Gridinsoft Logo

The build.msi File Analysis

Technical Analysis

File Name build.msi
File Type
Windows Installer
Magic Bytes Composite Document File V2 Document, Little Endian, Os: Windows, Version 10.0, MSI Installer, Security: 0, Code page: 1252, Revision Number: {066E7F4F-DB69-4CA0-AFED-7F4400B62CF1}, Number of Words: 10, Subject: Klio Verfair Tools, Author: TasovCoop, Name of Creating Application: Klio Verfair Tools, Template: ;1033, Comments: This installer database contains the logic and data required to install Klio Verfair Tools., Title: Installation Database, Keywords: Installer, MSI, Database, Create Time/Date: *Bad* 0x2e8d1d4067e03978, Last Saved Time/Date: *Bad* 0x2e8d1d4067e03978, Last Printed: *Bad* 0x2e8d1d4067e03978, Number of Pages: 450
SSDEEP Hash
786432:m0zVmrjV7eIAtC9OTZPIXvgIcBxrQMXg/01wSNrQHziyaZrvyZB8rGMXhU7pY:mSVmrjV7eI/9OTZeapQ+Sqnrcp
Scanner Version 1.0.211.174
Database Version 2025-03-25 13:01:00 UTC

Suspicious File Detected

Detected by 19 security engines - requires caution

This file requires additional checking for potential threats. Based on suspicious indicators, we will soon add it to our virus database.
31%
Detection Rate
65,047,040
File Size (bytes)
19/61
Engines Detected
2025-03-25
Analysis Date

Scan Another File

File Identification

Hash Type Value Action
MD5
de863cbac0ba600af196a236fb76be0f
SHA1
59ba5effc99c4d0a681bf3694921742689f92c61
SHA256
ef336a7dc4391d72984f51eb956dd564293c7c6cf1b156acbf9a5e9d44e5a6ae
SHA512
dceafea4f3f711f7004a48304814fa02e78f53d2b9fa6257499742e40f8cda0549d8ee4bf819a34fbdddd0dbb9d52293952a7eaa7176950316c87e2c1f7b9877

Security Engines with Detections (19 of 61)

ALYac
Trojan.Agent.GONU Malicious
VIPRE
Trojan.Agent.GONU Malicious
VirIT
Trojan.MSI.Agent.HWQ Malicious
ESET-NOD32
Win32/TrojanDropper.Agent.TAL Malicious
Avast
Other:Malware-gen [Trj] Malicious
Cynet
Malicious (score: 99) Malicious
BitDefender
Trojan.Agent.GONU Malicious
NANO-Antivirus
Trojan.Win32.Injuke.kudqxk Malicious
Emsisoft
Trojan.Agent.GONU (B) Malicious
F-Secure
Malware.BAT/Wincir.chwfc Malicious
CTX
msi.trojan.gonu Malicious
FireEye
Trojan.Agent.GONU Malicious
Avira
BAT/Wincir.chwfc Malicious
Fortinet
W32/Agent.TAL!tr Malicious
Arcabit
Trojan.Agent.GONU Malicious
Tencent
OB:Trojan-DL.Win32.Satacom.400107c Malicious
Ikarus
BAT.Wincir Malicious
GData
Trojan.Agent.GONU Malicious
AVG
Other:Malware-gen [Trj] Malicious
42 engines reported no threats - Only engines with detections are shown above for clarity

Remember: This is Result of Online Virus Scanner

Gridinsoft Anti-Malware has a much more powerful virus scanning engine. We recommend using it for a more precise diagnosis of infected systems. This brief guide will help you install our flagship product for more accurate diagnostics:

Download Anti-Malware

Keep Your System Protected

This file appears clean, but regular security maintenance is important

  1. Regular Scans: Run weekly system scans to detect new threats before they can cause damage.
  2. Keep Software Updated: Ensure your operating system and all applications have the latest security patches.
  3. Safe Browsing: Avoid suspicious websites and never download software from untrusted sources.
  4. Email Security: Be cautious with email attachments and links, even from known contacts.
Proactive Protection
19 antivirus engines detected potential threats. This could be a false positive, especially for system tools or packed software. Verify the file source and check if it's digitally signed by a trusted publisher.

Leave a Comment

Share your thoughts or insights about this file. Do you align with our conclusion?

* Your feedback could influence our rating, and rest assured, your email will remain confidential and will only be used to communicate with you if necessary.
Your Score for

Gridinsoft Anti-Malware

Cure your PC from any kind of malware

GridinSoft Anti-Malware will help you to protect your computer from spyware, trojans, backdoors, rootkits. It cleans your system from annoying advertisement modules and other malicious stuff developed by hackers.

Gridinsoft Anti-Malware