New Folder.exe

PUpdater

The executable New Folder.exe has been detected as malware by 31 anti-virus scanners.
Product:
PUpdater

Version:
1.0.0.0

MD5:
312ae64aaf4bb1aac685a25190b1f81b

SHA-1:
3a066a1c1237b0d098c759227a2be7cdab206639

SHA-256:
907589b19263d9c5bde2f88260d385db7acb100157efdf85e01b3f881719e42d

Scanner detections:
31 / 68

Status:
Malware

Analysis date:
4/23/2024 5:50:00 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Worm.Generic.444278
857

Agnitum Outpost
Worm.Agent
7.1.1

AhnLab V3 Security
Trojan/Win32.Jorik
2013.12.16

Avira AntiVirus
TR/Dropper.MSIL.Gen
7.11.119.222

avast!
Win32:Malware-gen
2014.9-140722

AVG
Inject
2015.0.3406

Baidu Antivirus
Trojan.Win32.Generic
4.0.3.14930

Bitdefender
Worm.Generic.444278
1.0.20.1365

Comodo Security
UnclassifiedMalware
17875

Emsisoft Anti-Malware
Worm.Generic.444278
8.14.09.30.04

ESET NOD32
MSIL/Autorun.Agent.ED
8.9491

Fortinet FortiGate
W32/Agent.AEP!worm
7/22/2014

F-Secure
Worm.Generic.444278
11.2014-30-09_3

G Data
Worm.Generic.444278
14.9.24

IKARUS anti.virus
Trojan.Inject
t3scan.2.2.29

K7 AntiVirus
Trojan
13.176.11311

Kaspersky
Worm.MSIL.Agent
14.0.0.3524

McAfee
Artemis!312AE64AAF4B
5600.7062

Microsoft Security Essentials
Worm:MSIL/Waghar.A
1.163.1557.0

MicroWorld eScan
Worm.Generic.444278
15.0.0.819

NANO AntiVirus
Trojan.Win32.Agent.cqkqon
0.28.0.58101

Norman
Agent.AKXMS
11.20140722

nProtect
Worm.Generic.444278
14.03.02.01

Panda Antivirus
Generic Malware
14.07.22.05

Qihoo 360 Security
Win32/Trojan.Multi.daf
1.0.0.1015

Reason Heuristics
Threat.Win.Reputation.IMP
14.9.30.16

Sophos
Mal/Generic-S
4.96

Trend Micro House Call
TROJ_GEN.R08NC0DLE13
7.2.203

Trend Micro
TROJ_GEN.R08NC0DLE13
10.465.22

Vba32 AntiVirus
Worm.MSIL.Agent
3.12.24.3

VIPRE Antivirus
Trojan.Win32.Generic
27022

File size:
357 KB (365,568 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2013

Original file name:
New Folder.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\users\{user}\appdata\roaming\proxifier\new folder.exe

File PE Metadata
Compilation timestamp:
2/4/2013 3:48:24 PM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:LwaA182Yr+L4f2eIlNMg3BJpczHDpLFk7Er65Zwew/drRjIYCJW3JoiS1P8gBgvV:P2Yr+L4fFITHKzHdLFoTE1rRjIRY

Entry address:
0x3B7E

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
4.3632

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
7 KB (7,168 bytes)

Remove New Folder.exe - Powered by Reason Core Security