{5ac87923-faf0-bd0c-29f9-ef29dc34e7ee}-ripahvse.exe

The executable {5ac87923-faf0-bd0c-29f9-ef29dc34e7ee}-ripahvse.exe has been detected as malware by 14 anti-virus scanners. According to AVG, this software downloads additional adware offers during setup.
MD5:
49e14f550c32fd4d6b89b35fcb321f55

SHA-1:
853cc5c591d8dc574249a9668581f88706ffb8c6

SHA-256:
6b4af7911b982bac0efdd8055031d00edac2f02f8b73e5c1a97b4a7a3e492499

Scanner detections:
14 / 68

Status:
Malware

Analysis date:
4/19/2024 8:55:47 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.489460
5829361

Avira AntiVirus
TR/Crypt.Xpack.109329
7.11.188.92

AVG
Trojan horse Downloader.Generic14.EOT
2014.0.4189

Bitdefender
Gen:Variant.Kazy.489460
1.0.20.1635

Dr.Web
Trojan.KillFiles.15825
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Kazy.489460
9.0.0.4570

F-Secure
Gen:Variant.Kazy.489460
11.2014-23-11_1

G Data
Gen:Variant.Kazy.489460
14.11.24

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.2900

McAfee
Downloader-FAHQ!B85CA198819C
5600.6937

MicroWorld eScan
Gen:Variant.Kazy.489460
15.0.0.981

NANO AntiVirus
Trojan.Win32.Xpack.dinrfm
0.28.6.63474

Quick Heal
Win32.PWS.Ldpinch.1
11.14.14.00

Sophos
Troj/Kuluoz-E
4.98

File size:
110.5 KB (113,152 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\ProgramData\microsoft\microsoft antimalware\localcopy\{5ac87923-faf0-bd0c-29f9-ef29dc34e7ee}-ripahvse.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
768:5qdv1rnw7mV4tar4d6/gP0FmQNzlk5un/iOpkxOuW+bJAAR3WOAEiIqX1XT0Ls17:P4YldGgP2mbukhbJpRfinD0LshL+dG

Entry point:
B2, A5, 7F, FF, FE, FF, FF, FF, FB, FF, EF, FF, 00, 00, FF, FF, BF, FE, FF, FF, FF, FF, FF, FF, BF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, FF, 7F, FF, FF, FF, F1, E0, 45, F1, FF, 4B, F6, 32, DE, 47, FE, B3, 32, DE, AB, 97, 96, 8C, DF, 8F, 8D, 90, 98, 8D, 9E, 92, DF, 9C, 9E, 91, 91, 90, 8B, DF, 9D, 9A, DF, 8D, 8A, 91, DF, 96, 91, DF, BB, B0, AC, DF, 92, 90, 9B, 9A, D1, F2, F5, DB, FF, FF, FF, FF, FF, FF, FF, FF...
 
[+]

Entropy:
7.0104