patch.exe

The application patch.exe has been detected as a potentially unwanted program by 23 anti-malware scanners.
MD5:
6f3e626fb133dd114e43cd7119ae97cc

SHA-1:
44b9a9cdf705d4902b370f29ce708c1bc19a1de3

SHA-256:
30f9ee51588cb3f88d2405bfbcad9d1c6d425787c3e076c30b661cc807133bef

Scanner detections:
23 / 68

Status:
Potentially unwanted

Analysis date:
5/1/2024 2:09:37 PM UTC  (today)

Scan engine
Detection
Engine version

Lavasoft Ad-Aware
Gen:Variant.Zusy.29795
6392204

Agnitum Outpost
Packed/PECompact
7.1.1

AhnLab V3 Security
Backdoor/Win32.Graybird
2015.02.14

AVG
Win32/Virut
2014.0.4253

Baidu Antivirus
Hacktool.Win32.Patcher
4.0.3.15213

Bitdefender
Gen:Variant.Zusy.29795
1.0.20.220

Clam AntiVirus
Hacktool.Crack.InternetDwnloadMgr
0.98/20062

Emsisoft Anti-Malware
Gen:Variant.Zusy.29795
9.0.0.4799

ESET NOD32
Win32/HackTool.Patcher.T potentially unsafe application
7.0.302.0

F-Secure
Gen:Variant.Zusy.29795
5.13.68

G Data
Gen:Variant.Zusy.29795
15.2.25

IKARUS anti.virus
not-a-virus:Hacktool
t3scan.1.8.6.0

K7 AntiVirus
Trojan
13.194.14961

Kaspersky
HEUR:Trojan.Win32.Generic
14.0.0.2491

Malwarebytes
PUP.Hacktool.Patcher
v2015.02.13.05

Microsoft Security Essentials
Threat.Undefined
1.191.4453.0

MicroWorld eScan
Gen:Variant.Zusy.29795
16.0.0.132

NANO AntiVirus
Virus.Win32.Virut-Gen.bwpxnc
0.30.0.65070

Norman
Gen:Variant.Zusy.29795
03.12.2014 13:20:04

Panda Antivirus
Trj/Genetic.gen
15.02.13.05

Sophos
Virus 'Mal/Agent-ACR'
5.10

Total Defense
Win32/Tnega.BUWPHLB
37.0.11439

Trend Micro House Call
HV_AGENT_CG15483F.RDXN
7.2.44

File size:
648.5 KB (664,064 bytes)

File type:
Executable application (Win32 EXE)

Common path:
C:\Program Files\internet download manager\patch.exe

File PE Metadata
Compilation timestamp:
5/25/2006 7:21:32 AM

OS version:
4.0

OS bitness:
Win32

Subsystem:
Windows GUI

Linker version:
5.12

CTPH (ssdeep):
12288:qt+fi4vNVAEuhHy4ocnOscYpeFenC3QaA:S+jv09MIp4mC+

Entry address:
0x3D86

Entry point:
B8, 90, 2B, 57, 00, 50, 64, FF, 35, 00, 00, 00, 00, 64, 89, 25, 00, 00, 00, 00, 33, C0, 89, 08, 50, 45, 43, 6F, 6D, 70, 61, 63, 74, 32, 00, EE, 75, C8, DA, 10, 20, 65, CC, 87, CB, 79, 9A, CD, 52, F0, 5E, F5, F4, 8E, DC, DC, C8, 08, BB, 3D, 33, 9D, 56, B2, 2A, 40, A1, D7, D1, 7C, D3, 11, 74, 66, C5, 8F, 32, B1, A0, 81, D4, 31, 7B, E6, B3, E5, 86, 6D, B3, D1, 1A, 1E, 19, 4C, 01, 3E, C7, 15, EE, 65, 90, F9, 8E, 60, AD, 09, 70, C0, F7, B1, 9B, E9, 1B, 02, E1, 09, 15, 8B, 0F, 92, 36, CC, 2C, 1F, 43, 76, 60, 14...
 
[+]

Entropy:
6.6027

Packer / compiler:
PECompact v2

Code size:
35 KB (35,840 bytes)

Remove patch.exe - Powered by Reason Core Security