AEInstnr.exe

Application Performance Explorer Instancer

Microsoft Corporation

The executable AEInstnr.exe has been detected as malware by 33 anti-virus scanners.
Publisher:
Microsoft Corporation

Product:
Application Performance Explorer Instancer

Version:
6.00.8169

MD5:
8bbc51af32ca7485a1781b9f63faccd0

SHA-1:
9ee0312d8e129902a08eeeab3da2975679c4a137

SHA-256:
18de405ea6f664b4edff6f1153acadf15ea73e8c28b2a3ec0a3e69eecfa2dfce

Scanner detections:
33 / 68

Status:
File is infected by a Virus

Explanation:
The file is infected by a polymorphic file infector virus.

Analysis date:
4/26/2024 8:35:29 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Win32.Virtob.Gen.12
6373653

Agnitum Outpost
Win32.Virut.AB.Gen
7.1.1

AhnLab V3 Security
Win32/Virut.F
2015.03.26

Avira AntiVirus
W32/Virut.Gen
7.11.30.172

avast!
Win32:Vitro
150319-1

AVG
Win32/Virut
2014.0.4311

Bitdefender
Win32.Virtob.Gen.12
1.0.20.430

Bkav FE
W32.Vetor.PE
1.3.0.6379

Comodo Security
Virus.Win32.Virut.Ce
21554

Dr.Web
Win32.Virut.56
9.0.1.05190

Emsisoft Anti-Malware
Win32.Virtob.Gen.12
9.0.0.4799

ESET NOD32
Win32/Virut.NBP virus
7.0.302.0

Fortinet FortiGate
W32/Virut.CE
3/27/2015

F-Prot
W32/Virut.AI!Generic
4.6.5.141

F-Secure
Win32.Virtob.Gen.12
5.13.68

G Data
Win32.Virtob.Gen.12
15.3.25

IKARUS anti.virus
Trojan.Win32.Menti
t3scan.1.8.6.0

K7 AntiVirus
Virus
13.202.15381

Kaspersky
Virus.Win32.Virut
15.0.0.543

McAfee
Virus.W32/Virut.n.gen
16.8.708.2

Microsoft Security Essentials
Threat.Undefined
1.195.475.0

MicroWorld eScan
Win32.Virtob.Gen.12
16.0.0.258

NANO AntiVirus
Virus.Win32.Virut.hpeg
0.30.8.659

Norman
Win32.Virtob.Gen.12
03.12.2014 13:20:04

nProtect
Virus/W32.Virut.Gen
15.03.27.01

Panda Antivirus
W32/Sality.AO
15.03.27.07

Quick Heal
W32.Virut.G
3.15.14.00

Rising Antivirus
PE:Win32.Virut.cs!1540531
23.00.65.15325

Total Defense
Win32/Virut.17408
37.0.11515

Trend Micro House Call
PE_VIRUX.J
7.2.86

Trend Micro
PE_VIRUX.J
10.465.27

VIPRE Antivirus
Threat.4120919
38552

ViRobot
Win32.Virut.AM[h]
2014.3.20.0

File size:
40 KB (40,960 bytes)

Product version:
6.00.8169

Copyright:
Copyright © 1996-1998 Microsoft Corp.

Trademarks:
Microsoft® is a registered trademark of Microsoft Corporation. Windows(TM) is a trademark of Microsoft Corporation

Original file name:
AEInstnr.exe

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\microsoft visual studio\common\tools\ape\aeinstnr.exe

File PE Metadata
Compilation timestamp:
10/5/2066 1:20:21 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
384:V5YHhb9CsWvb4u8laqfOt9C/F1axeKN+SeqF8vUEydc+rKwUo7rQBiSLUX:ViBb9E6AqWrC9UkGLFUUq++wUQzSLUX

Entry address:
0x9B86

Entry point:
83, EC, 2C, E8, 61, FF, FF, FF, 80, D6, 52, 01, 6C, 24, 20, 03, 5C, 24, FC, 2A, DB, 80, E2, D6, B8, 15, 36, D0, B9, 81, EB, 80, 00, 00, 00, 0F, B7, 8B, 3C, 1B, 00, 00, 81, E9, 00, 0A, 00, 00, B0, B4, 0F, 89, E5, FF, FF, FF, 66, 83, BC, 19, 01, 25, 00, 00, 45, 8D, 33, 75, D8, 86, CA, FC, 9B, FC, 66, 81, BB, 00, 1B, 00, 00, 4D, 5A, 75, C8, 8B, D2, 4E, 47, 81, C3, 00, 1B, 00, 00, 68, 06, 19, BD, 5A, E8, 29, FF, FF, FF, 56, 8F, 44, 24, 44, BA, AD, 79, A2, 85, 8B, C7, E8, 62, FD, FF, FF, 83, F8, 03, 87, 44, 24...
 
[+]

Code size:
4 KB (4,096 bytes)

Automation Object
CLSID:
{FF79D133-BE4F-11CF-9EEA-00AA0069522B}

CLSID name:
APE Instance Manager


Remove AEInstnr.exe - Powered by Reason Core Security