ccizarxae.exe

Sunce

House

The executable ccizarxae.exe has been detected as malware by 14 anti-virus scanners.
Publisher:
House

Product:
Sunce

Description:
Marko

Version:
1, 3, 4, 7

MD5:
f5faad1e10434e7b8f8db04612101963

SHA-1:
0312a1cbf6925200651d0caa1719d57b431c5d1b

SHA-256:
7ceb092aea586411ef1b947d0f3865eae78d8591e96fe93e203202a4fa84842c

Scanner detections:
14 / 68

Status:
Malware

Analysis date:
4/26/2024 3:48:38 AM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Crypt.XPACK.Gen8
8.3.1.6

avast!
Win32:Downloader-TQW [Trj]
2014.9-150522

Dr.Web
Trojan.Packed.24393
9.0.1.0142

Emsisoft Anti-Malware
Gen:Variant.Symmi.22996
8.15.05.22.02

ESET NOD32
Win32/TrojanDownloader.Wauchos.L trojan
9.7.0.302.0

F-Secure
Gen:Variant.Symmi.22996
11.2015-22-05_6

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.2002

Malwarebytes
Trojan.Downloader.Wauchos
v2015.05.22.02

McAfee
Trojan.Trojan-FCMV!7EE5DD1E37D1
5600.6757

Microsoft Security Essentials
Threat.Undefined
1.199.375.0

Norman
Gen:Variant.Symmi.22996
11.20150522

Reason Heuristics
Threat.Win.Reputation.IMP
15.5.22.10

Sophos
Virus 'Mal/Gamarue-A'
5.14

VIPRE Antivirus
Threat.4788129
40420

File size:
211.4 KB (216,512 bytes)

Product version:
3, 0, 0, 0

Copyright:
Copyright Mamuze© 2013

Trademarks:
Fioka©

Original file name:
Voda.exe

File type:
Executable application (Win32 EXE)

Common path:
C:\ProgramData\local settings\temp\ccizarxae.exe

File PE Metadata
Compilation timestamp:
6/14/2013 7:11:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
3072:SqJZXS7XlU7IHr7fVLMdNF22Qcjst9zqO2jT0AooNIqhpdLaehggMp:9nX2U7IHr7dLMd62Q8gzqrzNIILD6gMp

Entry address:
0xB17E

Entry point:
55, 8B, EC, 6A, FF, 68, B0, 93, 41, 00, 68, 24, FD, 40, 00, 64, A1, 00, 00, 00, 00, 50, 64, 89, 25, 00, 00, 00, 00, 83, EC, 58, 53, 56, 57, 89, 65, E8, FF, 15, 38, 90, 41, 00, 33, D2, 8A, D4, 89, 15, 74, 0D, 42, 00, 8B, C8, 81, E1, FF, 00, 00, 00, 89, 0D, 70, 0D, 42, 00, C1, E1, 08, 03, CA, 89, 0D, 6C, 0D, 42, 00, C1, E8, 10, A3, 68, 0D, 42, 00, 33, F6, 56, E8, DF, 4A, 00, 00, 59, 85, C0, 75, 08, 6A, 1C, E8, B0, 00, 00, 00, 59, 89, 75, FC, E8, AA, 47, 00, 00, FF, 15, 34, 90, 41, 00, A3, 44, 24, 42, 00, E8...
 
[+]

Developed / compiled with:
Microsoft Visual C++ v6.0

Code size:
93 KB (95,232 bytes)

Policies Explorer Run
Name:
1622


Remove ccizarxae.exe - Powered by Reason Core Security