icsunattend.exe

The executable icsunattend.exe has been detected as malware by 30 anti-virus scanners.
MD5:
2365de841721781aa0babecfc425f7b3

SHA-1:
67d2c7d97262bf28e1e90e553789155f85ee9c17

SHA-256:
b00c893fbb75a9a236425e19515a793e5a667f0f193d52018c1abf1a9a29bb0d

Scanner detections:
30 / 68

Status:
Malware

Analysis date:
4/25/2024 8:24:53 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Kazy.6550
856

AegisLab AV Signature
Troj.W32.Gen
2.1.4+

AhnLab V3 Security
Dropper/Win32.Necurs
2014.10.02

Avira AntiVirus
TR/ATRAPS.A.1850
7.11.176.28

avast!
Win32:Dropper-gen [Drp]
140929-0

AVG
Found Win32/DH{fyB8ZA}
2014.0.4025

Bitdefender
Gen:Variant.Kazy.6550
1.0.20.1375

Dr.Web
Trojan.Asterope.5
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Kazy.6550
14.10.02

ESET NOD32
Win32/Agent.VPS trojan
7.0.302.0

Fortinet FortiGate
W32/Agent.VPS!tr
10/2/2014

F-Prot
W32/new-malware
4.6.5.141

F-Secure
Gen:Variant.Kazy.6550
11.2014-02-10_5

G Data
Gen:Variant.Kazy.6550
14.10.24

IKARUS anti.virus
Trojan.Win32.Agent
t3scan.1.7.8.0

K7 AntiVirus
Trojan
13.183.13550

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.3164

McAfee
Dropper-FLT!2365DE841721
5600.6990

Microsoft Security Essentials
Threat.Undefined
1.185.1828.0

MicroWorld eScan
Gen:Variant.Kazy.6550
15.0.0.825

NANO AntiVirus
Trojan.Win32.ATRAPS.dfrrag
0.28.2.62440

Norman
Malware
11.20141002

Panda Antivirus
Trj/Genetic.gen
14.10.02.04

Qihoo 360 Security
Win32/Trojan.Dropper.c9f
1.0.0.1015

Rising Antivirus
PE:Trojan.Win32.Generic.175AAC8F!391818383
23.00.65.14930

Sophos
Troj/Agent-AIGC
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Necurs
10325

Trend Micro House Call
TROJ_GEN.R028C0DIU14
7.2.275

Trend Micro
TROJ_GEN.R028C0DIU14
10.465.02

VIPRE Antivirus
Threat.4150696
33520

File size:
99.5 KB (101,888 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\users\{user}\appdata\roaming\microsoft\windows\ieupdate\icsunattend.exe

File PE Metadata
Compilation timestamp:
9/25/2004 11:18:31 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

CTPH (ssdeep):
3072:+zouF2jXqS27b/oQ6YIFSBrEGRCfacqqxmTTg2KJw:+LcqSQMyIFSBrEG0facuTuJ

Entry address:
0x5689

Entry point:
55, 8B, EC, 83, E4, F8, 81, EC, 0C, 08, 00, 00, 53, 56, 57, E8, 03, BF, FF, FF, E8, 7E, F9, FF, FF, 33, F6, 84, C0, 0F, 84, FC, 02, 00, 00, 8D, 84, 24, 88, 06, 00, 00, 50, 68, 02, 02, 00, 00, FF, 15, 34, 53, 41, 00, 85, C0, 0F, 85, E1, 02, 00, 00, 8D, 44, 24, 14, 50, 6A, 0A, 89, 74, 24, 18, FF, 15, E8, 50, 41, 00, 50, FF, 15, 0C, 50, 41, 00, 85, C0, 74, 23, 8D, 44, 24, 10, 50, 6A, 01, 6A, 02, 56, 68, 00, 00, 00, 02, FF, 74, 24, 28, FF, 15, 04, 50, 41, 00, FF, 74, 24, 14, E8, C2, 06, 00, 00, 59, 56, FF, 74...
 
[+]

Developed / compiled with:
Microsoft Visual C++

Code size:
78.5 KB (80,384 bytes)

Scrnsave
Name:
icsunattend.exe


Remove icsunattend.exe - Powered by Reason Core Security