patch-flashfxp.4.1.0.build.15xx-dcore.exe

The executable patch-flashfxp.4.1.0.build.15xx-dcore.exe has been detected as malware by 54 anti-virus scanners.
MD5:
6f1e57e6e4ee4be423c9564f7aad3754

SHA-1:
374e8540476d2d85dbbcdb12b82bde6d92b7ace5

SHA-256:
f57b13bd033e6f85bd084ba1dcd257180d0148d4c7b21eeee397520740ac09c0

Scanner detections:
54 / 68

Status:
Malware

Analysis date:
4/25/2024 11:27:55 AM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Symmi.29992
920

Agnitum Outpost
Trojan.PWS.OnLineGames
7.1.1

AhnLab V3 Security
Trojan/Win32.OnlineGameHack
2014.03.13

Avira AntiVirus
TR/Gendal.34816.3
7.11.136.204

avast!
Win32:Malware-gen
2014.9-140730

Baidu Antivirus
Trojan.Win32.Agent
4.0.3.14730

Bitdefender
Gen:Variant.Symmi.29992
1.0.20.1055

Bkav FE
W32.Clod8b1.Trojan
1.3.0.4959

Comodo Security
UnclassifiedMalware
17922

Dr.Web
Trojan.MulDrop2.14741
9.0.1.0211

Emsisoft Anti-Malware
Gen:Variant.Symmi.29992
8.14.07.30.02

ESET NOD32
Win32/HackTool.Patcher (variant)
8.9537

Fortinet FortiGate
W32/Onlinegames.XURS!tr
7/30/2014

F-Secure
Gen:Variant.Symmi.29992
11.2014-30-07_4

G Data
Gen:Variant.Symmi.29992
14.7.24

IKARUS anti.virus
Trojan.Win32.VBKrypt
t3scan.2.2.29

Malwarebytes
PUP.Hacktool.Patcher
v2014.07.30.02

McAfee
Artemis!6F1E57E6E4EE
5600.7054

MicroWorld eScan
Gen:Variant.Symmi.29992
15.0.0.633

NANO AntiVirus
Trojan.Win32.MulDrop2.crocn
0.28.0.58394

Norman
keygen.X
11.20140730

nProtect
Trojan/W32.Small.34816.EN
14.03.13.01

Qihoo 360 Security
Win32/Trojan.77d
1.0.0.1015

Rising Antivirus
PE:Trojan.Win32.Generic.1286958E!310809998
23.00.65.14728

Sophos
Mal/Agent-ACR
4.98

Trend Micro House Call
TROJ_SPNR.08FE11
7.2.211

Trend Micro
TROJ_SPNR.08FE11
10.465.30

VIPRE Antivirus
Trojan.Win32.Generic
27326

File size:
34 KB (34,816 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\flashfxp\patch-flashfxp.4.1.0.build.15xx-dcore.exe

File PE Metadata
Compilation timestamp:
3/20/2011 6:53:18 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
768:TY46QAgs/FrdllkgYMVsQcdIBiDKf8JjiDKyFn17:TYztFrdlygRmQaIh8JjiuI

Entry address:
0x3D86

Entry point:
B8, 44, D7, 42, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, 3C, 38, 06, 14, 3E, 96, 11, E9, 0E, D4, 2E, D9, C4, BD, 53, 69, 78, 05, CF, BE, B9, 52, EF, 64, AB, F8, 85, D5, 74, 13, 70, 8C, 48, 6E, F6, 8C, 39, 91, F2, 81, 95, 56, C3, 61, D8, 7D, 60, 1D, BB, 2D, 77, 0F, 08, 89, 48, FD, DB, 2E, 22, 8B, 74, E8, 60, 92, 6C, 70, 90, 70, FC, 02, DE, 8B, E7, CA, 19, 08, D4, 4B, 2C, 70, 44, 29, E8, 70, 8E, CE, B1, 5A, 7B, 44, B3, 78, 28...
 
[+]

Entropy:
7.7220

Packer / compiler:
PECompact v2

Code size:
35.5 KB (36,352 bytes)

Remove patch-flashfxp.4.1.0.build.15xx-dcore.exe - Powered by Reason Core Security