chrome.exe

The executable chrome.exe has been detected as malware by 27 anti-virus scanners.
Version:
0.0.0.0

MD5:
479974c7974ded9b8c39617b0a52a951

SHA-1:
f0dcbe8d60ac3d347f3035d88c414e8fb14b0e5f

SHA-256:
a188cc2e3252256957bc7d78978fce44363934063dbeeb88676c21a2ba996490

Scanner detections:
27 / 68

Status:
Malware

Analysis date:
4/26/2024 4:12:24 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Trojan/Win32.Disfa
2013.06.13

Avira AntiVirus
TR/Spy.316416.3
7.11.84.120

avast!
Win32:Malware-gen
2014.9-151126

AVG
Generic33
2016.0.2913

Bitdefender
Gen:Trojan.Heur.DNP.tq0@aaSXQuo
1.0.20.1650

Comodo Security
UnclassifiedMalware
16423

Dr.Web
Trojan.DownLoader9.21875
9.0.1.0330

Emsisoft Anti-Malware
Gen:Trojan.Heur.DNP.tq0@aaSXQuo
8.15.11.26.08

ESET NOD32
MSIL/Bladabindi (variant)
9.8443

Fortinet FortiGate
W32/Disfa.ALQP!tr
11/26/2015

F-Secure
Gen:Trojan.Heur.DNP.tq0@aaSXQuo
11.2015-26-11_5

G Data
Gen:Trojan.Heur.DNP.tq0@aaSXQuo
15.11.22

IKARUS anti.virus
Trojan.Msil
t3scan.2.0.3.0

K7 AntiVirus
Trojan
13.170.8855

Kaspersky
Trojan.MSIL.Disfa
14.0.0.1061

Malwarebytes
Backdoor.MSIL.PGen
v2015.11.26.08

McAfee
RDN/Generic.dx!ch3
5600.6569

Microsoft Security Essentials
Trojan:Win32/Sisron
1.163.1557.0

MicroWorld eScan
Gen:Trojan.Heur.DNP.tq0@aaSXQuo
16.0.0.990

NANO AntiVirus
Trojan.Win32.Disfa.brznaw
0.24.0.52848

Norman
Suspicious_Gen5.ZSWY
11.20151126

Panda Antivirus
Trj/CI.A
15.11.26.08

Sophos
Mal/Generic-S
4.90

Trend Micro House Call
TROJ_GEN.RCCCDF7
7.2.330

Trend Micro
TROJ_GEN.RCCCDF7
10.465.26

Vba32 AntiVirus
TScope.Trojan.MSIL
3.12.22.2

VIPRE Antivirus
Trojan.Win32.Generic
18668

File size:
309 KB (316,416 bytes)

Product version:
0.0.0.0

Original file name:
w.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\local\temp\chrome.exe

File PE Metadata
Compilation timestamp:
5/25/2013 11:33:57 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
6144:Y7h6t7t6rX3k77FyS9wZoKOL9NAKTEVWVp5/Wdu:+Ux6rnk77FLhwSp5/W

Entry address:
0x4898E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 97, 62, 96, 9F, 6B, D1, C7, 0E, 9F, A3, A1, A2, A3, A0...
 
[+]

Entropy:
5.7553

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
282.5 KB (289,280 bytes)

Remove chrome.exe - Powered by Reason Core Security