key.exe

The executable key.exe has been detected as malware by 31 anti-virus scanners.
MD5:
f73dd53d2bb47415268117434e018af8

SHA-1:
e6ccbbcf8a6c7aa9fb5f6e23ab8af98e67879bbe

SHA-256:
4a95cea8ffdc79734ac35d82d97637df50a6f2188fc0f894bd9c0c092f36418a

Scanner detections:
31 / 68

Status:
Malware

Analysis date:
4/26/2024 4:07:48 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Symmi.38435
826

Agnitum Outpost
Trojan.CoinMiner
7.1.1

Avira AntiVirus
TR/Symmi.38435.241
7.11.152.220

avast!
Win32:Agent-ASQC [Trj]
2014.9-141101

AVG
Generic_r
2015.0.3304

Baidu Antivirus
Trojan.Win32.BitMiner
4.0.3.14111

Bitdefender
Gen:Variant.Symmi.38435
1.0.20.1525

Bkav FE
HW32.CDB
1.3.0.4959

Comodo Security
UnclassifiedMalware
18426

Dr.Web
Trojan.Starter.3035
9.0.1.0305

Emsisoft Anti-Malware
Gen:Variant.Symmi.38435
8.14.11.01.02

ESET NOD32
Win32/CoinMiner.PB (variant)
8.9889

Fortinet FortiGate
W32/CoinMiner.PB!tr
11/1/2014

F-Secure
Gen:Variant.Symmi.38435
11.2014-01-11_7

G Data
Gen:Variant.Symmi.38435
14.11.24

IKARUS anti.virus
Trojan.Win32.BitMiner
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.178.12292

Kaspersky
Trojan.Win32.BitMiner
14.0.0.3015

Malwarebytes
Trojan.Miner.RCD
v2014.11.01.02

McAfee
Artemis!F73DD53D2BB4
5600.6960

Microsoft Security Essentials
Trojan:Win32/Wiszr.B
1.10600

MicroWorld eScan
Gen:Variant.Symmi.38435
15.0.0.915

NANO AntiVirus
Trojan.Win32.BitMiner.cxcqvn
0.28.0.60100

Norman
Suspicious_Gen5.AOPCM
11.20141101

Panda Antivirus
Trj/Genetic.gen
14.11.01.02

Qihoo 360 Security
HEUR/Malware.QVM10.Gen
1.0.0.1015

Quick Heal
Trojan.BitMin.g5
11.14.14.00

Sophos
Mal/Bitcoin-A
4.98

Trend Micro
TROJ_SPNV.01DR14
10.465.01

Vba32 AntiVirus
Trojan.BitMiner
3.12.26.0

VIPRE Antivirus
Trojan.Win32.Generic
29910

File size:
1.1 MB (1,114,112 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\vs revo group\revo uninstaller pro\key.exe

File PE Metadata
Compilation timestamp:
4/15/2014 11:38:53 PM

OS version:
5.1

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
10.0

CTPH (ssdeep):
24576:lNA/Gm/2Q/o3q3Zm71JVn8GUheJ6LOtbTSCeFtHkGdAry:cv/ZoKmDFoheJ6qx7eFtHkG

Entry address:
0x6E95

Entry point:
E8, 77, 3F, 00, 00, E9, 89, FE, FF, FF, 3B, 0D, 3C, C1, 50, 00, 75, 02, F3, C3, E9, FE, 3F, 00, 00, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 3C, C1, 50, 00, 33, C5, 50, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00, 00, C3, 50, 64, FF, 35, 00, 00, 00, 00, 8D, 44, 24, 0C, 2B, 64, 24, 0C, 53, 56, 57, 89, 28, 8B, E8, A1, 3C, C1, 50, 00, 33, C5, 50, 89, 65, F0, FF, 75, FC, C7, 45, FC, FF, FF, FF, FF, 8D, 45, F4, 64, A3, 00, 00, 00...
 
[+]

Code size:
62 KB (63,488 bytes)

Remove key.exe - Powered by Reason Core Security