idtemplates.exe

The executable idtemplates.exe has been detected as malware by 30 anti-virus scanners.
MD5:
cc2a7db6282902eaf5556313c3578419

SHA-1:
3629e87dc3c6dd9d28f65a1c38d571294e3fda62

SHA-256:
a5aaa0b44d8fdeaaf1bbf59c1a11e844e098534faf4f9f92ca95dafa0bbdfd49

Scanner detections:
30 / 68

Status:
Malware

Analysis date:
4/29/2024 1:48:51 PM UTC  (today)

Scan engine
Detection
Engine version

AhnLab V3 Security
Win32/Mabezat
2010.08.11

Avira AntiVirus
Worm/Mabezat.B.137
8.2.4.34

avast!
Win32:Mabezat-AM
2014.9-170313

AVG
Worm/Mabezat.A
2018.0.2440

Bitdefender
Worm.Generic.256883
1.0.20.360

Clam AntiVirus
W32.Mabezat-2
0.98/170.3

Comodo Security
Worm.Win32.Mabezat.b
5713

Dr.Web
Win32.HLLW.Tazebama
9.0.1.072

Emsisoft Anti-Malware
Worm.Win32.Mabezat!IK
8.17.03.13.11

ESET NOD32
Win32/Mabezat
11.5358

Fortinet FortiGate
W32/Mabezat.B
3/13/2017

F-Prot
W32/Mabezat.A
v6.4.6.1.107

F-Secure
Worm.Generic.256883
11.2017-13-03_2

G Data
Worm.Generic.256883
17.3.21

IKARUS anti.virus
Worm.Win32.Mabezat
t3scan.1.1.88.0

Kaspersky
Worm.Win32.Mabezat
14.0.0.-1305

McAfee
W32/Mabezat
5600.6096

Microsoft Security Essentials
Virus:Win32/Mabezat.B
1.163.1557.0

Norman
Mabezat.B
11.20170313

nProtect
Worm.Generic.256883
10.08.11.02

Panda Antivirus
W32/Mabezat.C.worm
17.03.13.11

Prevx
High Risk Cloaked Malware
3.0

Quick Heal
W32.Mabezat.Dr
3.17.11.00

Rising Antivirus
Worm.Win32.Autorun.gcy
23.00.65.17311

Sophos
W32/Mabezat-B
4.56

SUPERAntiSpyware
Trojan.Agent/Gen-VirutZ
8537

Trend Micro House Call
PE_MABEZAT.B-O
7.2.72

Trend Micro
PE_MABEZAT.B-O
10.465.13

Vba32 AntiVirus
Worm.Win32.Mabezat.b
3.12.14.0

ViRobot
Worm.Win32.Mabezat.154751
2010.8.9.3978

File size:
151.7 KB (155,331 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\adobe\acrobat reader dc\reader\idtemplates\idtemplates.exe

File PE Metadata
Compilation timestamp:
10/29/2007 9:17:05 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

Entry address:
0x1000

Entry point:
53, 83, EC, 44, B8, 23, 10, 40, 00, B9, 00, 00, 00, 00, 8A, 18, 80, C3, 43, 88, 18, 83, C0, 01, 83, C1, 01, 81, F9, 37, D1, 00, 00, 75, EB, 75, BD, BD, FE, BD, 76, BD, BD, BD, BD, 47, D5, 3D, 80, F6, 45, D5, 40, 7E, BE, 40, 7D, BE, 3E, B6, BC, E4, BD, BD, 32, A8, 75, BD, CD, FD, BD, 78, 80, 80, 80, 80, 46, D5, 75, 92, 97, FD, BD, 40, 7D, BD, 40, 81, 01, BC, 8D, 80, 18, 80, A5, C2, BD, BD, BD, A6, C7, BD, BD, BD, 76, 95, E4, FE, BD, A6, 28, 72, BD, BD, 25, 3B, CD, FD, BD, A5, EC, 86, BD, BD, 16, 80, 76, 95...
 
[+]

Entropy:
7.0535

Code size:
52.5 KB (53,760 bytes)

Remove idtemplates.exe - Powered by Reason Core Security