drop_0.sample | |
PE32 executable (DLL) (console) Intel 80386, for MS Windows | 84000 bytes |
2017-06-27 21:52:31 | |
6a0cc0955e66bab96a3505e99c3042cc | |
5771069426ce1e1c4326d1942d02ce9debf1e350 | |
d3b3e184b052b807bae5401bb54a5986ceb4cfe40f5515b1069ff8a94121d65e | |
44eab283e0f7c0f508697e4eaa758b4d3b46b13127a1d16211feaa7c1a762c5221467f8cfcfc6ddc2281825cd2dcf849a4c98638e7f36911f67bedc56a8a3276 | |
1536:yI5qB+sn+Qp5sRDs74D0E4ZFyIOlnToIf3kxxRiAHxTp:yjB+snBEA80VFQNTBf3QvHxd | |
52dd60b5f3c9e2f17c2e303e8c8d4eab | |
N/A | |
Ad-Aware | Trojan.Ransom.GoldenEye.B |
Arcabit | Trojan.Ransom.GoldenEye.B |
BitDefender | Trojan.Ransom.GoldenEye.B |
CrowdStrike | malicious_confidence_100% (D) |
Cyren | W32/Petya.VUNZ-1981 |
DrWeb | Trojan.Encoder.12544 |
ESET-NOD32 | Win32/Diskcoder.C |
Emsisoft | Trojan-Ransom.GoldenEye (A) |
Endgame | malicious (high confidence) |
F-Prot | W32/Petya.Ransom.J |
F-Secure | Trojan.Ransom.GoldenEye.B |
GData | Trojan.Ransom.GoldenEye.B |
Invincea | heuristic |
K7AntiVirus | Trojan ( 0001140e1 ) |
K7GW | Trojan ( 0001140e1 ) |
Kaspersky | HEUR:Trojan-Ransom.Win32.PetrWrap.d |
Malwarebytes | Ransom.Petya.EB |
MicroWorld-eScan | Trojan.Ransom.GoldenEye.B |
ZoneAlarm | HEUR:Trojan-Ransom.Win32.PetrWrap.d |
HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\IMM |
HKEY_USERS\S-1-5-21-1547161642-507921405-839522115-1004\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Layers |
HKEY_CURRENT_USER\SOFTWARE\Microsoft\CTF |
HKEY_LOCAL_MACHINE\Software\Microsoft\CTF\SystemShared |