{9f552b7c-f93f-4afd-b6df-f0547372c03d}.exe

Scan {9f552b7c-f93f-4afd-b6df-f0547372c03d}.exe - Powered by Reason Core Security
MD5:
2ac6e258f2beac54c62d24717fdd47f3

SHA-1:
6f7f16dcfb3ea010ff6f45237b8e4b28df4fbac9

SHA-256:
b289f790d67e25b23906c2374e3d03bd9e4d0f6234037d4070923e523041b95f

Scanner detections:
1 / 68

Status:
Clean  (1 probable false positive detection)

Explanation:
This is mosty likely a false positive detection, the file is probably clean.

Analysis date:
12/9/2016 12:38:19 PM UTC  (today)

Scan engine
Detection
Engine version

Antiy Labs AVL
Trojan/Win32.Rozena
1.0.0.1

File size:
98 KB (100,387 bytes)

File type:
Executable application (Win64 EXE)

Common path:
C:\users\{user}\appdata\roaming\iolo\safetynet\manual\{46d5f851-b6ee-42bc-999f-4147243ad6fe}\{9f552b7c-f93f-4afd-b6df-f0547372c03d}.exe

File PE Metadata
OS bitness:
Win64

CTPH (ssdeep):
3072:swcFiKRWXp3lmpH84eeB6Rv45+nLksRtm3kJ1:swplmx84eu6d45+nLHrb1

Entry point:
50, 4B, 03, 04, 14, 00, 00, 00, 08, 00, 07, 6A, 77, 3C, 0D, B7, 6F, 51, 6D, 87, 01, 00, 83, 60, 03, 00, 2A, 00, 00, 00, 7B, 39, 46, 35, 35, 32, 42, 37, 43, 2D, 46, 39, 33, 46, 2D, 34, 41, 46, 44, 2D, 42, 36, 44, 46, 2D, 46, 30, 35, 34, 37, 33, 37, 32, 43, 30, 33, 44, 7D, 2E, 65, 78, 65, EC, BD, 7F, 60, 94, D5, 95, FF, 3F, C9, 0C, C9, 00, 03, 33, E0, 20, 51, A3, 8E, 3A, D6, 28, 51, A3, 49, 6D, 74, 82, 06, 0D, 48, 6D, AA, 93, 09, 99, 48, F9, A5, AD, 6D, D3, 48, 2D, C5, 19, 74, B7, 01, 89, 93, B4, 0C, 0F, 63...
 
[+]

Entropy:
7.9967  (probably packed)

Scan {9f552b7c-f93f-4afd-b6df-f0547372c03d}.exe - Powered by Reason Core Security