9c08.tmp

The file 9c08.tmp has been detected as malware by 27 anti-virus scanners.
MD5:
2b82d0d025118f20cfa851bae8cc6ee7

SHA-1:
b5365a0a674db1dc775077471e31e1d917b99d8f

SHA-256:
a36156e0980e613084e20c2ae21f59193111989ea1de2feacc1c77023c49fee8

Scanner detections:
27 / 68

Status:
Malware

Analysis date:
4/27/2024 4:11:56 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Trojan.Heur.hmW@IzqbdadG
701

AhnLab V3 Security
Dropper/Win32.Agent
2015.03.05

Avira AntiVirus
TR/Crypt.ZPACK.Gen
7.11.213.118

avast!
Win32:Hoblig-B [Heur]
2014.9-150306

AVG
Luhe.Fiha.A
2016.0.3179

Baidu Antivirus
Trojan.Win32.Agent
4.0.3.1536

Bitdefender
Gen:Trojan.Heur.hmW@IzqbdadG
1.0.20.325

Emsisoft Anti-Malware
Gen:Trojan.Heur.hmW@IzqbdadG
8.15.03.06.06

ESET NOD32
Win32/SpamTool.Agent.NFU (variant)
9.11268

Fortinet FortiGate
W32/SpamTool_Agent.NFU!tr
3/6/2015

F-Secure
Gen:Trojan.Heur.hmW@IzqbdadG
11.2015-06-03_6

G Data
Gen:Trojan.Heur.hmW@IzqbdadG
15.3.25

IKARUS anti.virus
Trojan.SpamTool
t3scan.1.8.6.0

Kaspersky
UDS:DangerousObject.Multi.Generic
14.0.0.2389

Malwarebytes
Trojan.Downloader.UPT
v2015.03.06.06

McAfee
Downloader-FAPQ!2B82D0D02511
5600.6835

MicroWorld eScan
Gen:Trojan.Heur.hmW@IzqbdadG
16.0.0.195

NANO AntiVirus
Trojan.Win32.SpaBot.djsxcu
0.30.0.296

Panda Antivirus
Trj/Genetic.gen
15.03.06.06

Qihoo 360 Security
HEUR/QVM20.1.Malware.Gen
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
15.3.6.6

Sophos
Mal/Generic-S
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Spammer
10014

Trend Micro House Call
TROJ_NGERED.SML
7.2.65

Trend Micro
TROJ_NGERED.SML
10.465.06

Vba32 AntiVirus
TrojanDownloader.Upatre
3.12.26.3

VIPRE Antivirus
Spammer.Win32.Hedsen.nfua
38118

File size:
118.5 KB (121,344 bytes)

Common path:
C:\windows\temp\9c08.tmp

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

CTPH (ssdeep):
3072:ecAP+6a4B35vcpijYsBorOsn1NmQZ4Aa2yRMMl:ebGo3ypijTBorvn9Hh2

Entry address:
0x1430

Entry point:
55, 8B, EC, 81, EC, A8, 08, 00, 00, C7, 45, F4, 00, 00, 00, 00, 6A, 00, 6A, 00, 6A, 01, FF, 15, 20, 20, 40, 00, 89, 85, EC, FD, FF, FF, 8D, 85, 58, F7, FF, FF, 50, 68, 00, 02, 00, 00, FF, 15, 38, 20, 40, 00, C7, 45, F4, 3A, EA, 01, 00, 6A, 00, FF, 15, 30, 20, 40, 00, 89, 85, AC, FB, FF, FF, 8D, 8D, D0, FB, FF, FF, 89, 4D, FC, 8B, 95, AC, FB, FF, FF, 03, 55, F4, 89, 95, E8, FD, FF, FF, C7, 45, F4, 00, 00, 00, 00, EB, 09, 8B, 45, F4, 83, C0, 01, 89, 45, F4, 83, 7D, F4, 05, 0F, 83, 08, 02, 00, 00, 8B, 4D, F4...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
2 KB (2,048 bytes)

Remove 9c08.tmp - Powered by Reason Core Security