patch-2.exe

The executable patch-2.exe has been detected as malware by 33 anti-virus scanners. This file is typically installed with the program SWiSH Max4 by SWiSHzone.com.
MD5:
98958e1c8226bceb2eeb92a4cedd837c

SHA-1:
c315e0471ccef228490622136f9d18e6e1a5b731

SHA-256:
e20ab453223668f230a9b675373c6757d1beb9a5fb41ae1f0f8f381bafc9577f

Scanner detections:
33 / 68

Status:
Malware

Analysis date:
4/24/2024 6:19:44 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Trojan.Generic.KDV.303011
926

Agnitum Outpost
Packed/Upack
7.1.1

AhnLab V3 Security
Packed/Upack
2014.07.11

Avira AntiVirus
TR/Obfuscated.275604C
7.11.159.226

AVG
HackTool
2015.0.3404

Baidu Antivirus
Hacktool.Win32.Obfuscator
4.0.3.14723

Bitdefender
Trojan.Generic.KDV.303011
1.0.20.1020

Bkav FE
W32.Clodc9e.Trojan
1.3.0.4959

Comodo Security
Packed.Win32.Klone.~KMG
18831

Dr.Web
Tool.Siggen.6289
9.0.1.0204

Emsisoft Anti-Malware
Trojan.Generic.KDV.303011
8.14.07.23.12

Fortinet FortiGate
W32/Crypt.AYP!tr
7/23/2014

F-Prot
W32/Heuristic-210
v6.4.7.1.166

F-Secure
Trojan.Generic.KDV.303011
11.2014-23-07_4

G Data
Trojan.Generic.KDV.303011
14.7.24

IKARUS anti.virus
Trojan.Crypt
t3scan.1.6.1.0

K7 AntiVirus
Trojan
13.180.12683

Malwarebytes
Trojan.KillAV
v2014.07.23.12

McAfee
Artemis!98958E1C8226
5600.7060

Microsoft Security Essentials
VirTool:Win32/Obfuscator.C
1.10701

MicroWorld eScan
Trojan.Generic.KDV.303011
15.0.0.612

NANO AntiVirus
Trojan.Win32.Obfuscate.ctdhyd
0.28.0.60698

Norman
Packed_Upack.H
11.20140723

nProtect
Trojan/W32.Agent.275604.B
14.07.09.03

Panda Antivirus
Trj/CI.A
14.07.23.12

Qihoo 360 Security
Win32/Trojan.18f
1.0.0.1015

Quick Heal
W32.Viking.gen
7.14.14.00

Rising Antivirus
PE:Trojan.Win32.Generic.125E567A!308172410
23.00.65.14721

Trend Micro House Call
TROJ_GEN.F0C6C0LBD14
7.2.204

Trend Micro
TROJ_GEN.F0C6C0LBD14
10.465.23

VIPRE Antivirus
Packed.Win32.Upack
31148

ViRobot
Packed.Win32.UPack
2011.4.7.4223

Zillya! Antivirus
Tool.Crypt.Win32.1862
2.0.0.1853

File size:
269.1 KB (275,604 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\swish max4\patch-2.exe

File PE Metadata
OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
0.54

CTPH (ssdeep):
6144:eYjhWGCMKVmX3dpJy2vQhHz82teWLiU/3/b3cPjInULdOta3:eOWGCMKVmXNvziHz82Q+/72ZdOta

Entry address:
0x11FFA0

Entry point:
60, E8, 09, 00, 00, 00, 1E, FE, 11, 00, E9, 06, 02, 00, 00, 33, C9, 5E, 87, 0E, E3, F4, 2B, F1, 8B, DE, AD, 2B, D8, AD, 03, C3, 50, 97, AD, 91, F3, A5, 5E, AD, 56, 91, 01, 1E, AD, E2, FB, AD, 8D, 6E, 10, 01, 5D, 00, 8D, 7D, 1C, B5, 1C, F3, AB, 5E, AD, 53, 50, 51, 97, 58, 8D, 54, 85, 5C, FF, 16, 72, 57, 2C, 03, 73, 02, B0, 00, 3C, 07, 72, 02, 2C, 03, 50, 0F, B6, 5F, FF, C1, E3, 03, B3, 00, 8D, 1C, 5B, 8D, 9C, 9D, 0C, 10, 00, 00, B0, 01, E3, 29, 8B, D7, 2B, 55, 0C, 8A, 2A, 33, D2, 84, E9, 0F, 95, C6, 52, FE...
 
[+]

Entropy:
7.9801

Packer / compiler:
WinUpack v0.39 final (relocated image base)

Code size:
708 KB (724,992 bytes)

The file patch-2.exe has been discovered within the following program.

SWiSH Max4  by SWiSHzone.com
www.SWiSHzone.com
About 6% of users remove it
 
Powered by Should I Remove It?

Remove patch-2.exe - Powered by Reason Core Security