3j3a52dh.bib.exe

TODO:

TODO: <Company name>

The application 3j3a52dh.bib.exe has been detected as a potentially unwanted program by 18 anti-malware scanners.
Publisher:
TODO:

Product:
TODO: <Product name>

Version:
1.0.0.5

MD5:
68f24b420e9f011a9ee34a8bb3f84703

SHA-1:
c30b1cd0e0629506ad66c69581877d3d3de3c77d

SHA-256:
3075567d7b48a0a4195c7a3ef00932a9dec4296b5e993a416fb36988f45be168

Scanner detections:
18 / 68

Status:
Potentially unwanted

Analysis date:
4/27/2024 3:36:42 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.475154
835

Avira AntiVirus
TR/Crypt.Xpack.93789
7.11.179.192

avast!
Win32:Adware-gen [Adw]
2014.9-141022

AVG
Generic5
2015.0.3313

Baidu Antivirus
Adware.Win32.Cossder
4.0.3.141022

Bitdefender
Gen:Variant.Kazy.475154
1.0.20.1475

Dr.Web
Trojan.DownLoader11.24193
9.0.1.0295

Emsisoft Anti-Malware
Gen:Variant.Kazy.475154
8.14.10.22.05

ESET NOD32
Win32/AdWare.MultiPlug.CU (variant)
8.10590

F-Secure
Gen:Variant.Kazy.475154
11.2014-22-10_4

G Data
Gen:Variant.Kazy.475154
14.10.24

Kaspersky
not-a-virus:HEUR:WebToolbar.Win32.Cossder
14.0.0.3061

McAfee
Artemis!68F24B420E9F
5600.6969

MicroWorld eScan
Gen:Variant.Kazy.475154
15.0.0.885

NANO AntiVirus
Trojan.Win32.ZPACK.dgvzgx
0.28.2.62671

Qihoo 360 Security
HEUR/QVM20.1.Malware.Gen
1.0.0.1015

Sophos
Generic PUA MD
4.98

Vba32 AntiVirus
suspected of Trojan.Downloader.gen.h
3.12.26.3

File size:
227.5 KB (232,960 bytes)

Product version:
1.0.0.5

Copyright:
Copyright (C) 2012-17

Original file name:
yhig799.exe

File type:
Executable application (Win32 EXE)

Language:
English

Common path:
C:\users\{user}\appdata\local\temp\3j3a52dh.bib.exe

File PE Metadata
Compilation timestamp:
10/15/2014 4:17:07 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
3072:oyYmrIdBBgImXXbkf1sWDZyShmIZ2Y0uFVeUb6cmH:o7mUdkImQ+WDZhhmIZdXVeN9

Entry address:
0x14F8

Entry point:
55, 8B, EC, 81, EC, 7C, 02, 00, 00, A1, 00, 30, 40, 00, 33, C5, 89, 45, FC, 53, 33, DB, 56, 57, C7, 85, 08, FF, FF, FF, F4, 15, 93, B0, C7, 85, 0C, FF, FF, FF, 99, DC, 99, 01, C7, 85, 10, FF, FF, FF, CE, 72, 15, A2, C7, 85, 14, FF, FF, FF, 16, D9, 51, A8, C7, 85, 18, FF, FF, FF, 10, 8C, 80, FF, C7, 85, 1C, FF, FF, FF, 76, B8, F3, C1, C7, 85, 20, FF, FF, FF, B0, 06, 6A, 90, C7, 85, 24, FF, FF, FF, CC, 97, 10, 25, C7, 85, 28, FF, FF, FF, E1, 62, AF, 80, C7, 85, 2C, FF, FF, FF, A4, 1A, 86, D0, C7, 85, 30, FF...
 
[+]

Entropy:
6.2385

Developed / compiled with:
Microsoft Visual C++

Code size:
119 KB (121,856 bytes)

Remove 3j3a52dh.bib.exe - Powered by Reason Core Security