LabsIPOPservicesReport.EXE

patientBillwise

BTS

The executable LabsIPOPservicesReport.EXE has been detected as malware by 3 anti-virus scanners.
Publisher:
BTS

Product:
patientBillwise

Version:
1.00

MD5:
4252df533ffae9320c61b22cd99fcb30

SHA-1:
93a513b6538f06056fc0f6bf8f24285f2e915fb8

SHA-256:
20a3cab95b06e03142fea45874b6b5933aec2dadc78daff15a6768ed0919d9d1

Scanner detections:
3 / 68

Status:
Malware

Analysis date:
4/25/2024 6:12:18 PM UTC  (today)

Scan engine
Detection
Engine version

Avira AntiVirus
TR/Dropper.Gen
7.11.30.172

avast!
Win32:WrongInf-F [Susp]
2014.9-150401

NANO AntiVirus
Virus.Win32.Virut-Gen.bwpxnc
0.30.8.659

File size:
1.5 MB (1,531,904 bytes)

Product version:
1.00

Original file name:
LabsIPOPservicesReport.EXE

File type:
Executable application (Win32 EXE)

Language:
English (United States)

Common path:
C:\Program Files\bts\hms\labsipopservicesreport.exe

File PE Metadata
Compilation timestamp:
5/25/2055 11:40:40 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
6.0

CTPH (ssdeep):
384:NY7Uz6R8z5wXG5kfZBacNSAtzWWqm5Un26ygkq8lkCejCsHPvjyY7kLs34sj+NeB:hJz5lUPD9v6ygkqokCejNH4wFjGC

Entry address:
0x1468

Entry point:
68, 84, 1A, 40, 00, E8, F0, FF, FF, FF, 00, 00, 00, 00, 00, 00, 30, 00, 00, 00, 40, 00, 00, 00, 00, 00, 00, 00, 48, 40, AB, 60, 24, ED, 3C, 40, 9B, 38, ED, 20, C2, 1D, 72, 73, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 32, 2D, 41, 39, 46, 43, 70, 61, 74, 69, 65, 6E, 74, 62, 69, 6C, 6C, 77, 69, 73, 65, 00, 00, 00, 00, 00, FF, CC, 31, 00, 0D, 27, 9A, 68, 0F, FB, 1D, 14, 46, 97, BF, ED, A8, 63, E8, 7D, 1D, CE, 45, 9E, 86, 03, 71, BF, 48, 83, C6, 96, 97, 83, C4, 31, CE, 3A, 4F, AD, 33, 99, 66, CF, 11, B7, 0C, 00...
 
[+]

Entropy:
0.2173

Developed / compiled with:
Microsoft Visual Basic v5.0

Code size:
28 KB (28,672 bytes)

Remove LabsIPOPservicesReport.EXE - Powered by Reason Core Security