× Cookies are disabled! This site requires cookies to be enabled to work properly
SHA256: 86641bcf4449f6cd92ba5be73418bbc0639694fd9ece3bd9de473c68cd3a6abf
File name: vt-upload-vLx2P
Detection ratio: 13 / 51
Analysis date: 2014-03-29 05:32:20 UTC ( 4 years, 8 months ago )
Antivirus Result Update
AhnLab-V3 Trojan/Win32.Ransomlock 20140328
AntiVir TR/ZbotCitadel.A.806 20140329
Avast Win32:Malware-gen 20140329
AVG Inject2.XKK 20140328
Bkav HW32.CDB.8017 20140328
ESET-NOD32 a variant of Win32/Injector.BAPY 20140329
Kaspersky Trojan-Ransom.Win32.WLock.atx 20140329
Malwarebytes Trojan.Agent.ED 20140329
McAfee Artemis!335E5FDCF0EA 20140329
McAfee-GW-Edition Artemis!335E5FDCF0EA 20140329
Panda Suspicious file 20140328
Sophos AV Mal/Generic-S 20140329
TrendMicro-HouseCall TROJ_GEN.R00JH07CS14 20140329
Ad-Aware 20140329
AegisLab 20140329
Yandex 20140328
Antiy-AVL 20140329
Baidu-International 20140328
BitDefender 20140329
ByteHero 20140329
CAT-QuickHeal 20140328
ClamAV 20140329
CMC 20140328
Commtouch 20140329
Comodo 20140329
DrWeb 20140329
Emsisoft 20140329
F-Prot 20140329
F-Secure 20140329
Fortinet 20140329
GData 20140329
Ikarus 20140328
Jiangmin 20140329
K7AntiVirus 20140328
K7GW 20140328
Kingsoft 20140329
Microsoft 20140329
eScan 20140329
NANO-Antivirus 20140329
Norman 20140328
nProtect 20140328
Qihoo-360 20140329
Rising 20140328
SUPERAntiSpyware 20140329
Symantec 20140329
TheHacker 20140329
TotalDefense 20140328
TrendMicro 20140329
VBA32 20140328
VIPRE 20140329
ViRobot 20140329
File identification
MD5 335e5fdcf0eaa16b5b2a1e6a61ba599f
SHA1 d8879fce21b6d433c17e57c36b802a67841ba04b
SHA256 86641bcf4449f6cd92ba5be73418bbc0639694fd9ece3bd9de473c68cd3a6abf
ssdeep
6144:gASjdPL5/8sy6sVoN40P7SEIG0Sr6oEIK+6Foa3e:gASjdPL5/W6a521SSGoEx+yoaO

File size 305.0 KB ( 312320 bytes )
File type Win32 EXE
Magic literal
PE32 executable for MS Windows (GUI) Intel 80386 32-bit

TrID Win32 Executable (generic) (52.9%)
Generic Win/DOS Executable (23.5%)
DOS Executable Generic (23.5%)
Tags
peexe

VirusTotal metadata
First submission 2014-03-29 05:32:20 UTC ( 4 years, 8 months ago )
Last submission 2014-03-29 05:32:20 UTC ( 4 years, 8 months ago )
File names vt-upload-vLx2P
Advanced heuristic and reputation engines
Symantec reputation Suspicious.Insight
No comments. No VirusTotal Community member has commented on this item yet, be the first one to do so!

Leave your comment...

?
Post comment

You have not signed in. Only registered users can leave comments, sign in and have a voice!

No votes. No one has voted on this item yet, be the first one to do so!
Condensed report! The following is a condensed report of the behaviour of the file when executed in a controlled environment. The actions and events described were either performed by the file itself or by any other process launched by the executed file or subjected to code injection by the executed file.
Opened files
Read files
Opened mutexes
Runtime DLLs
Additional details
The file sends control codes directly to certain device drivers making use of the DeviceIoControl Windows API function.