{4b2afb18-5782-49d2-88bf-46bd0de0ab24}

BI IT Solutions

The file {4b2afb18-5782-49d2-88bf-46bd0de0ab24} by BI IT Solutions has been detected as a potentially unwanted program by 31 anti-malware scanners.
Publisher:
BI IT Solutions  (signed and verified)

MD5:
baf1366899a88b3c0e9f7c777814c93e

SHA-1:
55c3a38ac9abe96df31573fe53416cc8d5615344

SHA-256:
20ebfead121e5bd512a85b43e03322ae40554f4b8d5aca7bdadeb227c00991ef

Scanner detections:
31 / 68

Status:
Potentially unwanted

Analysis date:
4/18/2024 1:50:23 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Kazy.397179
820

AhnLab V3 Security
PUP/Win32.LoadMoney
2014.11.07

Avira AntiVirus
TR/Zusy.yxnynabd
7.11.183.152

avast!
Win32:LoadMoney-HG [PUP]
141025-0

AVG
Win32/Cryptor
2014.0.4189

Bitdefender
Gen:Variant.Adware.Kazy.397179
1.0.20.1555

Comodo Security
TrojWare.Win32.Kryptik.CDFC
20013

Dr.Web
Trojan.LoadMoney.262
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Adware.Kazy.397179
14.11.07

ESET NOD32
Win32/Kryptik.CEHM trojan
7.0.302.0

Fortinet FortiGate
Riskware/LMN
11/7/2014

F-Prot
W32/A-1fc31d8a
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.Kazy.397179
11.2014-07-11_6

G Data
Gen:Variant.Adware.Kazy.397179
14.11.24

IKARUS anti.virus
Win32.Cryptor
t3scan.1.8.3.0

K7 AntiVirus
Adware
13.185.13930

Kaspersky
not-a-virus:Downloader.Win32.LMN
15.0.0.543

Malwarebytes
PUP.Optional.LoadMoney
v2014.11.07.02

McAfee
Packed-CQ
5600.6954

Microsoft Security Essentials
Threat.Undefined
1.187.1479.0

MicroWorld eScan
Gen:Variant.Adware.Kazy.397179
15.0.0.933

NANO AntiVirus
Trojan.Win32.LoadMoney.dazrpd
0.28.6.62995

Norman
Kryptik.CDIC
11.20141107

Quick Heal
Trojan.Sisproc.A6
11.14.14.00

Reason Heuristics
PUP.BIITSolutions.g
14.11.21.23

Rising Antivirus
PE:Malware.XPACK-HIE/Heur!1.9C48
23.00.65.141105

Sophos
Troj/LdMon-E
4.98

SUPERAntiSpyware
PUP.LoadMoney/Variant
10253

Total Defense
Win32/Tnega.eRAQBKD
37.0.11267

Vba32 AntiVirus
Malware-Cryptor.Limpopo
3.12.26.3

VIPRE Antivirus
Threat.4657539
34232

File size:
306.4 KB (313,728 bytes)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
6/6/2014 11:00:00 AM

Valid to:
6/7/2015 10:59:59 AM

Subject:
CN=BI IT Solutions, O=BI IT Solutions, STREET="Shipilovskaya, 64/1", L=Moscow, S=Moscow oblast, PostalCode=115682, C=RU

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
7D3EDAEE82E839BAD7AC658E539D34B7

File PE Metadata
Compilation timestamp:
6/20/1992 9:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
6144:yDdEKqKziuGU7n26gdLv2w8XxUhuxDqsNQ0AYIslBxBXLPqGrUB1ed:orGynrjasNWYrxBXLPqgl

Entry address:
0x1000

Entry point:
E9, CF, 01, 04, 00, 84, F6, 75, 08, 29, 3D, 75, 20, 44, 00, EB, 21, 87, 35, 3D, 20, 44, 00, 89, 15, 68, 20, 44, 00, 87, 1D, 5B, 20, 44, 00, 01, 0D, 87, 20, 44, 00, 66, C7, 05, C6, 20, 44, 00, 7E, 9F, 89, 35, 2D, 20, 44, 00, 87, 3D, D6, 20, 44, 00, C3, 90, C3, 8D, 40, 00, FF, 25, 24, 20, 44, 00, B8, 40, 10, 40, 00, C3, 20, 20, 20, 20, 00, 00, 00, 00, 55, 8B, EC, 51, A1, 60, 43, 44, 00, 89, 45, FC, 8B, 45, FC, 59, 5D, C3, 8B, C0, 84, F6, 75, 08, 29, 3D, 75, 20, 44, 00, EB, 21, 87, 35, 3D, 20, 44, 00, 89, 15...
 
[+]

Packer / compiler:
Xtreme-Protector v1.05

Code size:
258.5 KB (264,704 bytes)

Remove {4b2afb18-5782-49d2-88bf-46bd0de0ab24} - Powered by Reason Core Security