0k8z0.exe

Google Chrome

{70166A21-2F6A-4CC0-822C-607696D8F4B7}

The executable 0k8z0.exe has been detected as malware by 4 anti-virus scanners.
Publisher:
Google Inc.  (signed by {70166A21-2F6A-4CC0-822C-607696D8F4B7})

Product:
Google Chrome

Version:
34.0.1847.116

MD5:
5a324eb960da4e3d0a52a9c11b1e7200

SHA-1:
f330e80800655ef29a29562dff3e1789d244c269

SHA-256:
f8ece3c949a4cfa870317d515c821b3c010c26d681104722045b4fbe9f828c62

Scanner detections:
4 / 68

Status:
Malware

Analysis date:
4/25/2024 9:17:35 PM UTC  (today)

Scan engine
Detection
Engine version

avast!
MSIL:GenMalicious-BB [Trj]
160326-0

ESET NOD32
MSIL/Kryptik.UU trojan
8.0.319.0

McAfee
Trojan.PWSZbot-FXD!5A324EB960DA
18.0.204.0

Microsoft Security Essentials
Threat.Undefined
1.217.1229.0

File size:
254 KB (260,128 bytes)

Product version:
34.0.1847.116

Copyright:
Copyright 2012 Google Inc. All rights reserved.

Original file name:
Google Chrome.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\0k8z0.exe

Digital Signature
Authority:
{70166A21-2F6A-4CC0-822C-607696D8F4B7}

Valid from:
4/19/2014 5:47:18 AM

Valid to:
4/19/2015 11:47:18 AM

Subject:
CN={70166A21-2F6A-4CC0-822C-607696D8F4B7}

Issuer:
CN={70166A21-2F6A-4CC0-822C-607696D8F4B7}

Serial number:
3F0DF1EBD88FB1B94D119CFFAC6B01C9

File PE Metadata
Compilation timestamp:
4/22/2014 9:10:09 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:jnA0ZobKkUJ/mMY/+daSEt8UC8DXBHL7B3GN802owBaRK6g2/:bAWdaSz23lhBaRKc

Entry address:
0x3432E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
201 KB (205,824 bytes)

Remove 0k8z0.exe - Powered by Reason Core Security