Analysis Date2018-04-21 03:01:10
MD5
SHA1fb270ddc0da9d88647973a9812578d8252dadbd2

Static Details:

AVArcabit (arcavir)Gen:Variant.Razy.18454
AVAuthentiumW32/S-28f27b9f!Eldorado
AVGrisoft (avg)Error Scanning File
AVAvira (antivir)TR/Rogue.11470599
AVAlwil (avast)Dropper-OXM [Trj]
AVAd-AwareGen:Variant.Razy.18454
AVBitDefenderGen:Variant.Razy.18454
AVBullGuardGen:Variant.Razy.18454
AVClamAVWin.Trojan.11470599-1
AVDr. WebTrojan.PWS.Nitro
AVEmsisoftGen:Variant.Razy.18454
AVMicroWorld (escan)Gen:Variant.Razy.18454
AVCA (E-Trust Ino)Trojan.Generic.11470599
AVFortinetW32/Agent.SKL!tr
AVFrisk (f-prot)W32/S-28f27b9f!Eldorado
AVF-SecureTrojan:W32/CosmicDuke.C
AVIkarusTrojan.SuspectCRC
AVK7Password-Stealer ( 0049b09a1 )
AVKasperskyBackdoor.Win32.CosmicDuke.gwc
AVMalwareBytesBackdoor.CosmicDuke
AVMcafeeGenericRXAA-AB!21DF8C53AC20
AVMicrosoft Security EssentialsTrojanDropper:Win32/Miniduke!rfn
AVNANOTrojan.Win32.Agent.dbyqsn
AVEset (nod32)Win32/PSW.Agent.NYQ
AVPadvishNo Virus
AVCAT (quickheal)TrojanDropper.Miniduke.A3
AVRisingNo Virus
AV360 SafeNo Virus
AVSUPERAntiSpywareError Scanning File
AVSymantecBackdoor.Tinybaron
AVTrend MicroNo Virus
AVTwisterBackdoor.CosmicDuke.gen.blha
AVVirusBlokAda (vba32)Backdoor.CosmicDuke
AVWindows DefenderTrojanDropper:Win32/Miniduke!rfn
AVZillya!Trojan.Agent.Win32.472854

Runtime Details:

Network Details:


Raw Pcap

Strings