56f6.tmp

The file 56f6.tmp has been detected as malware by 32 anti-virus scanners.
MD5:
693f7be4de1ced747173077996661854

SHA-1:
f81c5f690ff763a8e93e2264512780fb74cdd37a

SHA-256:
3a0c9a9eb8be9e7ee70fd3f2ce0e2ce0992863e1c7166e639c3974ea61f76f92

Scanner detections:
32 / 68

Status:
Malware

Analysis date:
4/25/2024 3:03:30 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.6234626
578

Agnitum Outpost
Trojan.Kryptik
7.1.1

AhnLab V3 Security
Trojan/Win32.Buzus
2014.03.07

Avira AntiVirus
TR/Dldr.Tracur.D
7.11.135.64

avast!
Win32:Dracur-E [Cryp]
2014.9-150707

Bitdefender
Trojan.Generic.6234626
1.0.20.940

Bkav FE
W32.Clodfcc.Trojan
1.3.0.4959

Comodo Security
Heur.Suspicious
17897

Dr.Web
Trojan.DownLoader4.5093
9.0.1.0188

Emsisoft Anti-Malware
Trojan.Generic.6234626
8.15.07.07.03

ESET NOD32
Win32/Kryptik.AHBV (variant)
9.9511

Fortinet FortiGate
W32/PackKatusha.N!tr
7/7/2015

F-Secure
Trojan.Generic.6234626
11.2015-07-07_3

G Data
Trojan.Generic.6234626
15.7.24

IKARUS anti.virus
Trojan-Downloader.Win32.Tracur
t3scan.2.2.29

K7 AntiVirus
Riskware
13.176.11367

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.1774

Malwarebytes
Trojan.Tracur.SGen
v2015.07.07.03

McAfee
Downloader-BMN
5600.6712

Microsoft Security Essentials
Trojan:Win32/Tracur.X
1.10302

MicroWorld eScan
Trojan.Generic.6234626
16.0.0.564

NANO AntiVirus
Trojan.Win32.MLW.drktc
0.28.0.58101

Norman
Suspicious_Gen2.NIUSO
11.20150707

nProtect
Trojan.Generic.6234626
14.03.06.01

Panda Antivirus
Generic Trojan
15.07.07.03

Qihoo 360 Security
Win32/Trojan.bcd
1.0.0.1015

Rising Antivirus
PE:Malware.XPACK-LNR/Heur!1.5594
23.00.65.15705

Sophos
Mal/Katush-B
4.98

Trend Micro House Call
TROJ_DLOADR.NFA
7.2.188

Trend Micro
TROJ_DLOADR.NFA
10.465.07

Vba32 AntiVirus
BScope.Trojan-Dropper.Tracur.5121
3.12.24.3

VIPRE Antivirus
Trojan.Win32.Generic
27158

File size:
1.1 MB (1,127,424 bytes)

Common path:
C:\windows\temp\56f6.tmp

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:icEeSNF+9Ff8ezeOYQpZPLTbP0Ez4mC1n7SgYUbBO1qzWvvS:icE9P+3f8ezeoTP3bP0EcmCZ7zYh1qzV

Entry address:
0x10AC9D

Entry point:
55, 8B, EC, 83, C4, D4, 52, B8, 77, 86, 50, 00, E8, 82, F5, FF, FF, 8B, 82, D5, 61, 00, 00, B9, A6, 18, 00, 00, BA, 4A, 64, 00, 00, E8, 3D, 4E, FF, FF, 89, 15, 2E, 96, 00, 00, 8B, 01, B9, FC, 48, 00, 00, E8, 07, 5C, FF, FF, 89, 3D, 00, 7C, 00, 00, 89, 13, 89, 06, 8B, 05, E3, E3, 00, 00, 89, 58, 57, 89, 90, 90, 8A, 00, 00, 89, 3B, 8B, 0A, 89, 3B, 8B, 11, E8, A7, 2C, FF, FF, 89, 1D, 20, 5D, 00, 00, 8B, 07, E8, 64, 7E, FF, FF, 8B, 81, C1, A2, 00, 00, E8, E8, BF, FF, FF, 8B, 03, 89, 0F, B9, AB, 16, 00, 00, 8B...
 
[+]

Entropy:
6.6901

Developed / compiled with:
Microsoft Visual C++

Code size:
1 MB (1,089,024 bytes)

Remove 56f6.tmp - Powered by Reason Core Security