crypted1.exe.exe

The executable crypted1.exe.exe has been detected as malware by 36 anti-virus scanners. According to AVG, this software downloads additional adware offers during setup.
MD5:
352120954900ea4d037adb8fe704491a

SHA-1:
c63c7b83441768c9a2909125754491ec054139de

SHA-256:
dde5e5682bd892a848c210fc25647d92f9416b2ae2e1af4f453cab758fbbe266

Scanner detections:
36 / 68

Status:
Malware

Analysis date:
4/19/2024 3:14:34 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Downloader.JOON
896

Agnitum Outpost
Trojan.Agent
7.1.1

AhnLab V3 Security
Trojan/Win32.Ardamax
2014.08.16

Avira AntiVirus
TR/Downloader.Gen
7.11.167.130

avast!
Win32:Downloader-IDA [Trj]
2014.9-140822

AVG
Downloader.Small
2015.0.3374

Baidu Antivirus
Trojan.Win32.Downloader
4.0.3.14822

Bitdefender
Trojan.Downloader.JOON
1.0.20.1170

Bkav FE
W32.Clod8e2.Trojan
1.3.0.4959

Clam AntiVirus
Trojan.Downloader-131680
0.98/21411

Comodo Security
TrojWare.Win32.TrojanDownloader.Small.pds
19199

Dr.Web
Trojan.DownLoader5.40674
9.0.1.0234

Emsisoft Anti-Malware
Trojan.Downloader.JOON
8.14.08.22.09

ESET NOD32
Win32/TrojanDownloader.Small.PDS
8.10264

Fortinet FortiGate
W32/Small.PDS!tr.dldr
8/22/2014

F-Prot
W32/Downloader-Sml
v6.4.7.1.166

F-Secure
Trojan.Downloader.JOON
11.2014-22-08_6

G Data
Trojan.Downloader.JOON
14.8.24

IKARUS anti.virus
Trojan-Downloader.Win32.Small
t3scan.1.7.5.0

K7 AntiVirus
Riskware
13.183.13054

Kaspersky
Trojan-Downloader.Win32.Small
14.0.0.3366

Malwarebytes
Trojan.Downloader
v2014.08.22.09

McAfee
Artemis!352120954900
5600.7030

Microsoft Security Essentials
TrojanDownloader:Win32/Small.AJI
1.10802

MicroWorld eScan
Trojan.Downloader.JOON
15.0.0.702

NANO AntiVirus
Trojan.Win32.DownLoader2.crdfr
0.28.2.61519

nProtect
Trojan-Downloader/W32.Small.3072.GK
14.08.14.01

Qihoo 360 Security
Win32/Trojan.Downloader.54d
1.0.0.1015

Quick Heal
Trojan.SmallAJI.A4
8.14.14.00

Rising Antivirus
PE:Trojan.Win32.Generic.12867F48!310804296
23.00.65.14820

Sophos
Troj/Dloadr-DSO
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Small
10405

Trend Micro House Call
TSPY_DOWNLOADER_BL1303A1.TOMC
7.2.234

Trend Micro
TSPY_DOWNLOADER_BL1303A1.TOMC
10.465.22

Vba32 AntiVirus
Trojan.Badur
3.12.26.3

VIPRE Antivirus
Trojan-Downloader.Win32.Small!cobra
32252

File size:
3 KB (3,072 bytes)

File type:
Executable application (Win32 EXE)

File PE Metadata
Compilation timestamp:
4/20/2011 10:28:58 AM

OS version:
1.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
1.69

CTPH (ssdeep):
24:ZHGStGBsEEKlAClUU1WpVCfJZ+5H/vBjaNAMd4dH:ZvtCEKmfU1x6BjQAMd2H

Entry address:
0x2000

Entry point:
6A, 00, FF, 15, F0, 30, 40, 00, A3, 0D, 10, 40, 00, 6A, 0A, 68, 26, 10, 40, 00, 6A, 00, FF, 15, F4, 30, 40, 00, A3, 11, 10, 40, 00, FF, 35, 11, 10, 40, 00, 6A, 00, FF, 15, F8, 30, 40, 00, A3, 15, 10, 40, 00, FF, 35, 11, 10, 40, 00, 6A, 00, FF, 15, FC, 30, 40, 00, A3, 19, 10, 40, 00, FF, 35, 15, 10, 40, 00, FF, 15, 00, 31, 40, 00, A3, 1D, 10, 40, 00, FF, 35, 19, 10, 40, 00, FF, 35, 1D, 10, 40, 00, 68, 2C, 11, 40, 00, FF, 15, 08, 31, 40, 00, FF, 35, 15, 10, 40, 00, FF, 15, 0C, 31, 40, 00, 31, C0, 68, 2C, 10...
 
[+]

Packer / compiler:
FASM v1.5x

Code size:
512 Bytes (512 bytes)

Remove crypted1.exe.exe - Powered by Reason Core Security