Part of the Windows Operating System
MD5:
1aad5d95e12e0f153ac13511b2070c3d
SHA-1:
01d69dfecaf9927cfc90867e3cf96f64db46051b
SHA-256:
61ec275c5dfa2d620aa72632139e0872de3fd1e9a87b8f731d168e5f7ea7815a
Scanner detections:
7 / 68
Status:
Clean (7 false positive detections)
Analysis date:
12/20/2025 4:21:21 AM UTC (today)
Scan engine
Detection
Engine version
Agnitum Outpost
Packed/PECompact
7.1.1
Avira AntiVirus
TR/Agent.apc.128
7.11.123.4
Bkav FE
HW32.CDB
1.3.0.4613
Clam AntiVirus
PUA.Packed.PECompact-1
0.98/17411
Comodo Security
UnclassifiedMalware
17533
IKARUS anti.virus
Trojan-Dropper.Agent
t3scan.2.2.29
Quick Heal
(Suspicious) - DNAScan
12.13.11.00
File size:
154.5 KB (158,208 bytes)
Common path:
C:\Windows\System32\bubbles.scr
CTPH (ssdeep):
3072:lIIFeGuUup+p0v7N+LCzfk+OO/k3B6essrFXwDjeS+TeJwXNNHFK8uvD/o:lIIFiUur2+fw6KADjrYX/r