| N/A | |
| HTML document, ASCII text, with very long lines, with CRLF, LF line terminators | 100825 |
| N/A | |
| d6f3f761b45504c662b0ac0bce3f9766 | |
| 6699ed7eb90b25da60e4b75769c5a64d9c294209 | |
| 4d52824662549f7f8487abe44cd9bc1ab0fe38c1b2a4427735840c0ab7d06772 | |
| N/A | |
| N/A | |
| N/A | |
| N/A | |
| Source: |

| ALYac | JS:Trojan.Cryxos.1772 |
| AVG | JS:Iframe-EXC [Trj] |
| Ad-Aware | Application.CoinMiner.CG |
| Antiy-AVL | Trojan/JS.CoinMiner.a |
| Arcabit | Application.CoinMiner.CG |
| Avast | JS:Iframe-EXC [Trj] |
| Avira | PUA/CryptoMiner.Gen |
| BitDefender | Application.CoinMiner.CG |
| CAT-QuickHeal | HTML.Downloader.33022 |
| Comodo | TrojWare.HTML.ExpKit.C@7rkkrv |
| Cyren | JS/CoinHive.A!Eldorado |
| DrWeb | JS.Miner.16 |
| ESET-NOD32 | HTML/ScrInject.B |
| Emsisoft | Application.CoinMiner.CG (B) |
| F-Prot | JS/CoinHive.A!Eldorado |
| F-Secure | JS:Trojan.Cryxos.1772 |
| Fortinet | JS/Cryxos.31AC!tr |
| GData | Script.Application.Coinminer.BD |
| Ikarus | HTML.ExploitKit |
| Kaspersky | HEUR:Trojan.Script.Generic |
| MAX | malware (ai score=80) |
| McAfee-GW-Edition | BehavesLike.HTML.ExpKitGen2.nq |
| MicroWorld-eScan | Application.CoinMiner.CG |
| Microsoft | Trojan:Win32/Skeeyah.A!bit |
| NANO-Antivirus | Riskware.Script.Miner.fjhmje |
| Rising | Trojan.CoinMiner!8.30A (TOPIS:Dkt11bCF8jM) |
| Sophos | Coinhive JavaScript cryptocoin miner (PUA) |
| TrendMicro | Possible_CoinHive-HTM01b |
| TrendMicro-HouseCall | Possible_CoinHive-HTM01b |
| Zillya | Trojan.CoinMiner.JS.3 |
| ZoneAlarm | HEUR:Trojan.Script.Generic |