dwhe3e2.tmp

The file dwhe3e2.tmp has been detected as malware by 39 anti-virus scanners.
MD5:
45e26d8b0861226e20573867913ba578

SHA-1:
e97df279e920ecef8436e4218812356033e837a8

SHA-256:
7f4a3ca6c2d9c8fd6be98c52e2bb8f3fc25d3585ec441ec1da733cb60396e4bf

Scanner detections:
39 / 68

Status:
Malware

Analysis date:
4/25/2024 6:57:19 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Backdoor.Generic.571163
578

Agnitum Outpost
Trojan.Menti
7.1.1

AhnLab V3 Security
Trojan/Win32.Searches
2014.07.09

Avira AntiVirus
TR/Crypt.ZPACK.Gen
7.11.159.66

avast!
Win32:Crypt-IOM [Trj]
2014.9-150707

AVG
Cryptic
2016.0.3056

Baidu Antivirus
Trojan.Win32.Menti
4.0.3.1577

Bitdefender
Backdoor.Generic.571163
1.0.20.940

Bkav FE
W32.Clod476.Trojan
1.3.0.4959

Clam AntiVirus
Win.Trojan.Menti-733
0.98/21411

Comodo Security
MalCrypt.Indus!
18809

Dr.Web
Trojan.Siggen3.27458
9.0.1.0188

Emsisoft Anti-Malware
Backdoor.Generic.571163
8.15.07.07.03

ESET NOD32
Win32/Kryptik.AHBV (variant)
9.10064

Fortinet FortiGate
W32/PackKatusha.N!tr
7/7/2015

F-Secure
Backdoor.Generic.571163
11.2015-07-07_3

G Data
Backdoor.Generic.571163
15.7.24

IKARUS anti.virus
Trojan.Win32.Searches
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.180.12657

Kaspersky
Trojan.Win32.Menti
14.0.0.1774

Malwarebytes
Trojan.Tracur.S
v2015.07.07.03

McAfee
Downloader-BMN.gen.ak
5600.6712

Microsoft Security Essentials
Trojan:Win32/Sisron!gmb
1.10701

MicroWorld eScan
Backdoor.Generic.571163
16.0.0.564

NANO AntiVirus
Trojan.Win32.Menti.csizca
0.28.0.60698

Norman
Suspicious_Gen2.JCTEG
11.20150707

nProtect
Backdoor/W32.Agent.517120.I
14.07.08.03

Panda Antivirus
Generic Trojan
15.07.07.03

Qihoo 360 Security
Win32/Trojan.fce
1.0.0.1015

Quick Heal
Trojan.Menti.r8
7.15.14.00

Rising Antivirus
PE:Trojan.Win32.Generic.12A98E28!313101864
23.00.65.15705

Sophos
Mal/Katush-B
4.98

Total Defense
Win32/Menti.K
37.0.11046

Trend Micro House Call
TROJ_TRACUR.SMA
7.2.188

Trend Micro
TROJ_GEN.R0CBC0DB314
10.465.07

Vba32 AntiVirus
Trojan.Menti
3.12.26.3

VIPRE Antivirus
TrojanDownloader.Win32.Tracur.a
31088

ViRobot
Trojan.Win32.S.Menti.517120
2011.4.7.4223

Zillya! Antivirus
Trojan.Menti.Win32.4897
2.0.0.1850

File size:
505 KB (517,120 bytes)

Common path:
C:\users\{user}\appdata\local\temp\dwhe3e2.tmp

File PE Metadata
Compilation timestamp:
6/19/1992 3:22:17 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
12288:wuicYW9kUFBeQ6Oh0ld3lFCPCMVZ+JXIo7XaX4C:xiFWSUFf6VbOPCg+yoOX

Entry address:
0x772B4

Entry point:
55, 8B, EC, 83, C4, E4, 50, B8, 45, 51, 47, 00, E8, D6, F6, FF, FF, B8, 8E, E4, 00, 00, B9, 73, A4, 00, 00, BA, 5C, 64, 00, 00, E8, E7, A3, FF, FF, 89, 1D, 9B, 36, 00, 00, 8B, 46, A4, E8, 8F, 50, FF, FF, 89, 37, 89, 8E, 55, 76, 00, 00, 89, BE, E9, D9, 00, 00, 8B, 05, CA, CA, 00, 00, 89, 51, DF, 89, 32, 89, 05, 25, D4, 00, 00, 89, 0E, 8B, 48, DA, E8, 8D, 3A, FF, FF, 8B, 41, BE, 8B, 0D, 63, 04, 00, 00, 89, 32, 8B, 15, 89, 83, 00, 00, E8, 10, 2D, FF, FF, B8, 5D, 96, 00, 00, 8B, 0E, 89, 48, F2, 8B, 52, 27, E8...
 
[+]

Entropy:
6.6417

Developed / compiled with:
Microsoft Visual C++

Code size:
473 KB (484,352 bytes)

Remove dwhe3e2.tmp - Powered by Reason Core Security