!c_ricochetx.exe

The application !c_ricochetx.exe has been detected as a potentially unwanted program by 31 anti-malware scanners.
MD5:
5e3410b47099a141955e769310013c80

SHA-1:
c9ad234221e9b492003f8bde7e06fdccc7627b08

SHA-256:
7f6846180c8aeed6a17245f786b118e082519c2c5dbf18ce3bc08dd6ad36c98a

Scanner detections:
31 / 68

Status:
Potentially unwanted

Analysis date:
5/5/2024 7:22:11 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.3227041
-40

AegisLab AV Signature
Packer.W32.Tibs.l4Hz
2.1.4+

AhnLab V3 Security
Malware/Win32.Trojan Horse.N108673961
3.8.1.15

Avira AntiVirus
TR/Horse.NSW
8.3.3.4

Arcabit
Trojan.Generic.D313DA1
1.0.0.779

avast!
Win32:Malware-gen
2014.9-170315

AVG
fsg
2018.0.2438

Baidu Antivirus
Win32.Trojan.WisdomEyes.16070401.9500
4.0.3.17315

Bitdefender
Trojan.Generic.3227041
1.0.20.370

Comodo Security
TrojWare.Win32.Patched.KSU
26000

Emsisoft Anti-Malware
Trojan.Generic.3227041
8.17.03.15.12

ESET NOD32
Generik.FHLTMNI (variant)
11.14336

Fortinet FortiGate
PossibleThreat
3/15/2017

F-Prot
W32/Heuristic-162
v6.4.7.1.166

F-Secure
Trojan.Generic.3227041
11.2017-15-03_4

G Data
Trojan.Generic.3227041
17.3.25

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.2.1.16.0

K7 AntiVirus
Trojan
13.244.21297

Kaspersky
UDS:DangerousObject.Multi.Generic
14.0.0.-1313

Malwarebytes
RiskWare.Tool.CK
v2017.03.15.12

McAfee
Artemis!5E3410B47099
5600.6094

MicroWorld eScan
Trojan.Generic.3227041
18.0.0.222

NANO AntiVirus
Trojan.Win32.Agent2.ooqlz
1.0.44.12357

Panda Antivirus
Trj/CI.A
17.03.15.12

Qihoo 360 Security
Win32/Trojan.0a7
1.0.0.1120

Quick Heal
(Suspicious) - DNAScan
3.17.14.00

Sophos
Mal/Packer
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-FSG
8534

Trend Micro House Call
PAK_Generic.002
7.2.74

VIPRE Antivirus
Trojan.Win32.Generic
53290

Zillya! Antivirus
Trojan.Agent.Win32.194387
2.0.0.3097

File size:
2.8 KB (2,833 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\downloads\ricochet xtreme v1.4\!c_ricochetx.exe

File PE Metadata
Compilation timestamp:
9/11/1987 8:35:02 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Entry address:
0x154

Entry point:
4D, 5A, 4D, 63, 43, 72, 61, 63, 6B, 65, 72, 21, 50, 45, 00, 00, 4C, 01, 02, 00, 46, 53, 47, 21, 00, 00, 00, 00, 00, 00, 00, 00, E0, 00, 0F, 01, 0B, 01, 00, 00, 00, 04, 00, 00, 00, 10, 00, 00, 00, 00, 00, 00, 54, 01, 00, 00, 00, 10, 00, 00, 0C, 00, 00, 00, 00, 00, 40, 00, 00, 10, 00, 00, 00, 02, 00, 00, 04, 00, 00, 00, 00, 00, 00, 00, 04, 00, 00, 00, 00, 00, 00, 00, 00, 70, 00, 00, 00, 02, 00, 00, 00, 00, 00, 00, 02, 00, 00, 00, 00, 00, 10, 00, 00, 10, 00, 00, 00, 00, 10, 00, 00, 10, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
5.7036

Code size:
1024 Bytes (1,024 bytes)

Remove !c_ricochetx.exe - Powered by Reason Core Security