asign0.3.4packed.exe

aSign0.3

AlienHack

The application asign0.3.4packed.exe has been detected as a potentially unwanted program by 10 anti-malware scanners.
Publisher:
AlienHack

Product:
aSign0.3

Description:
aSign0.3.4

Version:
0.3.4.0

MD5:
43cdbc636913c0eac7e6f8f434ff9ddf

SHA-1:
e4ef1815af63301863f4a27143dfa6683b02d036

SHA-256:
334b99d049c8bfefe87b4274d2cfcb8b7af15b2f4701e272524dc66795c09052

Scanner detections:
10 / 68

Status:
Potentially unwanted

Analysis date:
4/20/2024 12:19:47 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.Gen
7.11.135.48

AVG
Dropper.Generic8
2015.0.3495

Bkav FE
W32.Clod8a0.Trojan
1.3.0.4959

Comodo Security
UnclassifiedMalware
17896

Emsisoft Anti-Malware
DeepScan:Generic.Adw.Cinmus.2.5757C38A
8.14.04.24.11

IKARUS anti.virus
Trojan-Dropper
t3scan.2.2.29

McAfee
Artemis!43CDBC636913
5600.7151

Norman
Injector.gen!r
11.20140424

Panda Antivirus
Generic Malware
14.04.24.11

VIPRE Antivirus
Trojan.Win32.Generic
27150

File size:
6.4 MB (6,721,536 bytes)

Product version:
0.3.4.0

Copyright:
AlienHack © 2013

Original file name:
aSign0.3.4.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
4/5/2013 7:06:54 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
196608:80yxZNoP62T5/x5bCk6HH2NSJFimaAEXZrJw:8PxYvRTbI5iBAkrJw

Entry address:
0x642A8E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.9797

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
6.3 MB (6,556,672 bytes)

Remove asign0.3.4packed.exe - Powered by Reason Core Security