4900

Kemeda

The file 4900 has been detected as malware by 14 anti-virus scanners.
Publisher:
Kemeda  (signed and verified)

Version:
24.13.6.6

MD5:
b09ef6b01b1a97654d27ef2d36fa0fec

SHA-1:
4f8732e2b3fdb1a22a9c9d3fde949ca4927f0e01

SHA-256:
147ff1f6dfff4026508250ef633ddf840ab77f253f649b1cd7faf0e77f101106

Scanner detections:
14 / 68

Status:
Malware

Analysis date:
5/11/2025 2:34:17 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.Injector
2015.11.17

Arcabit
Trojan.MSILPerseus.D7BF
1.0.0.597

avast!
Win32:Evo-gen [Susp]
2014.9-160219

AVG
ILHeur
2017.0.2829

Baidu Antivirus
Trojan.MSIL.Injector
4.0.3.16219

Bitdefender
Gen:Variant.MSILPerseus.1983
1.0.20.250

Emsisoft Anti-Malware
Gen:Variant.MSILPerseus.1983
8.16.02.19.05

ESET NOD32
MSIL/Injector.MTF (variant)
10.12577

F-Secure
Gen:Variant.MSILPerseus.1983
11.2016-19-02_6

G Data
Gen:Variant.MSILPerseus.1983
16.2.25

Kaspersky
UDS:DangerousObject.Multi.Generic
14.0.0.639

MicroWorld eScan
Gen:Variant.MSILPerseus.1983
17.0.0.150

Panda Antivirus
Trj/GdSda.A
16.02.19.05

Qihoo 360 Security
HEUR/QVM03.0.Malware.Gen
1.0.0.1077

File size:
426 KB (436,200 bytes)

Product version:
24.13.6.6

Copyright:
Copyright © 2015

Original file name:
hpc.exe

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\4900

Digital Signature
Signed by:

Authority:
Kemeda

Valid from:
10/21/2015 7:07:25 PM

Valid to:
10/21/2016 7:07:25 PM

Subject:
CN=www.kemeda.pt, O=Kemeda, L=Lisboa, S=Lisboa, C=PK

Issuer:
CN=www.kemeda.pt, O=Kemeda, L=Lisboa, S=Lisboa, C=PK

Serial number:
008C6590B70633A028

File PE Metadata
Compilation timestamp:
11/15/2015 3:06:27 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
80.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:0lAWhtVfeJrfp0KOSevLXcwJESGg49p0yYTPGp6CGM/x20FgHzOud88:jwtJ5S+X/Yb9p0zTPyFRx2JTOuW8

Entry address:
0x6B6BE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
422 KB (432,128 bytes)

Remove 4900 - Powered by Reason Core Security