fff.alawar.solution.exe

Asprotect? wtf

The application fff.alawar.solution.exe, “Next target : Alawar !” has been detected as a potentially unwanted program by 29 anti-malware scanners.
Product:
Asprotect? wtf

Description:
Next target : Alawar !

Version:
1.0

MD5:
9ae9c87af915fcc794c0548df9f7b173

SHA-1:
cf6e141f13405e3832eaf0356cecc031a7c3a906

SHA-256:
9e6be31ddec78bb7b88e4ac0a554a21c91e0075f3179904fb358d9cdce4ec3f6

Scanner detections:
29 / 68

Status:
Potentially unwanted

Analysis date:
5/10/2024 3:24:22 AM UTC  (today)

Scan engine
Detection
Engine version

Agnitum Outpost
Trojan.DR.Agent
7.1.1

AhnLab V3 Security
Dropper/Agent.151552.DC
2013.02.21

Avira AntiVirus
TR/Crypt.XPACK.Gen
7.11.62.28

AVG
Fat-Obfuscated
2015.0.3400

Bitdefender
Backdoor.Generic.465875
1.0.20.1045

Comodo Security
UnclassifiedMalware
15321

Dr.Web
Trojan.MulDrop2.15170
9.0.1.0209

Emsisoft Anti-Malware
Backdoor.Generic.465875
8.14.07.28.01

ESET NOD32
Win32/TrojanDropper.Agent.FGUDFXS (variant)
8.8032

Fortinet FortiGate
W32/Redosdru.ID!tr
7/28/2014

F-Prot
W32/MalwareF.ZSCX
v6.4.6.5.141

F-Secure
Packed:W32/PeCan.A
11.2014-28-07_2

G Data
Backdoor.Generic.465875
14.7.22

IKARUS anti.virus
Trojan-Dropper.Agent
t3scan.2.0.0.0

K7 AntiVirus
Trojan
13.160.8242

Kaspersky
Trojan-Dropper.Win32.Agent
14.0.0.3495

McAfee
Artemis!9AE9C87AF915
5600.7056

Microsoft Security Essentials
Trojan:Win32/Dynamer!dtc
1.163.1557.0

MicroWorld eScan
Backdoor.Generic.465875
15.0.0.627

NANO AntiVirus
Trojan.Win32.Agent.dyjqn
0.22.8.50637

Norman
Redosdru.LS
11.20140728

nProtect
Backdoor/W32.Agent.151552.BV
13.02.20.01

Panda Antivirus
Generic Trojan
14.07.28.01

Rising Antivirus
Trojan.Win32.Generic.125895E3
23.00.65.14726

Sophos
Mal/Generic-L
4.86

Total Defense
Win32/Etap
37.0.10303

Trend Micro House Call
TROJ_GEN.R47C5KD
7.2.209

Vba32 AntiVirus
TrojanDropper.Agent.dakg
3.12.20.2

VIPRE Antivirus
Trojan-Dropper.Win32.Resdro.b
15658

File size:
148 KB (151,552 bytes)

Product version:
1.0

Copyright:
TEAM FFF (c) Since 2002

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\{random}.tmp\alawar universal patch compilasi by deluxecool 2011\fff.alawar.solution\fff.alawar.solution.exe

File PE Metadata
Compilation timestamp:
8/21/2010 2:01:01 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
3072:sfBZ3Kx4nDbfagCqKZk5yY/UvwS4wMeX0AMpihQrO34QPkS0JW5JY3nF/IXqj8Ik:ABZM4nDWgRAkPUvt4wB0A0w34PWQ3F6F

Entry address:
0x1BBEF

Entry point:
E8, 02, 00, 00, 00, FB, CF, 87, 04, 24, 8D, 80, DB, 00, 00, 00, 87, 04, 24, E9, C8, 00, 00, 00, 30, 52, 03, C8, E9, D9, F7, FF, FF, 93, C8, 0F, E9, 47, 00, 00, 00, 0F, 85, B6, FE, FF, FF, E9, F8, F4, FF, FF, 8B, 86, 80, 00, 00, 00, E9, A8, F8, FF, FF, 0E, 0F, 83, F1, FA, FF, FF, E9, FC, FD, FF, FF, B2, 80, E9, 76, FC, FF, FF, 70, 8C, CD, 78, E9, D9, F5, FF, FF, 2B, 7C, 24, 28, E9, 75, F9, FF, FF, A7, 13, D1, 8B, 4E, 28, E9, 4C, F5, FF, FF, A0, E8, 01, 00, 00, 00, FA, 87, 04, 24, 8D, 80, 33, F8, FF, FF, 87...
 
[+]

Code size:
18 KB (18,432 bytes)

Remove fff.alawar.solution.exe - Powered by Reason Core Security