cd1a.exe

3rd Eye Solutions Ltd

The executable cd1a.exe has been detected as malware by 14 anti-virus scanners.
Publisher:
3rd Eye Solutions Ltd  (signed and verified)

MD5:
2f5c1b57a63207400aecbaaad2c55f41

SHA-1:
b8394bb463c0a2a80b6db022a31406efd674a1a5

SHA-256:
eaadac36fe3d496d4552be04cba0be6bbec2198ed1930c54a70e9fc8beed62ee

Scanner detections:
14 / 68

Status:
Malware

Analysis date:
4/20/2024 3:40:17 AM UTC  (today)

Scan engine
Detection
Engine version

AVG
unknown virus Win32/DH
2015.0.3459

Bitdefender
Trojan.Inject.HD
1.0.20.750

Comodo Security
Backdoor.Win32.CeckNo.DE
13850

Dr.Web
Trojan.Inject.44256
9.0.1.0150

Emsisoft Anti-Malware
Trojan.Win32.Pincav!IK
8.14.05.30.09

Fortinet FortiGate
W32/Pincav.FRB!tr
5/30/2014

F-Secure
Trojan.Inject.HD
11.2014-30-05_6

G Data
Trojan.Inject.HD
14.5.22

IKARUS anti.virus
Trojan.Win32.Pincav
t3scan.1.1.122.0

MicroWorld eScan
Trojan.Inject.HD
15.0.0.450

Norman
W32/Suspicious_Gen2.OIJXS
11.20140530

nProtect
Trojan.Inject.HD
12.10.13.01

Rising Antivirus
Trojan.Win32.Generic.11EEAA0B
23.00.65.14528

VIPRE Antivirus
Trojan.Win32.Generic
13508

File size:
110.3 KB (112,904 bytes)

File type:
Executable application (Win32 EXE)

Digital Signature
Authority:
Thawte Consulting (Pty) Ltd.

Valid from:
9/11/2008 5:30:00 AM

Valid to:
9/20/2009 5:29:59 AM

Subject:
CN=3rd Eye Solutions Ltd, OU=DEVELOPMENT, O=3rd Eye Solutions Ltd, L=Wellingborough, S=Northants, C=UK

Issuer:
CN=Thawte Code Signing CA, O=Thawte Consulting (Pty) Ltd., C=ZA

Serial number:
0F15FB59310BE95BC94E93AE60E95152

File PE Metadata
Compilation timestamp:
6/20/1992 3:52:17 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
3072:P3+meaqswJPSHciUsnhSOjLZActDKJpPAk3+zXRGlnG:us8S8ilnkCZAUDePAQwGA

Entry address:
0x10D60

Entry point:
55, 8B, EC, 83, C4, F4, B8, D8, 0C, 41, 00, E8, 50, 3B, FF, FF, E8, BB, E2, FF, FF, E8, F6, 21, FF, FF, 8B, C0, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
6.4246

Developed / compiled with:
Microsoft Visual C++

Code size:
63.5 KB (65,024 bytes)

Remove cd1a.exe - Powered by Reason Core Security