{12a0d279-58ec-4720-974d-c2ff44cfa3c9}

The file {12a0d279-58ec-4720-974d-c2ff44cfa3c9} has been detected as malware by 30 anti-virus scanners. According to AVG, this software downloads additional adware offers during setup.
Version:
1.0.0.0

MD5:
e675306a8f90865718deb64642c5b814

SHA-1:
853d47bafa78630a252a16f0ddf6ac47e0496223

SHA-256:
652c50ab6f62260db7de5437474ea7c8647858900194dd278dde33f0ba6fd54e

Scanner detections:
30 / 68

Status:
Malware

Analysis date:
4/27/2024 3:08:40 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.1614154
856

Agnitum Outpost
Trojan.DR.FrauDrop
7.1.1

Avira AntiVirus
TR/Downloader.A.1913
7.11.141.146

avast!
Win32:Malware-gen
2014.9-141002

AVG
Downloader.Generic13
2015.0.3334

Baidu Antivirus
Trojan.Win32.FrauDrop
4.0.3.14102

Bitdefender
Trojan.GenericKD.1614154
1.0.20.1375

Comodo Security
TrojWare.Win32.UMal.~A
18055

Dr.Web
Trojan.DownLoader11.3991
9.0.1.0275

Emsisoft Anti-Malware
Trojan.GenericKD.1614154
8.14.10.02.03

ESET NOD32
MSIL/TrojanDownloader.Tiny.BE (variant)
8.9639

Fortinet FortiGate
W32/FrauDrop.ADPOI!tr
10/2/2014

F-Secure
Trojan.GenericKD.1614154
11.2014-02-10_5

G Data
Trojan.GenericKD.1614154
14.10.24

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.2.2.29

K7 AntiVirus
Trojan-Downloader
13.176.11663

Kaspersky
Trojan-Dropper.Win32.FrauDrop
14.0.0.3164

Malwarebytes
Trojan.MSIL
v2014.10.02.03

McAfee
Artemis!E675306A8F90
5600.6990

MicroWorld eScan
Trojan.GenericKD.1614154
15.0.0.825

Norman
Suspicious_Gen4.GAEVM
11.20141002

nProtect
Trojan.GenericKD.1614154
14.04.04.01

Panda Antivirus
Trj/CI.A
14.10.02.03

Qihoo 360 Security
Win32/Trojan.Downloader.acc
1.0.0.1015

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
TROJ_SPNV.01CN14
7.2.275

Trend Micro
TROJ_SPNV.01CN14
10.465.02

Vba32 AntiVirus
TrojanDropper.FrauDrop.adphc
3.12.26.0

VIPRE Antivirus
Trojan.Win32.Generic
28066

XVirus List
Win32.Detected
2.10.2

File size:
12 KB (12,288 bytes)

Product version:
1.0.0.0

Original file name:
Downloader.exe

File PE Metadata
Compilation timestamp:
3/21/2014 8:49:49 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
192:QLCRyS4PVacn7w9VEnlYJL5LT9Ia5qnlaZ2GZuPlymSmXLLMN2lH:QLCR5sZw9P9LT9IzaVIzI

Entry address:
0x370E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
6 KB (6,144 bytes)

Remove {12a0d279-58ec-4720-974d-c2ff44cfa3c9} - Powered by Reason Core Security