| ALYac | Trojan.Agent.CGMR |
| APEX | Malicious |
| AVG | Win32:Prockill-A [Rtk] |
| AhnLab-V3 | Trojan/Win32.Webtoos.C1040590 |
| Antiy-AVL | Trojan[Rootkit]/Win32.Agent |
| Arcabit | Trojan.Agent.CGMR |
| Avast | Win32:Prockill-A [Rtk] |
| Avira | TR/Agent.14016.2 |
| Baidu | Win32.Rootkit.Agent.at |
| BitDefender | Trojan.Agent.CGMR |
| BitDefenderTheta | Gen:NN.ZexaF.36802.puW@aKX7Duki |
| Bkav | W32.AIDetectMalware |
| CAT-QuickHeal | Trojan.WebToos.S18562 |
| ClamAV | Win.Trojan.Gadoopt-2 |
| CrowdStrike | win/malicious_confidence_90% (D) |
| Cybereason | malicious.cfd775 |
| Cylance | unsafe |
| Cynet | Malicious (score: 100) |
| DeepInstinct | MALICIOUS |
| DrWeb | BackDoor.Gates.8 |
| ESET-NOD32 | multiple detections |
| Emsisoft | Trojan.Agent.CGMR (B) |
| F-Secure | Trojan.TR/Agent.14016.2 |
| FireEye | Generic.mg.5ac2d5bcfd775d99 |
| Fortinet | W32/Agent.DGUG!tr |
| GData | Trojan.Agent.CGMR |
| Google | Detected |
| Gridinsoft | Rootkit.Win32.Agent.bot!s1 |
| Ikarus | Trojan.Win32.Rootkit |
| Jiangmin | Trojan/Reconyc.eyd |
| K7AntiVirus | RootKit ( 0055e3fe1 ) |
| K7GW | RootKit ( 0055e3fe1 ) |
| Kaspersky | Trojan.Win32.Reconyc.esql |
| Kingsoft | malware.kb.a.999 |
| MAX | malware (ai score=85) |
| Malwarebytes | Generic.Malware.AI.DDS |
| MaxSecure | Trojan.Malware.8750652.susgen |
| McAfee | GenericRXDY-OY!5AC2D5BCFD77 |
| MicroWorld-eScan | Trojan.Agent.CGMR |
| Microsoft | Trojan:Win32/WebToos.A |
| NANO-Antivirus | Trojan.Win32.Reconyc.exhhog |
| Panda | Trj/Genetic.gen |
| Rising | Trojan.Gadoopt/x64!1.A7DF (CLASSIC) |
| SUPERAntiSpyware | Trojan.Agent/Gen-Backdoor |
| Sangfor | Trojan.Win32.Save.a |
| SentinelOne | Static AI - Malicious PE |
| Skyhigh | GenericRXDY-OY!5AC2D5BCFD77 |
| Sophos | Port stealthing rootkit |
| Symantec | SMG.Heur!gen |
| TACHYON | Trojan/W32.Rootkit.1315840 |
| Trapmine | malicious.high.ml.score |
| TrendMicro | TROJ_WEBTOOS.SM |
| TrendMicro-HouseCall | TROJ_WEBTOOS.SM |
| VBA32 | BScope.Trojan.Nagyo |
| Varist | W32/WebToos.B.gen!Eldorado |
| ViRobot | Backdoor.Win32.Agent.1315840.A |
| VirIT | Trojan.Win32.Generic.CNZL |
| Webroot | W32.Trojan.Gen |
| Yandex | Trojan.GenAsa!84t1QyHA9Mc |
| Zillya | Rootkit.Agent.Win32.15968 |
| ZoneAlarm | Trojan.Win32.Reconyc.esql |
| alibabacloud | DDoS:Multi/BillGates.4625dac3 |
| tehtris | Generic.Malware |
| Alibaba | Trojan:Win32/WebToos.fbb4335d |
| Antiy-AVL | Trojan/Win32.Reconyc |
| CAT-QuickHeal | Trojan.Ghanarava.1752158374ef5d75 |
| CTX | exe.trojan.reconyc |
| CrowdStrike | win/malicious_confidence_100% (W) |
| Cylance | Unsafe |
| Elastic | malicious (high confidence) |
| Kingsoft | Win32.Trojan.Reconyc.esql |
| Lionic | Trojan.Win32.Reconyc.tsr5 |
| McAfeeD | Real Protect-LS!5AC2D5BCFD77 |
| Paloalto | generic.ml |
| SentinelOne | Static AI - Suspicious PE |
| Skyhigh | BehavesLike.Win32.Generic.th |
| Sophos | Troj/RKPort-Fam |
| Symantec | ML.Attribute.HighConfidence |
| Tencent | Trojan.Win32.Reconyc.ca |
| TrellixENS | GenericRXDY-OY!5AC2D5BCFD77 |
| VIPRE | Trojan.Agent.CGMR |
| Xcitium | Malware@#3l5home4zx29r |
| ZoneAlarm | Troj/RKPort-Fam |
| alibabacloud | DDoS:Multi/BillGates |
| huorong | Trojan/Nagyo |