fec31a3bd5538ee4bdbd163884ca3715107db8c231ae39bbefbb13c2574c95f7

Grupo Hunter

The file fec31a3bd5538ee4bdbd163884ca3715107db8c231ae39bbefbb13c2574c95f7 by Grupo Hunter has been detected as a potentially unwanted program by 21 anti-malware scanners.
Publisher:
Grupo Hunter  (signed and verified)

Version:
2.0.0.0

MD5:
57de6350b5625847ad86296d5b849e87

SHA-1:
15d5c0d7b6278a2d8d3d268c2b08bbee40c1a5c6

SHA-256:
fec31a3bd5538ee4bdbd163884ca3715107db8c231ae39bbefbb13c2574c95f7

Scanner detections:
21 / 68

Status:
Potentially unwanted

Analysis date:
4/20/2024 1:29:26 AM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win-Trojan/Archsms.1120872.H
2013.06.08

Avira AntiVirus
TR/Spy.Banker.Gen
7.11.83.146

avast!
Win32:Downloader-SKE [Adw]
2014.9-150919

AVG
PSW.Banker6
2016.0.2981

Bitdefender
Gen:Variant.Graftor.68973
1.0.20.1310

Comodo Security
TrojWare.Win32.UMal.~A
16394

Emsisoft Anti-Malware
Gen:Variant.Graftor.68973
8.15.09.19.02

ESET NOD32
Win32/Downloader.Agent (variant)
9.8424

Fortinet FortiGate
W32/Downloader_Agent.E
9/19/2015

F-Secure
Gen:Variant.Graftor.68973
11.2015-19-09_7

G Data
Gen:Variant.Graftor.68973
15.9.22

IKARUS anti.virus
Win32.SuspectCrc
t3scan.2.0.3.0

McAfee
Artemis!57DE6350B562
5600.6637

Microsoft Security Essentials
Program:Win32/Pameseg
1.163.1557.0

MicroWorld eScan
Gen:Variant.Graftor.68973
16.0.0.786

Norman
Pameseg.CY
11.20150919

Panda Antivirus
W32/Vobfus.GEP.worm
15.09.19.02

Sophos
Mal/Generic-S
4.89

Trend Micro House Call
ADW_ARCHSMS
7.2.262

Trend Micro
ADW_ARCHSMS
10.465.19

VIPRE Antivirus
Trojan.Win32.Generic
18524

File size:
1.1 MB (1,120,872 bytes)

Product version:
2.0.0.0

Language:
Portuguese (Brazil)

Digital Signature
Signed by:

Authority:
COMODO CA Limited

Valid from:
11/27/2012 5:30:00 AM

Valid to:
11/28/2013 5:29:59 AM

Subject:
CN=Grupo Hunter, O=Grupo Hunter, STREET="R JOAO ROSA, 364, CENTRO", L=BIGUAÇU, S=SC, PostalCode=88160000, C=BR

Issuer:
CN=COMODO Code Signing CA 2, O=COMODO CA Limited, L=Salford, S=Greater Manchester, C=GB

Serial number:
10FB0BD016440D342DDC0ED91D16A744

File PE Metadata
Compilation timestamp:
6/20/1992 3:52:17 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
2.25

CTPH (ssdeep):
24576:A0UQt/+hM3OwMoBvNEgZZvux4UKKQ1Wsi9RKnNnGczQup4acit:OTu3OiNlnvoQKcWTRKnNnRzp4acit

Entry address:
0x1F98B0

Entry point:
60, BE, 00, 50, 50, 00, 8D, BE, 00, C0, EF, FF, C7, 87, 9C, B0, 15, 00, 87, 1E, E8, 55, 57, 83, CD, FF, EB, 0E, 90, 90, 90, 90, 8A, 06, 46, 88, 07, 47, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 72, ED, B8, 01, 00, 00, 00, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C0, 01, DB, 73, EF, 75, 09, 8B, 1E, 83, EE, FC, 11, DB, 73, E4, 31, C9, 83, E8, 03, 72, 0D, C1, E0, 08, 8A, 06, 46, 83, F0, FF, 74, 74, 89, C5, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB, 11, C9, 01, DB, 75, 07, 8B, 1E, 83, EE, FC, 11, DB...
 
[+]

Entropy:
7.5890

Packer / compiler:
UPX v0.89.6 - v1.02 / v1.05 -v1.22 (Delphi) stub

Code size:
980 KB (1,003,520 bytes)