br.exe

The executable br.exe has been detected as malware by 37 anti-virus scanners.
MD5:
d74521abfa935290653316bd2de4cf12

SHA-1:
5f6b8ea4795303288d2ab5dbe54aa9679d7c9a65

SHA-256:
65e5e9b227302dbb4b2598870bb89613bc4cb19949fc32b9f8a22a356e2c5adc

Scanner detections:
37 / 68

Status:
Malware

Analysis date:
4/24/2024 6:43:44 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Barys.7801
828

AegisLab AV Signature
Troj.W32.Gen
2.1.4+

Agnitum Outpost
TrojanSpy.Agent
7.1.1

AhnLab V3 Security
Trojan/Win32.Bladabindi
2014.10.31

Avira AntiVirus
TR/ATRAPS.Gen
7.11.182.78

avast!
MSIL:GenMalicious-V [Trj]
141025-0

AVG
Trojan horse MSIL.AVGP
2014.0.4040

Bitdefender
Gen:Variant.Barys.7801
1.0.20.1515

Comodo Security
TrojWare.MSIL.Bladabindi.KX
19944

Dr.Web
Trojan.DownLoader10.19183
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Barys.7801
14.10.28

ESET NOD32
MSIL/Bladabindi.F trojan
7.0.302.0

Fortinet FortiGate
MSIL/Agent.PPV!tr
10/30/2014

F-Prot
W32/MSIL_Bladabindi.A2.gen
4.6.5.141

F-Secure
Gen:Variant.Barys.7801
11.2014-30-10_5

G Data
Gen:Variant.Barys.7801
14.10.24

IKARUS anti.virus
Trojan.MSIL.Bladabindi
t3scan.1.8.3.0

K7 AntiVirus
Trojan
13.185.13853

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.3023

Malwarebytes
Trojan.MSIL
v2014.10.30.11

McAfee
BackDoor-NJRat!D74521ABFA93
5600.6962

Microsoft Security Essentials
Threat.Undefined
1.187.750.0

MicroWorld eScan
Gen:Variant.Barys.7801
15.0.0.909

NANO AntiVirus
Trojan.Win32.DownLoader10.dbxzfj
0.28.6.62995

Norman
MSIL.BZ
11.20141030

nProtect
Trojan/W32.Agent.29696.VW
14.10.30.01

Qihoo 360 Security
Malware.QVM03.Gen
1.0.0.1015

Quick Heal
Trojan.Bladabindi.B3
10.14.14.00

Rising Antivirus
PE:Backdoor.Bot!1.6675
23.00.65.141028

Sophos
Troj/MSIL-HX
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Barys
10268

Total Defense
Win32/DotNetDl.A!generic
37.0.11255

Trend Micro House Call
BKDR_BLADABI.SMC
7.2.303

Trend Micro
BKDR_BLADABI.SMC
10.465.30

Vba32 AntiVirus
Trojan.MSIL.Disfa
3.12.26.3

VIPRE Antivirus
Threat.4792715
34232

Zillya! Antivirus
Trojan.Bladabindi.Win32.14962
2.0.0.1972

File size:
29 KB (29,696 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
8/21/2011 4:28:45 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
384:r3pQjtl7jBnoKoK3J5J5nHK4GumqDAEReIlGBsbh0w4wlAokw9OhgOL1vYRGOZz6:rs7hoKoGJ7NK4Aq1RehBKh0p29SgRIv

Entry address:
0x8AEE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.5793

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
27 KB (27,648 bytes)

Remove br.exe - Powered by Reason Core Security