jyb126a.tmp

The file jyb126a.tmp has been detected as malware by 29 anti-virus scanners.
MD5:
3aca949377177ab63657fcafbcfb524d

SHA-1:
620ee46e3cbbd2db15f42937c99d285540a9b6fa

SHA-256:
1db74680983ecbcaa4904ac1faa70c0d1fb9269c021d315334883379b0c0aa6f

Scanner detections:
29 / 68

Status:
Malware

Analysis date:
4/25/2024 1:07:27 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.110031
835

AegisLab AV Signature
Troj.Downloader.W32.Mufanom
2.1.4+

Agnitum Outpost
Trojan.Kryptik
7.1.1

AhnLab V3 Security
Trojan/Win32.Zbot
2014.10.23

Avira AntiVirus
TR/Injector.113152
7.11.180.154

avast!
Win32:Malware-gen
141003-0

AVG
Trojan horse Crypt3.AUOQ
2014.0.4040

Bitdefender
Gen:Variant.Zusy.110031
1.0.20.1475

Bkav FE
W32.NoktislatLTG.Trojan
1.3.0.4959

Dr.Web
Trojan.DownLoad.64914
9.0.1.05190

Emsisoft Anti-Malware
Gen:Variant.Zusy.110031
8.14.10.22.05

ESET NOD32
Win32/Kryptik.CMXG (variant)
8.10604

Fortinet FortiGate
W32/Cutwail.CMXG!tr
10/22/2014

F-Secure
Gen:Variant.Zusy.110031
11.2014-22-10_4

G Data
Gen:Variant.Zusy.110031
14.10.24

IKARUS anti.virus
Trojan.Win32.Cutwail
t3scan.1.7.8.0

Kaspersky
Trojan.Win32.Cutwail
14.0.0.3061

Malwarebytes
Trojan.Agent.ED
v2014.10.22.05

McAfee
RDN/Downloader.a!to
5600.6969

Microsoft Security Essentials
Threat.Undefined
1.187.228.0

MicroWorld eScan
Gen:Variant.Zusy.110031
15.0.0.885

NANO AntiVirus
Trojan.Win32.Cutwail.dgkstd
0.28.2.62841

Qihoo 360 Security
Win32/Trojan.c34
1.0.0.1015

Sophos
Mal/Generic-S
4.98

SUPERAntiSpyware
Trojan.Agent/Gen-Zusy
10284

Total Defense
Win32/Cutwail.fHBHfYD
37.0.11243

Trend Micro House Call
TROJ_GEN.R028C0DJJ14
7.2.295

Trend Micro
TROJ_GEN.R028C0DJJ14
10.465.22

VIPRE Antivirus
Threat.4150696
33706

File size:
110.5 KB (113,152 bytes)

Language:
English (United States)

Common path:
C:\users\{user}\appdata\local\temp\jyb126a.tmp

File PE Metadata
Compilation timestamp:
10/7/2014 10:35:34 AM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
1536:D2L0iLl7wFOnOr/Z6X7yemO8FQHLNgaCdb5sh33x:D20i57M24/Z6LyeV8KJCdbcH

Entry address:
0x10A3D

Entry point:
E8, 14, CA, FF, FF, E9, 32, 25, 00, 00, 8B, FF, 55, 8B, EC, 8B, 45, 08, 56, 8B, F1, C6, 46, 0C, 00, 85, C0, 75, 63, E8, A1, 05, FF, FF, 89, 46, 08, 8B, 48, 6C, 89, 0E, 8B, 48, 68, 89, 4E, 04, 8B, 0E, 3B, 0D, 30, AB, 41, 00, 74, 12, 8B, 0D, 50, AB, 41, 00, 85, 48, 70, 75, 07, E8, 66, 39, FF, FF, 89, 06, 8B, 46, 04, 3B, 05, F0, A7, 41, 00, 74, 16, 8B, 46, 08, 8B, 0D, 50, AB, 41, 00, 85, 48, 70, 75, 08, E8, F4, 09, 00, 00, 89, 46, 04, 8B, 46, 08, F6, 40, 70, 02, 75, 14, 83, 48, 70, 02, C6, 46, 0C, 01, EB, 0A...
 
[+]

Entropy:
6.3667

Code size:
77.5 KB (79,360 bytes)

Remove jyb126a.tmp - Powered by Reason Core Security