2652 |
| Bkav | W32.AIDetectMalware |
| CAT-QuickHeal | Trojan.Msposer.7372 |
| CTX | exe.trojan.generic |
| ClamAV | Win.Malware.7cbdf52c-10004103-0 |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | Trojan.Siggen7.56291 |
| ESET-NOD32 | Win32/Agent.TLD trojan |
| Elastic | malicious (high confidence) |
| Emsisoft | Gen:Variant.Application.fragtor.2652 (B) |
| F-Secure | Trojan.TR/Dropper.Gen |
| Fortinet | W32/Agent.TLD!tr |
| GData | Gen:Variant.Application.fragtor.2652 |
| Google | Detected |
| Gridinsoft | Trojan.Win32.Agent.oa!s1 |
| Ikarus | Trojan-PWS.Win32.Agent.iu |
| Jiangmin | TrojanDropper.Daws.kbg |
| K7AntiVirus | Trojan-Downloader ( 005ce5a51 ) |
| K7GW | Trojan-Downloader ( 005ce5a51 ) |
| Kaspersky | HEUR:Trojan-Dropper.Win32.Daws.gen |
| Kingsoft | malware.kb.b.997 |
| Lionic | Trojan.Win32.Blihan.b!c |
| Malwarebytes | Generic.Malware.Gen.DDS |
| MaxSecure | Trojan.Malware.121218.susgen |
| McAfeeD | Real Protect-LS!5F71EA9939D2 |
| MicroWorld-eScan | Gen:Variant.Application.fragtor.2652 |
| Microsoft | Trojan:Win32/Blihan!rfn |
| NANO-Antivirus | Virus.Win32.Gen-Crypt.ccnc |
| Paloalto | generic.ml |
| Panda | Trj/Genetic.gen |
| Rising | Trojan.Agent!1.DC48 (CLASSIC) |
| Sangfor | Suspicious.Win32.Save.pkr |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | BehavesLike.Win32.Downloader.gc |
| Sophos | Troj/Blihan-Gen |
| Tencent | Trojan.Win32.Sisron.weqa |
| Trapmine | malicious.high.ml.score |
| TrellixENS | Artemis!5F71EA9939D2 |
| TrendMicro | TROJ_GEN.R002C0DAV26 |
| TrendMicro-HouseCall | TROJ_GEN.R002C0DAV26 |
| VBA32 | Trojan.Blihan |
| VIPRE | Gen:Variant.Application.fragtor.2652 |
| Varist | W32/Agent.BRN.gen!Eldorado |
| ViRobot | Trojan.Win.Z.Daws.454344.E |
| VirIT | Trojan.Win32.Genus.WKV |
| Yandex | Trojan.DR.Daws!ydQcnXzcGwI |
| Zillya | Dropper.Daws.Win32.32058 |
| ZoneAlarm | Troj/Blihan-Gen |
| alibabacloud | Trojan[Downloader]:Win/Agent!F.FZ |
| huorong | HVM:Trojan/MalBehav.gen!A |
| tehtris | Generic.Malware |
| VirusTotal Report submitted 2026-02-01 10:36:52 UTC |