{1c0bfc36-ac52-433d-bb14-64588d54f6cd}

clean

The file {1c0bfc36-ac52-433d-bb14-64588d54f6cd} has been detected as malware by 25 anti-virus scanners.
Publisher:
Microsoft*  (Invalid match)

Product:
clean

Version:
1.0.0.0

MD5:
ea96ee9317d9d708c2898af3bde72978

SHA-1:
cc9afbbd26e4ec880263e015533fc11660450866

SHA-256:
3a48704c1b9b883af3775d59a91d6051cdb9255e03ae54c61750cfa4d55a6571

Scanner detections:
25 / 68

Status:
Malware

Analysis date:
4/26/2024 9:22:59 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Strictor.402
856

Agnitum Outpost
Trojan.DR.Agent
7.1.1

Avira AntiVirus
TR/Strictor.402.11
7.11.153.246

avast!
Win32:Trojan-gen
2014.9-141002

AVG
MSIL3
2015.0.3334

Baidu Antivirus
Trojan.MSIL.Dropper
4.0.3.14102

Bitdefender
Gen:Variant.Strictor.402
1.0.20.1375

Comodo Security
UnclassifiedMalware
18490

Dr.Web
Trojan.Siggen5.53778
9.0.1.0275

Emsisoft Anti-Malware
Gen:Variant.Strictor.402
8.14.10.02.03

ESET NOD32
MSIL/TrojanDropper.Agent.AGW (variant)
8.9916

Fortinet FortiGate
MSIL/Agent.AGW!tr
10/2/2014

F-Secure
Gen:Variant.Strictor.402
11.2014-02-10_5

G Data
Gen:Variant.Strictor.402
14.10.24

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.1712348

Malwarebytes
Trojan.Dropper
v2014.10.02.03

McAfee
RDN/Generic Dropper!uo
5600.6990

Microsoft Security Essentials
Trojan:Win32/Dynamer!ac
1.10600

MicroWorld eScan
Gen:Variant.Strictor.402
15.0.0.825

Norman
Suspicious_Gen5.AQYOU
11.20141002

Qihoo 360 Security
Win32/Trojan.ffd
1.0.0.1015

Sophos
Mal/Generic-S
4.98

Trend Micro House Call
TROJ_GEN.R0CBB01F814
7.2.275

VIPRE Antivirus
Trojan.Win32.Generic
30112

File size:
76 KB (77,824 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © Microsoft 2014

Original file name:
clean.exe

File PE Metadata
Compilation timestamp:
6/5/2014 4:58:35 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
768:uQIMWcWJKyaJ2cRr78aYdFG8chq8bvmSE0aNwAsYSaf4FDYqqtbpCNUmaHUoiqCi:NZpY4883af4FDYqqtkg8AQEMGAQX

Entry address:
0xE71E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
50 KB (51,200 bytes)

Remove {1c0bfc36-ac52-433d-bb14-64588d54f6cd} - Powered by Reason Core Security