80000032.@

The file 80000032.@ has been detected as malware by 38 anti-virus scanners.
MD5:
53f7c502c4661304f7b6a389cfe2b84e

SHA-1:
23ce23dbbed34ecf3049ba4426024132309e80ea

SHA-256:
beafec762df46a0328d4c4edb3f595763778d31c20af8ed7e0d93033aa42f60b

Scanner detections:
38 / 68

Status:
Malware

Analysis date:
4/16/2024 1:38:18 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.8213913
623

AhnLab V3 Security
Win-Trojan/Sirefef.91136
2014.06.07

Avira AntiVirus
TR/Sirefef.AN.24
7.11.153.178

avast!
Win32:Sirefef-BTT [Trj]
2014.9-150522

AVG
Crypt_s
2016.0.3101

Baidu Antivirus
Backdoor.Win32.ZAccess
4.0.3.15522

Bitdefender
Trojan.Generic.8213913
1.0.20.710

Bkav FE
W32.Clod914.Trojan
1.3.0.4959

Clam AntiVirus
Win.Trojan.ZAccess-1060
0.98/21155

Comodo Security
UnclassifiedMalware
18463

Emsisoft Anti-Malware
Trojan.Generic.8213913
8.15.05.22.03

ESET NOD32
Win32/Sirefef.FD
9.9907

Fortinet FortiGate
W32/ZAccess.CA!tr
5/22/2015

F-Prot
W32/Trojan2.NUTQ
v6.4.7.1.166

F-Secure
Trojan.Generic.8213913
11.2015-22-05_6

G Data
Trojan.Generic.8213913
15.5.24

IKARUS anti.virus
Backdoor.Win32.ZAccess
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.1712333

Kaspersky
Backdoor.Win32.ZAccess
14.0.0.2002

Malwarebytes
Rootkit.0Access
v2015.05.22.03

McAfee
ZeroAccess.gb
5600.6757

Microsoft Security Essentials
Trojan:Win32/Sirefef.AN
1.10600

MicroWorld eScan
Trojan.Generic.8213913
16.0.0.426

NANO AntiVirus
Trojan.Win32.ATRAPS.bavpja
0.28.0.60100

Norman
ZAccess.RKIT
11.20150522

nProtect
Trojan.Generic.8213913
14.06.05.01

Panda Antivirus
Trj/WL.A
15.05.22.03

Qihoo 360 Security
Win32/Backdoor.1c9
1.0.0.1015

Quick Heal
Trojan.Agent.WD.cw5
5.15.14.00

Rising Antivirus
PE:Trojan.Win32.Generic.13738695!326338197
23.00.65.15520

Sophos
Mal/ZAccess-CA
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Sirefef
9860

Total Defense
Win32/Sirefef.OF
37.0.10984

Trend Micro House Call
TROJ_SIREFEF.VH
7.2.142

Trend Micro
TROJ_SIREFEF.VH
10.465.22

Vba32 AntiVirus
Backdoor.ZAccess
3.12.26.0

VIPRE Antivirus
Trojan.Win32.Sirefef.pj!1a
30038

ViRobot
Backdoor.Win32.S.ZeroAccess.91136
2011.4.7.4223

File size:
89 KB (91,136 bytes)

Common path:
C:\users\{user}\appdata\local\{f6bbf6a4-385b-bd44-d84f-3c1cf57fae02}\u\80000032.@

File PE Metadata
Compilation timestamp:
11/1/2012 3:55:56 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:fyJ6nOSUUDpOqWch4PJDA/xMFxWbHWveLtnfiU/FftchCG8tC1w4:fyJ8DU4I/ch4PlAi6keLtnfz/shC81w4

Entry point:
4D, 5A, 90, 00, 03, 00, 00, 00, 04, 00, 00, 00, FF, FF, 00, 00, B8, 00, 00, 00, 00, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, F0, 00, 00, 00, 0E, 1F, BA, 0E, 00, B4, 09, CD, 21, B8, 01, 4C, CD, 21, 54, 68, 69, 73, 20, 70, 72, 6F, 67, 72, 61, 6D, 20, 63, 61, 6E, 6E, 6F, 74, 20, 62, 65, 20, 72, 75, 6E, 20, 69, 6E, 20, 44, 4F, 53, 20, 6D, 6F, 64, 65, 2E, 0D, 0D, 0A, 24, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.2196

Code size:
57 KB (58,368 bytes)

Remove 80000032.@ - Powered by Reason Core Security