2b8801e53226e173e6cb671bd6fcc40c.exe

The executable 2b8801e53226e173e6cb671bd6fcc40c.exe has been detected as malware by 11 anti-virus scanners.
MD5:
2b8801e53226e173e6cb671bd6fcc40c

SHA-1:
b641eb56cddf778898a2fb6064b1c6e3f51d3d0c

SHA-256:
1663b35c6dc68c2552b83ddf2dc6908793623667cfe2a133ce2989a29a7de046

Scanner detections:
11 / 68

Status:
Malware

Analysis date:
4/26/2024 6:21:31 PM UTC  (today)

Scan engine
Detection
Engine version

AVG
ASP/BackDoor.dropper
2015.0.3313

Baidu Antivirus
Trojan.VBS.Kryptik
4.0.3.141022

Bkav FE
W32.BeloseaC.Trojan
1.3.0.4959

Dr.Web
SCRIPT.Virus
9.0.1.0295

ESET NOD32
VBS/Kryptik.BF
8.10603

Fortinet FortiGate
Riskware/Generic.AC.573
10/22/2014

McAfee
Artemis!2B8801E53226
5600.6969

Qihoo 360 Security
HEUR/QVM41.1.Malware.Gen
1.0.0.1015

SUPERAntiSpyware
Trojan.Agent/Gen-Injector
10283

Total Defense
Win32/Armax.OVKTQIB
37.0.11242

ViRobot
Backdoor.Win32.A.Bifrose.40448.L
2011.4.7.4223

File size:
237.1 KB (242,796 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
3/17/2005 11:31:50 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
6144:51dlZro5yZ/c3Z3KqLz/ka/8Y2MKI8F08:51dlZo5yZ/c3Z6q0a/8fTI8Fb

Entry address:
0x7481

Entry point:
55, 8B, EC, 6A, FF, 68, F0, E7, 40, 00, 68, C4, AD, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 84, E0, 40, 00, 33, D2, 8A, D4, 89, 15, E0, 52, 41, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, DC, 52, 41, 00, C1, E1, 08, 03, CA, 89, 0D, D8, 52, 41, 00, C1, E8, 10, A3, D4, 52, 41, 00, 33, F6, 56, E8, F6, 23, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 16, 02, 00, 00, FF, 15, 80, E0, 40, 00, A3, E4, 69, 41, 00, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
52 KB (53,248 bytes)

Remove 2b8801e53226e173e6cb671bd6fcc40c.exe - Powered by Reason Core Security