GoldCardTool.exe

GoldCard Tool

klutsh.com

The executable GoldCardTool.exe has been detected as malware by 39 anti-virus scanners.
Publisher:
klutsh.com

Product:
GoldCard Tool

Version:
0.0.5.0

MD5:
dbce0688d465766250deab00cf2d4642

SHA-1:
88df1f395d8959df008a6888ea6d2f453f76d80d

SHA-256:
61a920070f50400622d40c0ba04cc8b928fc1d29465c69a26e3e1327832f8ba7

Scanner detections:
39 / 68

Status:
File is infected by a Virus

Explanation:
The file is infected by a polymorphic file infector virus.

Analysis date:
4/24/2024 11:27:56 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Win32.Virtob.Gen.12
517

AegisLab AV Signature
W32.Virut
2.1.4+

Agnitum Outpost
Win32.Virut.AB.Gen
7.1.1

AhnLab V3 Security
Win32/Virut.F
2015.07.27

Avira AntiVirus
W32/Virut.Gen
8.3.1.6

Arcabit
Win32.Virtob.Gen.12
1.0.0.425

avast!
Win32:Virtu-A
2014.9-150905

AVG
Win32/Virut
2016.0.2995

Baidu Antivirus
Virus.Win32.Virut.$NBP
4.0.3.1595

Bitdefender
Win32.Virtob.Gen.12
1.0.20.1240

Bkav FE
W32.Vetor.PE
1.3.0.6979

Comodo Security
Virus.Win32.Virut.CE
22873

Dr.Web
Win32.Virut.56
9.0.1.0248

Emsisoft Anti-Malware
Win32.Virtob.Gen.12
8.15.09.05.03

ESET NOD32
Win32/Virut.NBP
9.12000

Fortinet FortiGate
W32/Virut.CE
9/5/2015

F-Prot
W32/Virut.AL!Generic
v6.4.7.1.166

F-Secure
Win32.Virtob.Gen.12
11.2015-05-09_7

G Data
Win32.Virtob.Gen.12
15.9.25

IKARUS anti.virus
Virus.Win32.Virut
t3scan.1.9.5.0

K7 AntiVirus
Virus
13.207.16689

Kaspersky
Virus.Win32.Virut
14.0.0.1472

McAfee
W32/Virut.n.gen
5600.6651

Microsoft Security Essentials
Virus:Win32/Virut.BO
1.1.11903.0

MicroWorld eScan
Win32.Virtob.Gen.12
16.0.0.744

NANO AntiVirus
Virus.Win32.Virut.hpeg
0.30.24.2668

nProtect
Virus/W32.Virut.Gen
15.07.23.01

Panda Antivirus
W32/Sality.AO
15.09.05.03

Qihoo 360 Security
Win32/Virus.600
1.0.0.1015

Quick Heal
W32.Virut.G
9.15.14.00

Rising Antivirus
PE:Win32.Virut.ec!1608462
23.00.65.15903

Sophos
W32/Scribble-B
4.98

Total Defense
Win32/Virut.17408
37.1.62.1

Trend Micro House Call
PE_VIRUX.O
7.2.248

Trend Micro
PE_VIRUX.O
10.465.05

Vba32 AntiVirus
Virus.Virut.14
3.12.26.4

VIPRE Antivirus
Virus.Win32.Virut.ce.5
42368

ViRobot
Win32.Virut.AM[h]
2014.3.20.0

Zillya! Antivirus
Virus.Virut.Win32.1938
2.0.0.2317

File size:
1.1 MB (1,130,496 bytes)

Product version:
0.0.5.0

Copyright:
Copyright © klutsh.com 2010

Original file name:
GoldCardTool.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
2/15/2008 2:17:44 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
24576:QbQOSyMz9v2S87xLScYWgoIm3EcnrOt96tYa+n4bQGSnMo:QrSyMhuBxLPNnImnnyubfSnM

Entry address:
0x1169E9

Entry point:
83, 3C, 24, FE, 77, FE, 90, 8D, 64, 24, CC, 60, 83, EC, DC, E8, 07, FF, FF, FF, 4B, 66, 4B, 87, FA, 75, FA, 86, F4, B6, 75, FF, 73, 3C, 4E, 59, F7, D7, 81, E9, FD, FF, FF, 7F, 73, E6, B6, 2D, 9B, 90, F7, D6, 81, D9, E6, 13, 00, 00, 86, F2, 71, D6, 19, DA, 2C, 00, 83, D8, C0, F7, D2, FF, B4, 19, E4, 13, 00, 80, 8B, D5, 83, C4, 04, 66, 81, 44, 24, FC, B0, BA, 75, B8, 8A, C9, 3C, F4, 68, 59, 35, 88, 52, 49, E8, D8, FE, FF, FF, 90, 89, 74, 24, 44, E8, 88, 01, 00, 00, 89, 44, 24, 34, 87, FF, 83, E8, 04, 0F, 82...
 
[+]

Entropy:
7.8026  (probably packed)

Code size:
1004.5 KB (1,028,608 bytes)

Remove GoldCardTool.exe - Powered by Reason Core Security