Analysis Date2018-02-20 11:54:06
MD5
SHA141aec4dde93b5ffddfc7dbccac35524c2b50b1de

Static Details:

AVArcabit (arcavir)Gen:Variant.Razy.28915
AVAuthentiumW32/S-a527a13e!Eldorado
AVGrisoft (avg)PSW.Agent.BFIY
AVAvira (antivir)TR/Rogue.11473269
AVAlwil (avast)Malware-gen
AVAlwil (avast)Win32:Malware-gen
AVAd-AwareGen:Variant.Razy.28915
AVBitDefenderGen:Variant.Razy.28915
AVBullGuardGen:Variant.Razy.28915
AVClamAVNo Virus
AVDr. WebTrojan.Siggen6.57235
AVEmsisoftGen:Variant.Razy.28915
AVMicroWorld (escan)Gen:Variant.Razy.28915
AVCA (E-Trust Ino)Trojan.Generic.11473269
AVFortinetW32/Agent.NYQ.PWS!tr
AVFrisk (f-prot)W32/S-a527a13e!Eldorado
AVF-SecureTrojan:W32/CosmicDuke.C
AVIkarusTrojan.Win32.PSW
AVK7Password-Stealer ( 0049b09a1 )
AVKasperskyBackdoor.Win32.CosmicDuke.gen
AVMalwareBytesError Scanning File
AVMcafeePWS-FBWV!EF2B7337298C
AVMicrosoft Security EssentialsTrojanDropper:Win32/Miniduke!rfn
AVNANOTrojan.Win32.CosmicDuke.dbzksi
AVEset (nod32)Win32/PSW.Agent.NYQ
AVPadvishNo Virus
AVCAT (quickheal)Backdoor.CosmicDuke.A3
AVRisingNo Virus
AV360 SafeNo Virus
AVSUPERAntiSpywarePUP.CosmicDuke/Variant
AVSymantecTrojan.Gen
AVTrend MicroNo Virus
AVTwisterBackdoor.CosmicDuke.gen.qgii
AVVirusBlokAda (vba32)Backdoor.CosmicDuke
AVWindows DefenderTrojanDropper:Win32/Miniduke!rfn
AVZillya!Trojan.Agent.Win32.667579

Runtime Details:

Network Details:


Raw Pcap

Strings