{0f790d2d-77b7-4d5e-8e20-42fdfd9b0df9}

The file {0f790d2d-77b7-4d5e-8e20-42fdfd9b0df9} has been detected as malware by 37 anti-virus scanners.
MD5:
c559ddae457dfcd6bae34dc08481c2e8

SHA-1:
9c9ef6180a366e6cfe3d219f75b468c718bac74a

SHA-256:
7071007a6b73ffb808b4c793874529214d71847c3e8e96aaefd5ac21a09cf012

Scanner detections:
37 / 68

Status:
Malware

Analysis date:
4/24/2024 10:18:55 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.219676
856

AhnLab V3 Security
Backdoor/Win32.Androm
2014.06.13

Avira AntiVirus
Worm/Gamarue.itza
7.11.154.162

avast!
Win32:Citadel-K [Trj]
2014.9-141002

AVG
Defiler.G
2015.0.3334

Baidu Antivirus
Trojan.Win32.Wauchos
4.0.3.14102

Bitdefender
Gen:Variant.Kazy.219676
1.0.20.1375

Bkav FE
W32.Msbzmu.Trojan
1.3.0.4959

Comodo Security
TrojWare.Win32.Kryptik.AFJS
18533

Dr.Web
BackDoor.Andromeda.22
9.0.1.0275

Emsisoft Anti-Malware
Gen:Variant.Kazy.219676
8.14.10.02.03

ESET NOD32
Win32/TrojanDownloader.Wauchos
8.9939

Fortinet FortiGate
W32/Kryptik.AFJS!tr
10/2/2014

F-Prot
W32/Andromeda.A.gen
v6.4.7.1.166

F-Secure
Gen:Variant.Kazy.219676
11.2014-02-10_5

G Data
Gen:Variant.Kazy.219676
14.10.24

IKARUS anti.virus
Trojan.Defiler
t3scan.1.6.1.0

K7 AntiVirus
Backdoor
13.1712387

Kaspersky
Backdoor.Win32.Androm
14.0.0.3164

Malwarebytes
Trojan.Agent.NR
v2014.10.02.03

McAfee
W32/Worm-FFE!C559DDAE457D
5600.6990

Microsoft Security Essentials
Worm:Win32/Gamarue.I
1.10600

MicroWorld eScan
Gen:Variant.Kazy.219676
15.0.0.825

NANO AntiVirus
Trojan.Win32.Androm.ciylnt
0.28.0.60253

Norman
Kryptik.BMV
11.20141002

nProtect
Backdoor/W32.Androm.13824.I
14.06.12.01

Panda Antivirus
Trj/CI.A
14.10.02.03

Qihoo 360 Security
Win32/Worm.2f1
1.0.0.1015

Quick Heal
Worm.Gamarue.I1
10.14.14.00

Rising Antivirus
PE:Worm.Win32.Gamarue.b!1075351473
23.00.65.14930

Sophos
Troj/Gamarue-AG
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Cryptic
10325

Trend Micro House Call
TSPY_GAMARUE_BL132AB8.TOMC
7.2.275

Trend Micro
TSPY_GAMARUE_BL132AB8.TOMC
10.465.02

Vba32 AntiVirus
Malware-Cryptor.Inject.gen.2
3.12.26.0

VIPRE Antivirus
Trojan-Downloader.Win32.Dofoil.a
30254

ViRobot
Backdoor.Win32.A.Androm.13824.X
2011.4.7.4223

File size:
13.5 KB (13,824 bytes)

File PE Metadata
Compilation timestamp:
11/12/2012 9:09:59 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
384:kLOTSoMaHAhzQYVu1TY7gKJEmizmzCaF1FY:VSagh0Qu1UkKE7AF

Entry address:
0x141C

Entry point:
55, 8B, EC, 81, C4, 78, FE, FF, FF, 64, A1, 30, 00, 00, 00, 8B, 40, 0C, 8B, 40, 0C, 8B, 00, 8B, 40, 18, 89, 45, C8, 66, C7, 45, B8, 18, 00, 66, C7, 45, BA, 1A, 00, C7, 45, BC, 00, 10, 40, 00, 68, 97, B1, EC, 18, FF, 75, C8, E8, 8D, FC, FF, FF, 85, C0, 0F, 84, 12, 03, 00, 00, 8B, D0, 8D, 45, C4, 50, 8D, 45, B8, 50, 6A, 00, 6A, 00, FF, D2, 85, C0, 0F, 85, FA, 02, 00, 00, 8D, 35, F0, 13, 40, 00, 8D, 7D, FC, FC, AD, 85, C0, 74, 15, 50, FF, 75, C4, E8, 55, FC, FF, FF, 85, C0, 0F, 84, DA, 02, 00, 00, FD, AB, EB...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
13 KB (13,312 bytes)

Remove {0f790d2d-77b7-4d5e-8e20-42fdfd9b0df9} - Powered by Reason Core Security