Analysis Date2018-04-04 20:04:35
MD5
SHA1387a574520c2417ea520ab74cf410605eb76fa69

Static Details:

AVArcabit (arcavir)Gen:Variant.Symmi.185
AVAuthentiumW32/Vobfus.BE.gen!Eldorado
AVGrisoft (avg)VB.5.C
AVAvira (antivir)TR/Dropper.Gen5
AVAlwil (avast)Agent-AZYN [Trj]
AVAd-AwareGen:Variant.Symmi.185
AVBitDefenderGen:Variant.Symmi.185
AVBullGuardGen:Variant.Symmi.185
AVClamAVWin.Trojan.Vobfus-19
AVDr. WebTrojan.VbCrypt.60
AVEmsisoftGen:Variant.Symmi.185
AVMicroWorld (escan)Gen:Variant.Symmi.185
AVCA (E-Trust Ino)Gen:Variant.Symmi.185
AVFortinetW32/VBKrypt.C!tr
AVFrisk (f-prot)W32/Vobfus.AD.gen!Eldorado
AVF-SecureGen:Variant.Symmi.185
AVIkarusWorm.Win32.Vobfus
AVK7EmailWorm ( 0040f0951 )
AVKasperskyWorm.Win32.Vobfus.erzg
AVMalwareBytesWorm.Obfuscator
AVMcafeeVBObfus.da
AVMicrosoft Security EssentialsNo Virus
AVNANOTrojan.Win32.VB.ccwqss
AVEset (nod32)Win32/Pronny.AT worm
AVPadvishWorm.Win32.WBNA.bul
AVCAT (quickheal)Worm.Vobfus.Gen
AVRisingTrojan.Win32.Generic.12D23248
AV360 SafeWorm.Win32.Vobfus.C
AVSUPERAntiSpywareTrojan.Agent/Gen-Faker
AVSymantecW32.Changeup
AVTrend MicroWORM_VOBFUS.SM01
AVTwisterVirus.EA77@1F8693#A094@2.mg
AVVirusBlokAda (vba32)BScope.Trojan.VB.Onechki
AVWindows DefenderWorm:Win32/Vobfus
AVZillya!No Virus

Runtime Details:

Network Details:


Raw Pcap

Strings