3o6y1b.exe

The executable 3o6y1b.exe has been detected as malware by 8 anti-virus scanners.
MD5:
d1820b47b33dcb0abde2e4c877a75e7c

SHA-1:
773455f90c0193a7e1b8cde683489ef6ae323543

SHA-256:
0d5784dcdc372ec5e69bb71c4a5e9e021fb30bfff388d21ceb92208514c83e8d

Scanner detections:
8 / 68

Status:
Malware

Analysis date:
5/19/2024 11:12:37 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Black.Gen2
8.3.3.4

avast!
Win32:Evo-gen [Susp]
2014.9-170316

AVG
PSW.Banker7
2018.0.2438

Bkav FE
HW32.Packed
1.3.0.8108

ESET NOD32
Win32/Spy.Banker.AAQD (variant)
11.13980

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.-1315

Qihoo 360 Security
HEUR/QVM16.0.0000.Malware.Gen
1.0.0.1120

Sophos
Mal/VMProtBad-A
4.98

File size:
3.4 MB (3,517,440 bytes)

File type:
Executable application (Win32 EXE)

Language:
English (Malásia)

Common path:
C:\users\{user}\appdata\roaming\3t5n3v8t5h0a4e\3o6y1b.exe

File PE Metadata
Compilation timestamp:
3/7/2014 7:02:59 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x751464

Entry point:
60, 52, E8, 80, 2D, 00, 00, A1, 46, E5, D1, D8, AE, F0, 4E, 6C, 23, 54, 4A, 30, 8E, 08, 06, 10, 8E, 33, 14, 24, 1A, 07, D9, 42, 9F, 3D, D4, 4C, A2, D7, BA, 35, C8, 42, 45, D4, 70, 16, A4, A8, 4C, 59, 69, A3, 52, B4, 79, E5, 07, 02, 30, 6D, 5C, 72, A0, 04, FA, D2, 79, 22, 8F, 2E, 19, 57, FB, 59, AA, 0B, 17, CA, 0B, 3D, 00, 5D, 2A, F4, 49, 3F, 80, 0C, 5F, DA, 78, 9A, 43, CF, 6B, 49, 88, 56, 38, 6F, 0B, 35, 07, E2, FE, C1, B7, D6, 6D, 76, E9, 85, 6E, 9F, 76, 88, E1, 4D, BC, A0, 8E, 35, 0B, 44, 56, 45, BB, 01...
 
[+]

Code size:
1.1 MB (1,145,344 bytes)

Remove 3o6y1b.exe - Powered by Reason Core Security