ccatnwu.exe

Dapr

House

The executable ccatnwu.exe has been detected as malware by 35 anti-virus scanners. According to AVG, this software downloads additional adware offers during setup.
Publisher:
House

Product:
Dapr

Description:
Lafko

Version:
3, 2, 3, 1

MD5:
67e1acc1527f52f2878c63bf6b6806c0

SHA-1:
7a2530757d955705ab700ac7e68813e910dcdd82

SHA-256:
fd95f2d1d64352d364a155af29d7ea71c9f67aa11f82e1f509a68351ea9378bf

Scanner detections:
35 / 68

Status:
Malware

Analysis date:
4/24/2024 8:00:57 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Symmi.29394
920

Agnitum Outpost
Trojan.DL.Wauchos
7.1.1

AhnLab V3 Security
Backdoor/Win32.Androm
2013.12.30

Avira AntiVirus
TR/Agent.131072.70
7.11.122.170

avast!
Win32:Downloader-TVO [Trj]
2014.9-140729

AVG
Downloader.Small
2015.0.3398

Bitdefender
Gen:Variant.Symmi.29394
1.0.20.1050

Bkav FE
W32.RabenetAA.Trojan
1.3.0.4613

Comodo Security
TrojWare.Win32.Kryptik.BBYD
17517

Dr.Web
BackDoor.Andromeda.178
9.0.1.0210

Emsisoft Anti-Malware
Gen:Variant.Symmi.29394
8.14.07.29.06

ESET NOD32
Win32/TrojanDownloader.Wauchos
8.9190

Fortinet FortiGate
W32/Wauchos.LB!tr
7/29/2014

F-Prot
W32/Gamarue.B.gen
v6.4.7.1.166

F-Secure
Gen:Variant.Symmi.29394
11.2014-29-07_3

G Data
Gen:Variant.Symmi.29394
14.7.22

IKARUS anti.virus
Trojan-Downloader.Small
t3scan.2.2.29

K7 AntiVirus
Trojan-Downloader
13.174.10656

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.3486

Malwarebytes
Worm.Gamarue
v2014.07.29.06

McAfee
W32/Worm-FLB!17BC9527FAC7
5600.7054

Microsoft Security Essentials
Worm:Win32/Gamarue.F
1.165.247.01

MicroWorld eScan
Gen:Variant.Symmi.29394
15.0.0.630

NANO AntiVirus
Trojan.Win32.Andromeda.chwrrj
0.28.0.57029

Norman
Gamarue.BCD
11.20140909

Panda Antivirus
Trj/Dtcontx.F
14.07.29.06

Qihoo 360 Security
Malware.QVM07.Gen
1.0.0.1015

Quick Heal
Worm.Gamarue.B
7.14.12.00

Sophos
W32/Gamarue-BK
4.96

SUPERAntiSpyware
Trojan.Agent/Gen-Magania
10453

Trend Micro House Call
WORM_GAMARUE.SMV
7.2.210

Trend Micro
TROJ_GEN.R0CBOC0IO13
10.465.29

Vba32 AntiVirus
SScope.Malware-Cryptor.Wauchos.2183
3.12.24.3

VIPRE Antivirus
Trojan-Downloader.Win32.Wauchos.la
24870

ViRobot
Backdoor.Win32.Androm.90871
2011.4.7.4223

File size:
77.6 KB (79,447 bytes)

Product version:
4, 1, 2, 2

Copyright:
Copyright Marik© 1982

Trademarks:
Derko©

Original file name:
Ako

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\student\locals~1\temp\ccatnwu.exe

File PE Metadata
Compilation timestamp:
7/9/2013 11:29:11 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
1536:9YckrPAoIaoYNhCZ2VwPsZZLbTbVlyO2ntg7d:wVFoGEZ2+0Hb/VlR2tyd

Entry address:
0x230A

Entry point:
55, 8B, EC, 6A, FF, 68, A0, 60, 40, 00, 68, 88, 30, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 14, 60, 40, 00, 33, D2, 8A, D4, 89, 15, 84, A0, 40, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 80, A0, 40, 00, C1, E1, 08, 03, CA, 89, 0D, 7C, A0, 40, 00, C1, E8, 10, A3, 78, A0, 40, 00, 33, F6, 56, E8, C8, 0B, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, 93, 08, 00, 00, FF, 15, 10, 60, 40, 00, A3, 78, A5, 40, 00, E8...
 
[+]

Entropy:
6.4329

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
18 KB (18,432 bytes)

Remove ccatnwu.exe - Powered by Reason Core Security