System currently contains 115,728,528 malware samples.
| a6f40c4db6095ca2bd6e92599abf5868afb020dfdd76a2118d34c6747f0387a3 |
| VirusShare info last updated 2026-07-31 00:00:00 UTC |
|
|
| MD5 | 6e56106dcd969c4026de3640af193754 |
| SHA1 | fe0414fe87a621440f0ef04c2409fc8f8e02ea09 |
| SHA256 | a6f40c4db6095ca2bd6e92599abf5868afb020dfdd76a2118d34c6747f0387a3 |
| SSDeep | 24576:5nndbmV9QToaqMsQGuL51azTt9fyIXhKjuj7loLRWlp/:nbmGy2Uzx9fyIXAjUhplp/ |
| Authentihash | 121013b6b5ca351d21add262e81aa7605b212a63a5fa8b33976c1a0f1ab2c715 |
| Size | 1,051,832 bytes |
| File Type | PE32 executable (GUI) Intel 80386, for MS Windows |
| Mime Type | application/x-dosexec |
| Extension | exe |
| TrID | Win64 Executable (generic) (43.3%) Win32 Executable (generic) (29.9%) Generic Win/DOS Executable (13.3%) DOS Executable (generic) (13.3%)
|
Detections (24/66) | | AhnLab-V3 | PUP/Win32.Downloader.C1449029 | | CTX | exe.trojan.moderate | | CrowdStrike | win/grayware_confidence_90% (D) | | Cylance | Unsafe | | Cynet | Malicious (score: 100) | | Elastic | malicious (high confidence) | | Fortinet | Adware/Presenoker | | Google | Detected | | Gridinsoft | Trojan.Win32.Downloader.oa!s1 | | Kingsoft | malware.kb.a.982 | | Lionic | Trojan.Win32.Generic.4!c | | Malwarebytes | PUP.Optional.RegNow | | McAfeeD | Trojan:Win/Detected.FAO | | Microsoft | Trojan:Win32/Wacatac.B!ml | | Paloalto | generic.ml | | Rising | Trojan.Tedy!8.16570 (RDMK:cmRtazpovlKaockKDlx+dgnX5+R8) | | Sophos | Generic ML PUA (PUA) | | Symantec | ML.Attribute.HighConfidence | | Trapmine | malicious.moderate.ml.score | | TrellixENS | GenericRXWW-BR!6E56106DCD96 | | VBA32 | Adware.Presenoker | | Varist | W32/ABApplication.ZGQO-7890 | | Xcitium | Application.Win32.Fourthrem.YU@6ftwpr | | Zillya | Trojan.GenericKD.Win32.41040 | | VirusTotal Report submitted 2026-07-30 01:20:53 UTC |
|
| ExIF Data | | CharacterSet | Windows, Latin1 | | CodeSize | 729088 | | CompanyName | RegNow.com | | EntryPoint | 0x90d3d | | FileDescription | RegNow Download Manager | | FileFlags | (none) | | FileFlagsMask | 0x003f | | FileOS | Win32 | | FileSize | 1027 kB | | FileSubtype | 0 | | FileType | Win32 EXE | | FileTypeExtension | exe | | FileVersion | 1.0.0 | | FileVersionNumber | 1.0.7.1 | | ImageFileCharacteristics | No relocs, Executable, 32-bit | | ImageVersion | 0 | | InitializedDataSize | 307200 | | InternalName | RegNow Download Manager | | LanguageCode | English (U.S.) | | LegalCopyright | © RegNow.com | | LinkerVersion | 8 | | MIMEType | application/octet-stream | | MachineType | Intel 386 or later, and compatibles | | OSVersion | 4 | | ObjectFileType | Executable application | | OriginalFileName | DldManager.exe | | PEType | PE32 | | ProductName | RegNow Download Manager | | ProductVersion | 1.0.0 | | ProductVersionNumber | 1.0.7.1 | | Subsystem | Windows GUI | | SubsystemVersion | 4 | | TimeStamp | 2009:09:14 15:54:33+00:00 | | UninitializedDataSize | 0 |
|