application.exe

Plasma Downloader

The executable application.exe has been detected as malware by 20 anti-virus scanners.
Product:
Plasma Downloader

Version:
1.0.0.0

MD5:
67f6c8fa4956b443efca3f335ee62bec

SHA-1:
8b1306023309519736cefcfea85c7c61399bfb07

SHA-256:
e077087dcf5031c622baf52dade7cc78c8057ad26db9e368f2136b0e3bc564f4

Scanner detections:
20 / 68

Status:
Malware

Analysis date:
4/25/2024 8:41:00 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.GenericKD.1636911
928

Agnitum Outpost
Trojan.Agent
7.1.1

Avira AntiVirus
TR/Ransom.243715
7.11.160.42

avast!
Win32:Malware-gen
2014.9-140722

Bitdefender
Trojan.GenericKD.1636911
1.0.20.1015

Comodo Security
UnclassifiedMalware
18836

Emsisoft Anti-Malware
Trojan.GenericKD.1636911
8.14.07.22.02

ESET NOD32
MSIL/Packed.NetSeal (variant)
8.10078

Fortinet FortiGate
Riskware/Fam.NB
7/22/2014

F-Secure
Trojan.GenericKD.1636911
11.2014-22-07_3

G Data
Trojan.GenericKD.1636911
14.7.24

IKARUS anti.virus
Win32.SuspectCrc
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.180.12683

McAfee
Artemis!67F6C8FA4956
5600.7062

MicroWorld eScan
Trojan.GenericKD.1636911
15.0.0.609

Norman
Troj_Generic.TWVMS
11.20140722

nProtect
Trojan.GenericKD.1636911
14.07.09.03

Qihoo 360 Security
HEUR/Malware.QVM03.Gen
1.0.0.1015

Trend Micro House Call
TROJ_GEN.R0CBB01G314
7.2.203

VIPRE Antivirus
Trojan.Win32.Generic
31162

File size:
32.5 KB (33,280 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
Plasma Downloader.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\downloads\application.exe

File PE Metadata
Compilation timestamp:
3/8/2014 3:57:36 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:FbAgeF+E6W2SLQLSUMlOQXrYdO2oTfnoPa9LQtpT/Fn4JOsnZrZWoJZW421lBOD4:FbwFSCQwbYdJov4om2n52

Entry address:
0x90DE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.4161

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
28.5 KB (29,184 bytes)

Remove application.exe - Powered by Reason Core Security