havkv2.0.exe

ǧº»6JþÉÆ·ÆVJµØ‰ÿ»ª¥PXÓ£ßEÉ8Ç4éÀõOºëÈÊüÒ9§ÊÞ4Ê°P†Iäµ´²LW

The executable havkv2.0.exe has been detected as malware by 28 anti-virus scanners.
Product:
ǧº»6JþÉ™®Æ·ÆVJµØ‰ÿ»ª¥P™XÓ£ßEÉ8Ç4éÀõOºëÈÊüÒ9§™ÊÞ4Ê°P†Iäµ´²LW

Version:
1.0.0.0

MD5:
e25eb5c732caa69905e4d8e44c138ae3

SHA-1:
dcc6cc5cbf3ef3f2ab65ce8b7218ecea450260a4

SHA-256:
f8422c17a429da68c5c97a9223054ee1e86797050a83eca2e341fd36458bbd0b

Scanner detections:
28 / 68

Status:
Malware

Analysis date:
4/26/2024 4:14:56 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.601551
5761115

Agnitum Outpost
Trojan.Agent
7.1.1

Avira AntiVirus
TR/Dropper.Gen
8.3.1.6

Arcabit
Trojan.Kazy.D92DCF
1.0.0.425

avast!
MSIL:GenMalicious-BX [Trj]
150602-1

AVG
Atros
2016.0.3056

Baidu Antivirus
Trojan.MSIL.Agent
4.0.3.1577

Bitdefender
Gen:Variant.Kazy.601551
1.0.20.940

Emsisoft Anti-Malware
Gen:Variant.Kazy.601551
10.0.0.5366

ESET NOD32
MSIL/TrojanDropper.Agent.BVB trojan
7.0.302.0

Fortinet FortiGate
MSIL/Agent.LF!tr
7/7/2015

F-Secure
Gen:Variant.Kazy.601551
5.14.151

G Data
Gen:Variant.Kazy.601551
15.7.25

IKARUS anti.virus
Trojan.SuspectCRC
t3scan.1.9.5.0

K7 AntiVirus
Trojan
13.205.16474

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.1774

Malwarebytes
Backdoor.XTRat
v2015.07.07.03

McAfee
Trojan.Artemis!E25EB5C732CA
17.6.569.0

Microsoft Security Essentials
Threat.Undefined
1.201.1110.0

MicroWorld eScan
Gen:Variant.Kazy.601551
16.0.0.564

NANO AntiVirus
Trojan.Win32.Agent.dhxqul
0.30.24.2487

Norman
Gen:Variant.Kazy.601551
02.06.2015 14:23:46

Panda Antivirus
Trj/CI.A
15.07.07.03

Qihoo 360 Security
Win32/Trojan.b2d
1.0.0.1015

Sophos
Mal/MSIL-OR
4.98

Trend Micro
TROJ_GEN.R028C0DFR15
10.465.07

VIPRE Antivirus
Threat.4150696
40786

File size:
62.5 KB (64,007 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
ǧº»6JþÉ™®Æ·ÆVJµØ‰ÿ»ª¥P™XÓ£ßEÉ8Ç4éÀõOºëÈÊüÒ9§™ÊÞ4Ê°P†Iäµ´²LW.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

File PE Metadata
Compilation timestamp:
4/20/2015 5:15:39 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
8.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
1536:ydMaVBL8baR6uknKXBNGjhER0no3Xp4uCv:ydMaVBL8baR6uzRNGjJMXp4uCv

Entry address:
0x801E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
24.5 KB (25,088 bytes)

Remove havkv2.0.exe - Powered by Reason Core Security