odutlavu.exe

odutlavu

The application odutlavu.exe has been detected as a potentially unwanted program by 16 anti-malware scanners. It runs as a scheduled task under the Windows Task Scheduler named Eiuwuhajed triggered to automatically run when the computer boots. According to AVG, this software downloads additional adware offers during setup.
Product:
odutlavu

Version:
1.0.0.0

MD5:
18cb030e16bc93c9d97bd79ad5582b38

SHA-1:
9c2beef5b9ef057052e3d452330664b60e07e53d

SHA-256:
e8aff1ae5dd6c3923ac8c128c36c75dbfd7cca005a1a257f2d514c224d3ad2dd

Scanner detections:
16 / 68

Status:
Potentially unwanted

Analysis date:
4/26/2024 11:38:52 PM UTC  (a few moments ago)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Adware.Kazy.618104
5729816

AhnLab V3 Security
Adware/Win32.PullUpdate
2015.09.06

Avira AntiVirus
ADWARE/PullUpdate.Gen7
8.3.2.2

Arcabit
Trojan.Adware.Kazy.D96E78
1.0.0.425

avast!
Win32:Adware-gen [Adw]
150828-0

AVG
Downloader
2016.0.2995

Bitdefender
Gen:Variant.Adware.Kazy.618104
1.0.20.1240

Bkav FE
HW32.Packed
1.3.0.7133

Emsisoft Anti-Malware
Gen:Variant.Adware.Kazy.618104
10.0.0.5366

ESET NOD32
MSIL/Adware.PullUpdate.P application
7.0.302.0

F-Prot
W32/S-05aa94e4
v6.4.7.1.166

F-Secure
Gen:Variant.Adware.Kazy
5.14.151

G Data
Gen:Variant.Adware.Kazy.618104
15.9.25

IKARUS anti.virus
PUA.Downloader
t3scan.1.9.5.0

MicroWorld eScan
Gen:Variant.Adware.Kazy.618104
16.0.0.744

Norman
Gen:Variant.Adware.Kazy.618104
04.08.2015 10:30:46

File size:
156.5 KB (160,256 bytes)

Product version:
1.0.0.0

Copyright:
Copyright © 2015

Original file name:
odutlavu.exe

File type:
Executable application (Win32 EXE)

Language:
Language Neutral

Common path:
C:\ProgramData\eiuwuhajed\1.0.5.1\odutlavu.exe

File PE Metadata
Compilation timestamp:
9/3/2015 6:53:30 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
11.0

.NET CLR dependent:
Yes

CTPH (ssdeep):
3072:iK8TBCzIJigWXqAgPP9jXROSoGMiM5DlKlDwnra56RSyB6HU9TXSGAZ/C:iXTIlwJ8SoGE5DlKlEra56RSyB6+m

Entry address:
0x287EE

Entry point:
FF, 25, 00, 20, 40, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 02, 00, 10, 00, 00, 00, 20, 00, 00, 80, 18, 00, 00, 00, 38, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 50, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 01, 00, 00, 00, 68, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 00, 01, 00, 00, 00, 00, 00, 80, 00, 00, 00, 00, 00, 00, 00, 00, 00...
 
[+]

Entropy:
7.6610

Developed / compiled with:
Microsoft Visual C# / Basic .NET

Code size:
154 KB (157,696 bytes)

Scheduled Task
Task name:
Eiuwuhajed

Trigger:
Boot (Runs on boot)


Remove odutlavu.exe - Powered by Reason Core Security