aml_v491_b32562.exe

The executable aml_v491_b32562.exe has been detected as malware by 12 anti-virus scanners. This file is typically installed with the program Ad Muncher v4.94.34121 (Free).
MD5:
6ada93d32863b9bca5cbf921ce6bd924

SHA-1:
e63d0b31511ffd3e79b1b999d06ba914b2178b01

SHA-256:
853c723598c1194daf131be89c29deff020329838bc2b95224246e8fa7632b05

Scanner detections:
12 / 68

Status:
Malware

Analysis date:
4/19/2024 1:57:15 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Unwanted/Win32.Xema
14.04.19

Bkav FE
W32.Clod3e6.Trojan
1.3.0.4959

Comodo Security
UnclassifiedMalware
18026

F-Prot
W32/Backdoor-based
v6.4.7.1.166

McAfee
RDN/Generic BackDoor!sr
5600.7156

Norman
Suspicious_Gen2.NNYRS
11.20140419

Quick Heal
(Suspicious) - DNAScan
4.14.12.00

Rising Antivirus
PE:Trojan.Win32.Generic.14FE884E!352225358
23.00.65.14417

Sophos
Mal/Generic-L
4.98

Trend Micro House Call
TROJ_SPNR.08BB13
7.2.109

Trend Micro
TROJ_SPNR.0BBB13
10.465.19

VIPRE Antivirus
Trojan.Win32.Generic
27902

File size:
402 KB (411,648 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\ad muncher\aml_v491_b32562.exe

File PE Metadata
Compilation timestamp:
6/20/1992 1:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows Console

Linker version:
2.25

CTPH (ssdeep):
6144:MXK8x2SJX3KjZzTdfgMtsQ81TwkmTIkRB98gWNlPTGQQm6agrdSfewOOH+vq:M61SJX6jsMtsQYyjQNtTird2EI

Entry address:
0x1000

Entry point:
68, 01, 00, 45, 00, E8, 01, 00, 00, 00, C3, C3, 3A, 6F, A2, 97, BD, 3F, DC, 4A, 39, 00, 58, 0E, 87, C5, CA, 88, 3D, C4, DF, 23, 4E, 08, 6E, 69, 8E, 67, E4, 07, D5, C4, FF, FD, EB, ED, 81, 60, 11, 16, 65, 1B, C7, 74, 83, C5, 5A, 92, 92, D5, 3B, AA, 1D, 7B, 7A, A6, FD, BC, AA, F1, A7, A3, 18, E2, 74, 26, 94, 60, A6, 5F, CE, DB, 7C, 53, A6, 58, 68, 80, BA, 79, 62, 6E, 08, 98, CC, DA, 9F, 90, 27, B8, 6E, DF, CF, 5B, 71, 6C, A0, B3, D5, 95, 3A, F2, 61, 9A, C3, A6, 88, B4, 80, 7D, A2, B5, F4, E7, F4, E9, 1B, 64...
 
[+]

Entropy:
7.9479

Packer / compiler:
ASProtect v1.2x (New Strain)

Code size:
95.5 KB (97,792 bytes)

The file aml_v491_b32562.exe has been discovered within the following program.

About 6% of users remove it
 
Powered by Should I Remove It?

Remove aml_v491_b32562.exe - Powered by Reason Core Security