autoexec.exe

XTH

The executable autoexec.exe has been detected as malware by 27 anti-virus scanners.
Publisher:
XTH

Product:
XTH

Version:
3.00

MD5:
55b3b4f5154cc74a8b21aae12a253403

SHA-1:
51912ebec46458a13731186ad7f57afa02cbe4c7

SHA-256:
cfa641436bc93491d24ce7a37f4b7db7cfeebcaaa391803f99cc79770b550eec

Scanner detections:
27 / 68

Status:
Malware

Analysis date:
4/29/2024 3:15:50 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-Trojan/Buzus.75327
5.0.

Avira AntiVirus
TR/ATRAPS.Gen
7.9.1.108

Emsisoft A-Squared
Trojan.Slenfbot!IK
4.5.0.43

avast!
Win32:Trojan-gen
2014.9-170310

AVG
Generic13
2018.0.2444

Bitdefender
Trojan.Slenfbot.Gen.1
1.0.20.345

Clam AntiVirus
Trojan.Buzus-4034
0.98/171

Comodo Security
TrojWare.Win32.Buzus.arbh
3206

Dr.Web
Trojan.NyteMare.1
9.0.1.069

ESET NOD32
Win32/Injector.KZ (variant)
11.4679

Fortinet FortiGate
W32/Buzus.ARBH!tr
3/10/2017

F-Prot
W32/Trojan2.HFNU
v6.4.5.1.85

F-Secure
Trojan.Slenfbot.Gen.1
11.2017-10-03_6

G Data
Trojan.Slenfbot.Gen
17.3.19

IKARUS anti.virus
Trojan.Slenfbot
t3scan.1.1.74.0

K7 AntiVirus
Trojan.Win32.Malware.1
13.7.10.918

Kaspersky
Trojan.Win32.Buzus
14.0.0.-1287

McAfee
Spam-Mailbot.l
5600.6100

Microsoft Security Essentials
Worm:Win32/Slenfbot.gen!B
1.163.1557.0

Norman
W32/Buzus.OHU
11.20170310

Panda Antivirus
W32/Slenfbot.W.worm
17.03.10.11

Prevx
High Risk Cloaked Malware
3.0

Quick Heal
Trojan.Agent.ATV
3.17.10.00

Sophos
Mal/DelfInj-B
4.48

Trend Micro
TROJ_BUZUS.OJ
10.465.10

Vba32 AntiVirus
Trojan.Win32.Buzus.arau
3.12.12.0

ViRobot
Trojan.Win32.Agent.25600.AU
2009.12.11.2083

File size:
73.6 KB (75,327 bytes)

Product version:
3.00D

Copyright:
2000-2009

Trademarks:
XTH

File type:
Executable application (Win32 EXE)

Language:
English (United States)

File PE Metadata
Compilation timestamp:
6/20/1992 12:22:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

Entry address:
0x2F38

Entry point:
55, 8B, EC, 83, C4, F0, B8, C0, 2E, 04, 00, E8, 64, EA, FF, FF, 33, C0, 55, 68, B0, 2F, 04, 00, 64, FF, 30, 64, 89, 20, 90, 6A, 00, 6A, 00, 6A, 00, 68, EE, EE, EE, EE, E8, 35, EB, FF, FF, 85, C0, 75, 37, 90, E8, 67, FE, FF, FF, 84, C0, 75, 2D, 90, B8, EB, 00, 00, 00, E8, 88, FE, FF, FF, 90, E8, D6, EE, FF, FF, 90, E8, C8, FB, FF, FF, 90, 6A, 00, 68, 20, 2C, 04, 00, 6A, 0A, 6A, 00, A1, B0, 30, 04, 00, 8B, 00, FF, D0, 90, 33, C0, 5A, 59, 59, 64, 89, 10, 68, B7, 2F, 04, 00, C3, E9, BF, E2, FF, FF, EB, F8, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
8 KB (8,192 bytes)

Remove autoexec.exe - Powered by Reason Core Security