VirusShare.com - Because Sharing is Caring

Home • Hashes • Research • About • Swag Shop

Account: Login

Please login to search and download.

System currently contains 108,316,219 malware samples.

Report for a sample recently added to the system:
81a127c1ded39b72cb53b2150ef42e1a96dad72de568689738ed10b43ceb3572
VirusShare info last updated 2026-01-21 00:00:01 UTC
Detected by 57 engines  
MD5158c994a5541e48cf9388fa3816c5bcf
SHA1c7b1d26c194dc9d073b71406cbd753465e2b904f
SHA25681a127c1ded39b72cb53b2150ef42e1a96dad72de568689738ed10b43ceb3572
SSDeep3072:hb3uhnk4Nn++oIWaY+13Vdmi3ZYIA35aDrm9GoWTtcr3ZRq4HO0dG237/FnncrdW:h0nk4Z++xWaY+dVYiJYIMKm4omcrpRHS
Authentihash37bd2fd2541b1cc5c1a3e6902c72539d02ec44ab2c4541ab8fc2c6afb0cbd6ae
Size143,318 bytes
File TypePE32 executable (console) Intel 80386 (stripped to external PDB), for MS Windows
Mime Typeapplication/x-dosexec
Extensionexe
TrIDMicrosoft Visual C++ compiled executable (generic) (32.2%)
Win64 Executable (generic) (20.5%)
Win32 Dynamic Link Library (generic) (12.8%)
Win16 NE executable (generic) (9.8%)
Win32 Executable (generic) (8.7%)
Detections
(57/71)
ALYacGen:Variant.Application.babar.21970
APEXMalicious
AVGWin32:Banker-LAA [Trj]
Acronissuspicious
AhnLab-V3PUP/Win32.Snojan.R217833
Antiy-AVLTrojan[Downloader]/Win32.Snojan.eiqu
ArcabitTrojan.Application.babar.D55D2
AvastWin32:Banker-LAA [Trj]
BitDefenderGen:Variant.Application.babar.21970
BkavW32.AIDetectMalware
CAT-QuickHealTrojan.AgentbIH.S20216328
CTXexe.unknown.babar
ClamAVWin.Malware.Cymt-10023133-0
CrowdStrikewin/malicious_confidence_100% (D)
CylanceUnsafe
CynetMalicious (score: 100)
DeepInstinctMALICIOUS
DrWebTool.Snojan.1
ESET-NOD32Win32/Agent.AAEF trojan
Elasticmalicious (high confidence)
EmsisoftGen:Variant.Application.babar.21970 (B)
FortinetW32/Agent.AAEF!tr
GDataWin32.Application.Snojan.A
GoogleDetected
GridinsoftTrojan.Win32.Agent.oa!s1
IkarusTrojan.Win32.Agent
JiangminDownloader.Snojan.adp
K7AntiVirusTrojan ( 005c835f1 )
K7GWTrojan ( 005464da1 )
KasperskyFlooder.Win32.CoreWarrior.x
Kingsoftmalware.kb.a.859
MalwarebytesTrojan.Xorist
MaxSecureVirus.W32.CoreWarrior.a_S01
McAfeeDti!81A127C1DED3
MicroWorld-eScanGen:Variant.Application.babar.21970
MicrosoftTrojan:Win32/CoreWarrior.DA!MTB
PandaTrj/Genetic.gen
RisingTrojan.Agent!1.DEC9 (CLASSIC)
SUPERAntiSpywareTrojan.Agent/Gen-Banker
SangforTrojan.Win32.Save.a
SentinelOneStatic AI - Malicious PE
SkyhighBehavesLike.Win32.FE_Trojan_Win.ch
SophosTroj/Flooder-FQ
SymantecHacktool.Flooder
TencentTrojan-DL.Win32.Small.hae
TrellixENSGenericRXWN-SW!158C994A5541
TrendMicro-HouseCallTrojan.Win32.VSX.PE04C9t
VBA32BScope.Trojan.Agentb
VIPREGen:Variant.Application.babar.21970
VaristW32/Trojan.OJFL-7110
VirITTrojan.Win32.Agent.CWE
WebrootW32.Malware.gen
YandexTrojan.GenAsa!+IN19GpQULE
ZillyaTrojan.Agent.Win32.3885903
ZoneAlarmTroj/Flooder-FQ
alibabacloudTrojan[downloader]:Win/Nemucod.f70c2531
huorongTrojanDownloader/Small.es
VirusTotal Report submitted 2026-01-18 01:49:23 UTC
ExIF Data
CodeSize118784
EntryPoint0x1130
FileSize140 kB
FileTypeWin32 EXE
FileTypeExtensionexe
ImageFileCharacteristicsExecutable, No line numbers, No symbols, 32-bit, No debug
ImageVersion1
InitializedDataSize22528
LinkerVersion2.56
MIMETypeapplication/octet-stream
MachineTypeIntel 386 or later, and compatibles
OSVersion4
PETypePE32
SubsystemWindows command line
SubsystemVersion4
TimeStamp2014:07:01 18:02:13+00:00
UninitializedDataSize512