lgzovopie.exe

Complex

Fed TV burn - www.Complex.com

The executable lgzovopie.exe, “Curious Eddy hollow percent somebody Andy” has been detected as malware by 28 anti-virus scanners.
Publisher:
Fed TV burn - www.Complex.com

Product:
Complex

Description:
Curious Eddy hollow percent somebody Andy

Version:
6.0.0.4

MD5:
119e2ddf137003a5df17e96e6a5868b0

SHA-1:
1925e1ae75cc1777f91161712dd0aca0a2b1060d

Scanner detections:
28 / 68

Status:
Malware

Analysis date:
4/26/2024 4:39:00 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.86767
1023

Agnitum Outpost
Trojan.Yakes
7.1.1

AhnLab V3 Security
Trojan/Win32.Ransomlock
14.04.18

Avira AntiVirus
TR/Crypt.Xpack.62808
7.11.140.88

avast!
Win32:Malware-gen
2014.9-140418

AVG
Inject2
2015.0.3501

Baidu Antivirus
Trojan.Win32.Yakes
4.0.3.14418

Bitdefender
Gen:Variant.Zusy.86767
1.0.20.540

Bkav FE
HW32.CDB
1.3.0.4959

Comodo Security
UnclassifiedMalware
18024

Dr.Web
Trojan.Betabot.3
9.0.1.0108

Emsisoft Anti-Malware
Gen:Variant.Zusy.86767
8.14.04.18.05

ESET NOD32
Win32/Injector.BAQF (variant)
8.9616

Fortinet FortiGate
W32/Yakes.BAIW!tr
4/18/2014

F-Secure
Gen:Variant.Zusy.86767
11.2014-18-04_6

G Data
Gen:Variant.Zusy.86767
14.4.24

Kaspersky
Trojan.Win32.Yakes
14.0.0.3999

Malwarebytes
Trojan.Ransom
v2014.04.18.05

McAfee
W32/Worm-FTE!Gamarue
5600.7157

Microsoft Security Essentials
Trojan:Win32/Dynamer!ac
1.10401

MicroWorld eScan
Gen:Variant.Zusy.86767
15.0.0.324

Norman
Troj_Generic.TEKJA
11.20140418

Panda Antivirus
Generic Malware
14.04.18.05

Qihoo 360 Security
Win32/Trojan.Multi.daf
1.0.0.1015

Sophos
Mal/Inject-EQ
4.98

Trend Micro House Call
TROJ_GEN.R0CBC0DCR14
7.2.108

Trend Micro
TROJ_GEN.R0CBC0DCR14
10.465.18

VIPRE Antivirus
Trojan.Win32.Generic
27888

File size:
304.5 KB (311,808 bytes)

Product version:
7.0

Copyright:
Copyright (C) Complex 2002-2013

File type:
Executable application (Win32 EXE)

Language:
Arabic (Saudi Arabia)

Common path:
C:\Program Files\common files\xq4e5dfm40\lgzovopie.exe

File PE Metadata
Compilation timestamp:
3/23/2014 6:07:36 PM

OS version:
5.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
9.0

CTPH (ssdeep):
6144:5V8YpW5DkKWGTkG40+jbtes5Hm/7xy1mrM80/y6e:5uYpeDkkTZybQAHm/dy0rM8s2

Entry address:
0x94CE

Entry point:
E8, DE, 3D, 00, 00, E9, 89, FE, FF, FF, 8B, FF, 55, 8B, EC, 8B, 45, 08, 33, C9, 3B, 04, CD, B8, 42, 41, 00, 74, 13, 41, 83, F9, 2D, 72, F1, 8D, 48, ED, 83, F9, 11, 77, 0E, 6A, 0D, 58, 5D, C3, 8B, 04, CD, BC, 42, 41, 00, 5D, C3, 05, 44, FF, FF, FF, 6A, 0E, 59, 3B, C8, 1B, C0, 23, C1, 83, C0, 08, 5D, C3, E8, 57, 20, 00, 00, 85, C0, 75, 06, B8, 20, 44, 41, 00, C3, 83, C0, 08, C3, E8, 44, 20, 00, 00, 85, C0, 75, 06, B8, 24, 44, 41, 00, C3, 83, C0, 0C, C3, 8B, FF, 55, 8B, EC, 56, E8, E2, FF, FF, FF, 8B, 4D, 08...
 
[+]

Code size:
61.5 KB (62,976 bytes)

Remove lgzovopie.exe - Powered by Reason Core Security