1b3a.tmp

The file 1b3a.tmp has been detected as malware by 27 anti-virus scanners.
MD5:
01100b1afe241ceea50960e347a579c3

SHA-1:
7f63984861778e112d06123ad0a21fb498a96f7c

SHA-256:
aa047179bb92930510122f8b80f4f5fb1016a9a8096f5054b09689ebefeeb920

Scanner detections:
27 / 68

Status:
Malware

Analysis date:
4/25/2024 9:09:06 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Mikey.14546
577

Agnitum Outpost
Trojan.Inject
7.1.1

AhnLab V3 Security
Malware/Win32.Generic
2015.06.12

Avira AntiVirus
TR/Crypt.ZPACK.175503
8.3.1.6

Arcabit
Trojan.Mikey.D38D2
1.0.0.425

AVG
Win32/Heim
2016.0.3055

Bitdefender
Gen:Variant.Mikey.14546
1.0.20.940

Bkav FE
HW32.Packed
1.3.0.6379

Emsisoft Anti-Malware
Gen:Variant.Mikey.14546
8.15.07.07.03

ESET NOD32
Win32/Kryptik.DKGM (variant)
9.11771

Fortinet FortiGate
W32/Inject.DKGM!tr
7/7/2015

F-Secure
Gen:Variant.Mikey.14546
11.2015-07-07_3

G Data
Gen:Variant.Mikey.14546
15.7.25

IKARUS anti.virus
Trojan.Win32.Crypt
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.205.16218

Kaspersky
Trojan.Win32.Inject
14.0.0.1772

Malwarebytes
Trojan.Vawtrak
v2015.07.07.03

McAfee
Artemis!01100B1AFE24
5600.6711

Microsoft Security Essentials
Backdoor:Win32/Vawtrak.A
1.1.11701.0

MicroWorld eScan
Gen:Variant.Mikey.14546
16.0.0.564

NANO AntiVirus
Trojan.Win32.ZPACK.dsmiog
0.30.24.2086

Panda Antivirus
Trj/Genetic.gen
15.07.07.03

Qihoo 360 Security
Win32/Trojan.94c
1.0.0.1015

Sophos
Mal/Generic-L
4.98

Trend Micro House Call
TROJ_GEN.R028C0DF915
7.2.188

Trend Micro
TROJ_GEN.R028C0DF915
10.465.07

VIPRE Antivirus
Trojan.Win32.Generic
41034

File size:
376.5 KB (385,536 bytes)

Common path:
C:\users\{user}\appdata\local\temp\1b3a.tmp

File PE Metadata
Compilation timestamp:
8/21/2003 4:21:37 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:eGqAWutj1UjT4ymYiSRbsQUqOnv8KAngetc69guBNzah:elOj1UjLhNUqOnv8Kigi9guBF6

Entry address:
0x30D7

Entry point:
55, 8B, EC, 83, EC, 18, 51, B9, AF, 71, 96, 28, 89, 4D, F8, 8D, 90, C0, 00, 00, 00, 89, 55, FC, C7, 45, E8, 48, 67, 92, BB, 8B, 45, F8, 05, 6D, 8E, 69, D7, 50, E8, DC, FC, FF, FF, 85, C0, 66, C7, 45, E8, A4, 8C, 74, 42, FF, 15, 64, 10, 00, 10, 89, 45, F0, 66, C7, 45, E8, 8A, 80, F7, 45, F8, 18, 00, 00, 00, 75, 05, E8, ED, 4F, 00, 00, 8D, 45, 08, C7, 45, FC, F9, 48, 91, 44, 50, 68, 06, 09, 01, 00, C7, 45, FC, A5, A3, 56, 19, 83, 7D, F8, 00, 74, C6, 2B, 55, F4, E8, 8D, 4D, 00, 00, 8B, E5, 5D, C2, 10, 00, 60...
 
[+]

Entropy:
7.3797

Developed / compiled with:
Microsoft Visual C++

Code size:
202 KB (206,848 bytes)

Remove 1b3a.tmp - Powered by Reason Core Security