ilcclust.exe

The executable ilcclust.exe has been detected as malware by 18 anti-virus scanners.
MD5:
4b1e01d75dbd9b15e9a490ca59645592

SHA-1:
6f883c53e04e36b0f82b8739e1200782a6c60191

SHA-256:
311a713a069805bd908ea46dca38916d26d10ca9ab737e51ac705a268daafb4b

Scanner detections:
18 / 68

Status:
Malware

Analysis date:
4/24/2024 9:40:32 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Trojan.Heur.PT.guW@bmd6C3dO
623

Avira AntiVirus
TR/Agent.111104.139
7.11.219.10

avast!
Win32:Malware-gen
2014.9-150523

AVG
Agent5
2016.0.3101

Bitdefender
Gen:Trojan.Heur.PT.guW@bmd6C3dO
1.0.20.715

Emsisoft Anti-Malware
Gen:Trojan.Heur.PT.guW@bmd6C3dO
8.15.05.23.10

ESET NOD32
Win32/Agent.WLY (variant)
9.11357

Fortinet FortiGate
W32/Agent.WLY!tr
5/23/2015

F-Secure
Gen:Trojan.Heur.PT.guW@bmd6C3dO
11.2015-23-05_7

G Data
Gen:Trojan.Heur.PT.guW@bmd6C3dO
15.5.25

K7 AntiVirus
Trojan
13.202.15340

Kaspersky
HEUR:Trojan-Downloader.Win32.Generic
14.0.0.1998

Malwarebytes
Trojan.Downloader.OG
v2015.05.23.10

MicroWorld eScan
Gen:Trojan.Heur.PT.guW@bmd6C3dO
16.0.0.429

Norman
Downloader
11.20150523

Panda Antivirus
Trj/Genetic.gen
15.05.23.10

Vba32 AntiVirus
suspected of Trojan.Downloader.gen
3.12.26.3

VIPRE Antivirus
Trojan.Win32.Generic
38652

File size:
108.5 KB (111,104 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\windows\ilcclust.exe

File PE Metadata
Compilation timestamp:
3/22/2015 2:09:05 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
1536:0xDHd/m7v5N8QjytDImNBB8/X5zExtnuvvwCidBqonwf5VvAimk5iwK:0xJmDRqVEhtZPrAU5i

Entry address:
0x5B69

Entry point:
E8, C0, 7E, 00, 00, E9, 78, FE, FF, FF, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, CC, 8B, 4C, 24, 04, F7, C1, 03, 00, 00, 00, 74, 24, 8A, 01, 83, C1, 01, 84, C0, 74, 4E, F7, C1, 03, 00, 00, 00, 75, EF, 05, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8D, A4, 24, 00, 00, 00, 00, 8B, 01, BA, FF, FE, FE, 7E, 03, D0, 83, F0, FF, 33, C2, 83, C1, 04, A9, 00, 01, 01, 81, 74, E8, 8B, 41, FC, 84, C0, 74, 32, 84, E4, 74, 24, A9, 00, 00, FF, 00, 74, 13, A9, 00, 00, 00, FF, 74, 02, EB, CD, 8D, 41, FF, 8B, 4C, 24...
 
[+]

Entropy:
6.3645

Code size:
77.5 KB (79,360 bytes)

Remove ilcclust.exe - Powered by Reason Core Security