регистрация.exe

The executable регистрация.exe has been detected as malware by 26 anti-virus scanners.
MD5:
e9afedfd2b7097fa295212853961bd95

SHA-1:
161704118600629f125e8c18a343e3b00b3148a8

Scanner detections:
26 / 68

Status:
Malware

Analysis date:
4/19/2024 4:47:08 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.1161515
866

AVG
Generic21
2015.0.3344

Baidu Antivirus
Trojan.Win32.Agent
4.0.3.14922

Bitdefender
Trojan.Generic.1161515
1.0.20.1325

Bkav FE
W32.Clode75.Trojan
1.3.0.4959

Comodo Security
ApplicUnsaf.Win32.HackTool.Agent.~BACU
19274

Emsisoft Anti-Malware
Trojan.Generic.1161515
8.14.09.22.10

ESET NOD32
Win32/HackTool.Patcher.BD (variant)
8.10296

Fortinet FortiGate
W32/Malware_fam.NB
9/22/2014

F-Prot
W32/Backdoor2.ELYW
v6.4.7.1.166

F-Secure
Trojan.Generic.1161515
11.2014-22-09_2

G Data
Trojan.Generic.1161515
14.9.24

IKARUS anti.virus
Virus.Win32.Small
t3scan.1.7.5.0

K7 AntiVirus
Backdoor
13.183.13125

McAfee
Artemis!E9AFEDFD2B70
5600.7000

MicroWorld eScan
Trojan.Generic.1161515
15.0.0.795

nProtect
Trojan/W32.Agent.42496.AM
14.08.21.01

Panda Antivirus
Generic Trojan
14.09.22.10

Qihoo 360 Security
Win32/Trojan.b7f
1.0.0.1015

Quick Heal
HackTool.Patcher.A
9.14.14.00

Rising Antivirus
PE:Trojan.Win32.Generic.12AEE07E!313450622
23.00.65.14920

Sophos
Generic Patcher
4.98

Trend Micro House Call
PAK_Generic.005
7.2.265

Trend Micro
PAK_Generic.005
10.465.22

VIPRE Antivirus
Trojan.1
32438

ViRobot
Trojan.Win32.Agent.42496.BV
2011.4.7.4223

File size:
41.5 KB (42,496 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\total commander podarok edition\programm\neat image\???????????.exe

File PE Metadata
Compilation timestamp:
10/31/2005 3:08:58 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
768:au2uv/HuiPfNukdKhEiqZDzWjW8nf4TBhu/Z8Uc5K:cuXuidt0bqUjAtUh8U9

Entry address:
0x168D0

Entry point:
60, BE, 00, E0, 40, 00, 8D, BE, 00, 30, FF, FF, 57, 83, CD, FF, EB, 10, 90, 90, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 75, 20, 41, 01, DB, 75...
 
[+]

Packer / compiler:
UPX 2.90LZMA

Code size:
36 KB (36,864 bytes)

Remove регистрация.exe - Powered by Reason Core Security